<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur" -->

---
title: Recent Developments in AI-Enabled Threat Actor Operations
description: Google&#x27;s Threat Intelligence Group has identified AI-enabled malware like PROMPTFLUX and PROMPTSTEAL that leverage large language models to dynamically modify...
canonical: https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: Recent Developments in AI-Enabled Threat Actor Operations | daily.dev
og:description: Google&#x27;s Threat Intelligence Group has identified AI-enabled malware like PROMPTFLUX and PROMPTSTEAL that leverage large language models to dynamically modify...
og:url: https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur
og:image: https://api.daily.dev/og/posts/WqUJVs5uR.png
og:image:alt: Recent Developments in AI-Enabled Threat Actor Operations
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Recent Developments in AI-Enabled Threat Actor Operations

**[Collections](https://daily.dev/sources/collections)** · 2 min read · 3 upvotes · 0 comments

## Summary

Google's Threat Intelligence Group has identified AI-enabled malware like PROMPTFLUX and PROMPTSTEAL that leverage large language models to dynamically modify their behavior and evade detection. PROMPTFLUX uses Gemini AI to rewrite its code hourly, while PROMPTSTEAL generates malicious commands in real-time. State-sponsored actors from China, Iran, North Korea, and Russia are integrating AI across attack lifecycles, from reconnaissance to data exfiltration. An underground marketplace for illicit AI tools is maturing, making sophisticated attacks accessible to less skilled actors. Google is responding by disabling malicious accounts and enhancing AI model protections.

## Content

Google's Threat Intelligence Group (GTIG) has shed light on a significant evolution in cyber threats with the discovery of AI-enabled malware. These sophisticated threats, like PROMPTFLUX and PROMPTSTEAL, utilize large language models (LLMs) such as the Gemini AI to dynamically modify their behavior, making them challenging to detect and thwart.

**Prominent Threats and Capabilities**

PROMPTFLUX stands out due to its advanced use of Gemini AI APIs to rewrite its VBScript code hourly. By sending queries to Gemini 1.5 Flash, the malware generates obfuscated variations of its code, enabling it to slip past signature-based detection methods. Although still in development and lacking active compromise capabilities, PROMPTFLUX exemplifies a new breed of metamorphic malware that changes during execution.

PROMPTSTEAL, another AI-driven malware, has been deployed in live operations by Russia’s APT28 against Ukrainian targets. It queries LLMs to produce malicious commands in real-time, enhancing its capability to elude defenses and adapt to different environments.

**State-Sponsored and Cybercriminal Exploitation**

The misuse of AI tools is not limited to technical innovations but extends across entire attack lifecycles. State-sponsored actors from China, Iran, North Korea, and Russia, as well as cybercriminal enterprises, are increasingly integrating AI into their operations. This ranges from reconnaissance and social engineering to command-and-control (C2) development and data exfiltration.

APT42 from Iran has attempted to build AI agents capable of transforming natural language into SQL queries for tracking individuals, demonstrating the varied applications of AI in cyber espionage.

**Challenges and Market Dynamics**

Attackers are also employing social engineering tactics to bypass AI safety guardrails, often posing as security researchers, capture-the-flag (CTF) participants, or students to gain unauthorized access to AI capabilities. This has led to the maturation of an underground marketplace that offers illicit AI tools for malware generation, deepfake production, phishing automation, and vulnerability exploitation. These tools are increasingly accessible to less skilled actors due to simplified interfaces and subscription-based pricing models.

**Response and Mitigation Efforts**

In response to these developments, Google's GTIG is actively working to disable malicious accounts and enhance AI model protections. Lessons learned from tracking and countering these threats are being fed back into Google’s product development to better defend against these evolving threats.

The emergence of AI-enabled malware represents a turning point in cybersecurity, emphasizing the need for continuous vigilance and adaptation to protect against increasingly intelligent threats.

---

Tags: [#ai](https://daily.dev/tags/ai), [#cyber](https://daily.dev/tags/cyber), [#google](https://daily.dev/tags/google), [#llm](https://daily.dev/tags/llm), [#malware](https://daily.dev/tags/malware)

[View this post on daily.dev](https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"Recent Developments in AI-Enabled Threat Actor Operations","url":"https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur"},"datePublished":"2025-11-05T14:09:47.640Z","dateModified":"2025-11-06T10:27:12.478Z","description":"Google's Threat Intelligence Group has identified AI-enabled malware like PROMPTFLUX and PROMPTSTEAL that leverage large language models to dynamically modify...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/cc3d1102e2fd50e8bb4b5fd49a05cf36?_a=AQAEulh","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/cc3d1102e2fd50e8bb4b5fd49a05cf36?_a=AQAEulh","isAccessibleForFree":true,"articleSection":"Collections","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"Collections","logo":"https://media.daily.dev/image/upload/s--fk_6ycEi--/f_auto,q_auto/v1780996001/logos/collections?_a=BAMAMiWQ0","url":"https://daily.dev/sources/collections"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/recent-developments-in-ai-enabled-threat-actor-operations-wqujvs5ur","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":3},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"ai,cyber,google,llm,malware","timeRequired":"PT2M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"Collections","item":"https://daily.dev/sources/collections"},{"@type":"ListItem","position":3,"name":"Recent Developments in AI-Enabled Threat Actor Operations"}]}
```

