1 of 2
Story summary
- Google's Threat Intelligence Group (GTIG) warns that PROMPTFLUX uses artificial intelligence to dynamically change its code during execution, evading detection.
- PROMPTFLUX, still in development, regenerates VBScript and saves it to the Windows Startup folder to persist.
- The malware interacts with Google's Gemini AI model to adapt its behavior.
- Other AI-driven threats, PROMPTSTEAL and QUIETVAULT, show data exfiltration and credential theft.
1 / 2
