GoPlus Security has disclosed that a new type of Android malware called PromptSpy is exploiting AI technology to remotely control victims' devices. This malware typically tricks users into downloading APK files not available on Google Play through fake banking phishing websites, then requests "install unknown sources" permissions to implant the core payload. The key feature of PromptSpy is calling the Google Gemini API to send the device's current UI XML structure to a large model for analysis, with AI providing real-time operational commands to carry out malicious control. GoPlus recommends users avoid installing APKs from unknown sources, be cautious when granting accessibility permissions, and enable Google Play protection mechanisms.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
0/400
No comments
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский язык
  • Français
  • Deutsch
  • Português (Portugal)
  • ภาษาไทย
  • Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)