Skip to content

Topic

AI-assisted malware development

Evidence that malware authors use LLM coding assistants, inferred from leftover debug messages, AI-style comments and redundant crypto routines.

Current stories

security4 publishers

Meta ads steer Android users to fake Google Play pages carrying the RemControl banking trojan

Group-IB says the RemControl Android banking trojan reaches bank customers in six countries and the Middle East via Meta ads and fake Google Play pages. Its server address sits in a Telegram dead-drop, so the operator can move infrastructure without a new build.

Perspective Coverage

4 publishers
Builder
Builder 34%
Operator
Operator 59%
Investor
Investor 7%

Reality

Evidence65
Adoption
Insufficient
Hype gap+10
Incentives
Insufficient
Confidence65
security2 publishers

Seven RAT families, one actor: what SilkParasite does to behavioural clustering

Bitdefender ties seven remote access tool families to a single Central Asia espionage actor and finds traces of AI-assisted development. Its own numbers show where clustering still held.

Publishers:bitdefender.combusinessinsights.bitdefender.comnews.risky.biz

Perspective Coverage

3 publishers
Builder
Builder 27%
Operator
Operator 55%
Investor
Investor 18%

Reality

Evidence61
Adoption42
Hype gap+17
Incentives71
Confidence60