TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

ESET WeLiveSecurity

PromptSpy ushers in the era of Android threats using GenAI

2026-02-19 · Read original ↗

ATT&CK techniques detected

1 predictions
T1113Screen Capture
85%
“##nc service. this allows attackers to remotely view the victim ’ s screen in real time and fully control the device. the malware communicates with its hardcoded command ‑ and ‑ control ( c & c ) server at 54. 67. 2 [. ] 84 using the vnc protocol ; the messages are aes - encrypte…”

Summary

ESET researchers discover PromptSpy, the first known Android malware to abuse generative AI in its execution flow