5.1 C
Delhi
Friday, January 16, 2026

Google Warns of AI Malware That Thinks and Rewrites Its Own Code

Key Takeaways

  • Google warns of new AI malware that can think, adapt, and rewrite its own code autonomously.
  • Hackers are using social engineering to trick AI models like Gemini into writing malicious code.
  • A booming black market for AI hacking tools is making advanced cyberattacks accessible to novices.

Google’s Threat Intelligence Group has revealed a dangerous new era in cybersecurity where AI-powered malware can think and rewrite its own code during an attack, making it highly evasive.

Self-Evolving Malware: PROMPTFLUX and PROMPTSTEAL

Google identified specific malware strains like PROMPTFLUX and PROMPTSTEAL that use Large Language Models (LLMs). These threats generate new malicious scripts every time they execute.

PROMPTFLUX, written in VBScript, sends commands to the Gemini API to request help writing complex, encrypted code designed to bypass antivirus software.

Conversely, PROMPTSTEAL, reportedly used by the Russian APT28 group against Ukraine, disguises itself as an image generation tool. It uses the Qwen model to create commands for stealing local data without any pre-written code.

Photo: cloud.google.com

Hackers Are Now Tricking AI Systems

The report highlights that hackers are using sophisticated social engineering against AI. They use innocent-seeming pretexts, like pretending to be a Capture-the-Flag contestant to get Gemini to suggest vulnerabilities, or claiming to be a student needing coding help for a final project.

This demonstrates a significant shift, as attackers now actively deceive AI systems, not just humans.

The Rapidly Growing Black Market for AI Hacking Tools

In 2025, the black market for AI-powered hacking tools has exploded. Services like WormGPT, FraudGPT, and LoopGPT are being sold, offering capabilities from writing phishing emails to creating malware and exploiting system vulnerabilities.

Photo: cloud.google.com

This accessibility allows even novice hackers to create highly complex malware. Simultaneously, state-sponsored groups are leveraging these AIs for attack planning, intelligence gathering, and developing sophisticated phishing campaigns and command-and-control servers.

Google’s Counter-Offensive

In response, Google has closed accounts and projects linked to malicious actors and is continuously refining its Gemini models to be smarter and more resistant to misuse.

Google is also collaborating with DeepMind to develop AI tools like Big Sleep and CodeMender, which will automatically detect and patch vulnerabilities. The ultimate goal is to create advanced, safe AI, ensuring responsible use in an age where AI is both a powerful weapon and a crucial shield.

Source: Google

Photo: cloud.google.com

Latest

Meta Bans ChatGPT on WhatsApp from 2026: How to Save Chats

WhatsApp will block ChatGPT and third-party AI tools in 2026. Learn why Meta is banning AI, how to back up your chat history, and what it means for users.

Amazon Republic Day Sale 2026: Up to 80% Off on Gadgets & Appliances

Amazon's Great Republic Day Sale 2026 is live with massive discounts on electronics, fashion & home appliances. Get top deals, no-cost EMI & a chance to win a trip.

Amazon Republic Day Sale: iPhone 15, OnePlus Nord 5, iQOO 15 Big Discounts

Get record-low prices on iPhone 15, OnePlus Nord 5, and iQOO 15 during Amazon's Great Republic Day Sale 2025 from Jan 14-18. Details on discounts, bank offers, and early access.

CERT-In Flags High-Risk Dolby Bug on Android, Urges Patch

Indian cybersecurity agency warns of a critical Dolby Audio vulnerability in Android 13/14. Learn how to protect your device with the latest security update.

McKinsey Makes AI Tool Mandatory in Job Interviews for Hiring

McKinsey now requires candidates to use its 'Lilli' AI tool during interviews. Failure to use it could lead to rejection, highlighting a major shift in hiring skills.

Topics

Trump’s Greenland Purchase Interest Sparks Diplomatic Row with Denmark

US President confirms interest in buying Greenland, but Denmark and Greenland firmly reject the idea. Explore the strategic reasons and the criticism behind the move.

Machado Meets Trump, Gifts Nobel Replica in Venezuela Power Play

Barred Venezuelan opposition leader María Corina Machado's strategic meeting with Donald Trump aims to maintain pressure on Maduro ahead of the July election.

Princess Leila Pahlavi: The Shah’s Daughter Who Died Alone in Exile

The tragic story of Iranian Princess Leila Pahlavi, who fled the 1979 revolution and died by suicide at 31, revealing the human cost of political upheaval.

Zomato’s Viral Job: Rs 25 Lakh Salary for 1-3 Years Experience in Bengaluru

A Zomato job listing offering Rs 25 lakh salary, Rs 20 lakh ESOP, and daily food credits for a role needing just 1-3 years experience goes viral, sparking debate.

India to Evacuate Citizens from Iran; First Flight from Tehran Tomorrow

MEA prepares evacuation flights for Indians in Iran amid Iran-Israel conflict. First flight from Tehran to Delhi scheduled. Embassy issues urgent travel advisory.

Australia Social Media Ban: 5 Million Kids’ Accounts Deleted in a Month

Australia's new social media ban leads to removal of nearly 5 million under-14 accounts. Learn about the law, enforcement, and the debate it has sparked.

Rising Memory Chip Prices Threaten Profits for Apple, HP, Dell

Morgan Stanley warns investors as increasing DRAM and NAND flash costs squeeze margins for major tech hardware companies, reversing a years-long tailwind.

Mumbai Markets Closed for BMC Elections, Zerodha CEO Calls It Poor Planning

Zerodha CEO Nithin Kamath criticises weekday market closure for Mumbai elections, highlighting economic costs and missed trading opportunities as Asian markets rally.
spot_img

Related Articles

Popular Categories

spot_imgspot_img