Mars Finance reports that GoPlus Security warns users to beware of a new Android malware called PromptSpy. This malware tricks users into downloading APK files via phishing websites (disguised as bank sites). After obtaining accessibility permissions, it can remotely control the device. What makes PromptSpy unique is its use of the Google Gemini API to analyze the device interface and develop attack strategies, allowing it to better adapt to different phone brands and system versions, increasing stealth and success rates. Security recommendations: • Avoid installing APKs from unknown sources • Be cautious when granting accessibility permissions • Enable Google Play Protect.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
GoPlus reveals new Android malware PromptSpy, utilizing AI large models to achieve remote device control
Mars Finance reports that GoPlus Security warns users to beware of a new Android malware called PromptSpy. This malware tricks users into downloading APK files via phishing websites (disguised as bank sites). After obtaining accessibility permissions, it can remotely control the device. What makes PromptSpy unique is its use of the Google Gemini API to analyze the device interface and develop attack strategies, allowing it to better adapt to different phone brands and system versions, increasing stealth and success rates. Security recommendations: • Avoid installing APKs from unknown sources • Be cautious when granting accessibility permissions • Enable Google Play Protect.