logo

Nation-State Hackers Embrace Gemini AI for Malicious Campaigns, Google Finds

ID: 860fdbdc-5ade-5b45-afe0-cd0ae9a750e1

STIX ID: report--860fdbdc-5ade-5b45-afe0-cd0ae9a750e1

Feed Name: Infosecurity Magazine (News)

Threat Score
80/100

Date Published: 2026-02-12

Date Updated: 2026-04-22

...
...

Google Threat Intelligence Group and DeepMind reported that government-backed APTs (Iranian, Chinese, North Korean) and criminal groups increasingly use generative AI for reconnaissance, phishing, vulnerability research, and post-compromise actions; financially motivated actors are performing model extraction and offering jailbroken AI services on underground markets, and researchers observed AI-enabled malware (Honestcue) using a commercial LLM API to generate and execute malicious code in memory.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.