Chinese-developed malware leverages Gemini AI to lock apps, intercept passwords, and log device activity on Android devices targeting Argentina.


  • PromptSpy malware uses Gemini to automate its persistence
  • Malware blocks removal through AI-guided interface control
  • Gemini interprets screen data and returns actionable gestures

Security experts have revealed new findings about PromptSpy, an Android malware whose code contains a predefined message and AI settings that are hard-coded and cannot be changed at runtime.

The malware uses Google’s Gemini to interpret on-screen elements and provide step-by-step instructions for interacting with the user interface.



Leave a Comment

Your email address will not be published. Required fields are marked *