Skip to content
Briefings are running a touch slower this week while we rebuild the foundations.See roadmap
Timeline

PROMPTSPY

An Android backdoor, first identified by ESET in February 2026 and confirmed by GTIG in May 2026, that uses the Google Gemini API for autonomous device navigation, biometric capture, and on-device UI automation.

1 of 1 entries (1 events, 0 interactions)

Filters
#411 May

Deployed against targets using Google Gemini API for autonomous device navigation, biometric capture, and UI automation

Cybersecurity: Threats and Defences: GTIG names the first LLM-written working zero-day