Malware developed in China leverages Gemini AI to lock apps, intercept passwords and record activity of Android devices targeted in Argentina.


  • PromptSpy malware uses Gemini to automate its persistence
  • Malware blocks deletion via AI-guided interface control
  • Gemini interprets screen data and returns actionable gestures

Security experts have revealed new findings about PromptSpy, an Android malware whose code contains a predefined prompt and hard-coded AI configuration and cannot be changed at runtime.

The malware uses Google’s Gemini to interpret on-screen elements and provide step-by-step instructions for interacting with the user interface.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top