this post was submitted on 03 Mar 2026
15 points (100.0% liked)

Technology

1387 readers
22 users here now

A tech news sub for communists

founded 3 years ago
MODERATORS
 

Android malware called PromptSpy is the first known to use a generative AI model (Google Gemini) during runtime to adapt how it keeps itself persistent across different Android device UIs.​

It sends Gemini an XML dump of the current screen, gets back JSON “what to tap” instructions to pin/lock itself in Recent Apps, and executes them via Accessibility in a loop until confirmed.​

Beyond the AI twist it’s spyware: it includes a VNC module for remote control (after Accessibility is granted) and can grab screenshots/screen recordings, enumerate apps, and intercept unlock secrets.​

ESET says it’s unclear if this is proof-of-concept, but samples were linked to a domain distributing them and a fake JPMorgan Chase-themed site, suggesting possible real-world use.

top 1 comments
sorted by: hot top controversial new old
[–] Maeve@lemmygrad.ml 3 points 6 days ago

Imagining it being able to spoof biometric credentials.