Close Menu

    Subscribe to Updates

    Get the latest Tech news from SynapseFlow

    What's Hot

    Anthropic Says It Has Taken Its Latest AI Models Offline to Comply With New Export Controls

    June 13, 2026

    SpaceX IPO Up 20% and Brian Wang Analysis Ahead of BG2 and Big Venture Capitalists

    June 13, 2026

    Honor X7e Plus 5G is coming to join the X7e

    June 13, 2026
    Facebook X (Twitter) Instagram
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube
    synapseflow.co.uksynapseflow.co.uk
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    synapseflow.co.uksynapseflow.co.uk
    Home»Tech Gadgets»Android malware uses Google’s own Gemini AI to adapt in real time
    Android malware uses Google’s own Gemini AI to adapt in real time
    Tech Gadgets

    Android malware uses Google’s own Gemini AI to adapt in real time

    The Tech GuyBy The Tech GuyFebruary 20, 2026No Comments3 Mins Read0 Views
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Advertisement


    Gemini logo on an Android phone.

    Joe Maring / Android Authority

    Advertisement

    TL;DR

    • Researchers have identified the first known Android malware to use generative AI during execution.
    • The malware queries Google’s Gemini model to adapt its behavior across different Android devices.
    • It may be a proof-of-concept version, but it signals a shift toward more dynamic AI-assisted attacks.

    Update: February 20, 2026 (05:12 PM ET): Following our request for comment and the publication of the original article below, a Google spokesperson provided us with the following statement:

    “Based on our current detection, no apps containing this malware are found on Google Play. Android users are automatically protected against known versions of this malware by Google Play Protect, which is on by default on Android devices with Google Play Services. Google Play Protect can warn users or block apps known to exhibit malicious behavior, even when those apps come from sources outside of Play.”

    The ESET researchers had already shared their findings with Google, and similar assurances to those in the statement above are echoed in the report. Despite the abilities this malware demonstrates, there seems to be very little risk to Android users at this stage.


    Original article: February 20, 2026 (01:19 PM ET): It’s been a worrying week on the Android malware front. On Tuesday, we learned of tablets shipping with hidden malware already embedded in their firmware. Now, researchers say they’ve spotted something arguably more futuristic: Android malware that uses Google’s own Gemini AI model during execution.

    According to a report highlighted by BleepingComputer, ESET researchers have uncovered a new Android malware family dubbed PromptSpy. Unlike traditional malware that relies entirely on hardcoded instructions, this strain queries Google’s Gemini generative AI model at runtime to help it carry out part of its behavior. In this case, the malware sends Gemini information about what’s currently visible on the infected device’s screen and asks for guidance on what to do next. That allows it to adapt to differences between Android devices and interfaces, rather than relying on a rigid script that might only work on certain models.

    Don’t want to miss the best from Android Authority?

    google preferred source badge light@2xgoogle preferred source badge dark@2x

    ESET says this is the first known example of Android malware integrating generative AI directly into its execution flow. While the AI component is used for only one feature in this example, it shows how attackers can leverage publicly available AI tools to make malware more flexible and harder to design against.

    Beyond the disturbing AI development, PromptSpy functions as spyware. It reportedly includes a built-in remote access module and can collect information such as installed apps and lockscreen credentials once it gains the necessary permissions. It also attempts to make removal more difficult by interfering with efforts to disable it.

    So far, ESET says it hasn’t observed PromptSpy or its dropper in its telemetry, making it unclear whether the malware is actively spreading or remains closer to a proof-of-concept. However, researchers noted that the samples were distributed via a dedicated domain and impersonated a major bank, suggesting they may not be purely experimental.

    Even if its reach and scope are limited for now, the broader takeaway is hard to ignore. Generative AI isn’t just being used to create malicious content — it’s starting to shape how malware behaves in real time. Attackers using Google’s own AI tools against Android in this instance only adds to the concern, and we have reached out to Google for comment on the matter. We will update this article with any response we receive.

    Thank you for being part of our community. Read our Comment Policy before posting.

    Advertisement
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    The Tech Guy
    • Website

    Related Posts

    Amazon drops Ring’s Indoor Cam Plus bundle from $80 to just $45

    June 13, 2026

    The most expensive soundbars are still worth buying

    June 13, 2026

    Spotify is giving one of its best playlists a big visual upgrade to give subscribers ‘a closer connection’ to its New Music Friday curators — and I think it could be the update it’s always needed

    June 12, 2026

    Samsung Galaxy A27 listed on official site

    June 12, 2026

    Telegram returns to Wear OS with full chats, voice notes and more

    June 12, 2026

    I don’t fully trust Google Maps on road trips

    June 12, 2026
    Leave A Reply Cancel Reply

    Advertisement
    Top Posts

    You don’t need a NAS to self-host — I proved it with hardware from my closet

    June 7, 202672 Views

    Spotify is giving one of its best playlists a big visual upgrade to give subscribers ‘a closer connection’ to its New Music Friday curators — and I think it could be the update it’s always needed

    June 12, 202618 Views

    The iPad Air brand makes no sense – it needs a rethink

    October 12, 202516 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Advertisement
    About Us
    About Us

    SynapseFlow brings you the latest updates in Technology, AI, and Gadgets from innovations and reviews to future trends. Stay smart, stay updated with the tech world every day!

    Our Picks

    Anthropic Says It Has Taken Its Latest AI Models Offline to Comply With New Export Controls

    June 13, 2026

    SpaceX IPO Up 20% and Brian Wang Analysis Ahead of BG2 and Big Venture Capitalists

    June 13, 2026

    Honor X7e Plus 5G is coming to join the X7e

    June 13, 2026
    categories
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 SynapseFlow All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.