State-Backed Hackers Use AI-Powered Malware for Dynamic Attacks

State-backed hackers are deploying malware that uses large language models to dynamically generate malicious scripts and evade detection. Google researchers observed malware employing AI capabilities mid-execution to alter its behavior, marking a significant step towards more autonomous malware. Experimental malware like PROMPTFLUX and PROMPTSTEAL have been identified, with the latter used in live operations to generate commands. The trend highlights how threat actors are integrating AI into future intrusion activities, with a growing marketplace for AI tools fueling criminal behavior.

Latest mentioned: 11-05
Earliest mentioned: 11-05