A group active since 2023 distributes the macOS backdoor FlutterShell through Google-verified shell companies, which is signed with valid Apple IDs and can be remotely controlled in real time.
Attackers can inject malicious commands into messenger messages through fake context alignment, which Gemini processes undetected and uses to control authorized devices or misuse data.
Google releases Gemma 4 12B as an Apache-2.0-licensed multimodal model with unified architecture that runs locally on laptops with 16 GB VRAM and combines text, image, audio, and reasoning.
A manipulated notification via WhatsApp, Slack, SMS, Signal, Instagram, or Messenger could hijack Google Gemini on Android devices and force it to execute arbitrary actions without requiring a malicious app to be installed on the phone.
Apple is implementing the new Siri generation in iOS 27 using Google’s Gemini models and leveraging Google Cloud for complex AI queries because its own Private Cloud Compute infrastructure lacks sufficient scalability.
Gemma 4 12B runs on standard laptops with 16 GB RAM and enables local API endpoints via the LiteRT-LM CLI for agent-driven workflows without cloud dependency.
Prompt injection vulnerability in Google Gemini Voice Assistant enables hidden malicious commands through manipulated notifications, potentially leading to social engineering and data misuse.