Connect with us

Hi, what are you looking for?

AI Cybersecurity

ESET Reveals AI-Driven Ransomware PromptLock, Warns of Rising NFC Malware Threats

ESET unveils PromptLock, the first AI-driven ransomware that dynamically generates scripts, amidst a concerning 87% rise in NFC malware threats.

In a significant development within cybersecurity, ESET Research has unveiled PromptLock, the first known AI-driven ransomware capable of dynamically generating malicious scripts. This advancement highlights a troubling shift as generative artificial intelligence (GenAI) is increasingly leveraged not just for creating phishing content but also for more sophisticated cyber threats.

According to ESET’s latest Threat Report, PromptLock operates using an OpenAI model via the Ollama API to generate and execute harmful scripts. The ransomware features two primary components: a static main module that facilitates communication with the server running the AI model and contains hardcoded prompts, and Lua scripts that are crafted dynamically by the AI through these prompts. This design enables the malware to perform various functions, including enumerating local filesystems, exfiltrating data, and encrypting or destroying files based on the AI’s assessments.

As of now, PromptLock remains a proof-of-concept, making its presence in the wild relatively low-risk; however, security experts stress that its mere existence is alarming. Anton Cherepanov, a senior malware researcher at ESET, noted, “The emergence of tools like PromptLock highlights a significant shift in the cyberthreat landscape. With the help of AI, launching sophisticated attacks has become dramatically easier, eliminating the need for teams of skilled developers.” He underscored the potential implications, stating that a well-configured AI model could lead to the creation of complex, self-adapting malware, complicating detection efforts and intensifying challenges for cybersecurity professionals.

In addition to ransomware threats like PromptLock, ESET has reported a rise in near-field communication (NFC) malware, with an 87% increase in telemetry observed in the latter half of the year. The report mentions significant upgrades in several NFC malware variants, including NGate, which has evolved to steal not just data but also contact information.

As the cyber landscape evolves with AI-enhanced threats, ESET recommends that users and organizations adhere to fundamental safety practices. Keeping operating systems, web browsers, and security tools updated can significantly reduce vulnerabilities. ESET advises utilizing reputable endpoint protection solutions that employ behavioral detection rather than relying solely on signature-based scanning methods.

Moreover, users should exercise caution with unexpected files, installers, and applications that claim to offer productivity or AI benefits. Limiting administrative privileges is also crucial to prevent malware from easily encrypting or destroying critical data. Regular offline backups are essential for resilience against ransomware attacks, and ongoing employee education remains vital in cultivating a security-aware culture.

The emergence of AI-driven threats like PromptLock signals a pivotal shift in the methods employed by cybercriminals, underscoring the need for robust cybersecurity measures. As organizations grapple with these evolving risks, the combination of advanced technology and strategic vigilance will be crucial in mitigating potential impacts and safeguarding data integrity.

See also
Rachel Torres
Written By

At AIPressa, my work focuses on exploring the paradox of AI in cybersecurity: it's both our best defense and our greatest threat. I've closely followed how AI systems detect vulnerabilities in milliseconds while attackers simultaneously use them to create increasingly sophisticated malware. My approach: explaining technical complexities in an accessible way without losing the urgency of the topic. When I'm not researching the latest AI-driven threats, I'm probably testing security tools or reading about the next attack vector keeping CISOs awake at night.

You May Also Like

Top Stories

Analysts warn that unchecked AI enthusiasm from companies like OpenAI and Nvidia could mask looming market instability as geopolitical tensions escalate and regulations lag.

Top Stories

SpaceX, OpenAI, and Anthropic are set for landmark IPOs as early as 2026, with valuations potentially exceeding $1 trillion, reshaping the AI investment landscape.

Top Stories

OpenAI launches Sora 2, enabling users to create lifelike videos with sound and dialogue from images, enhancing social media content creation.

Top Stories

Musk's xAI acquires a third building to enhance AI compute capacity to nearly 2GW, positioning itself for a competitive edge in the $230 billion...

Top Stories

Nvidia and OpenAI drive a $100 billion investment surge in AI as market dynamics shift, challenging growth amid regulatory skepticism and rising costs.

AI Cybersecurity

Nomani investment scams surged 62% as ESET reported over 64,000 blocked URLs, utilizing AI deepfakes to mislead victims into financial loss.

AI Research

OpenAI and Google DeepMind are set to enhance AI agents’ recall systems, aiming for widespread adoption of memory-enabled models by mid-2025.

Top Stories

OpenAI's CLIP model achieves an impressive 81.8% zero-shot accuracy on ImageNet, setting a new standard in image recognition technology.

© 2025 AIPressa · Part of Buzzora Media · All rights reserved. This website provides general news and educational content for informational purposes only. While we strive for accuracy, we do not guarantee the completeness or reliability of the information presented. The content should not be considered professional advice of any kind. Readers are encouraged to verify facts and consult appropriate experts when needed. We are not responsible for any loss or inconvenience resulting from the use of information on this site. Some images used on this website are generated with artificial intelligence and are illustrative in nature. They may not accurately represent the products, people, or events described in the articles.