Blog

AI Malware Can Now Rewrite Itself to Evade Detection, and It's Already Here

Published September 23rd, 2026 by Bayonseo

For many years, malware detection was based on the straightforward idea that you could stop a virus if you knew what it looked like. Heuristic analysis, behavioral monitoring, and signature-based antivirus all succeeded because malware was created by people, and people are slow. Now, that presumption is crumbling. In order to evade detection techniques designed to identify threats from the past, a new type of AI-powered malware may rewrite its own source code in real time, creating completely new copies of itself.


What Is Self-Rewriting AI Malware?

Several experimental malware families that include Large Language Models (LLMs) directly into their execution flow, not as development tools, but as active elements of the virus itself, have been found by Google's Threat Intelligence Group (GTIG). The most prominent example is PROMPTFLUX, a VBScript dropper that creates regenerated variations intended to avoid detection based on static signatures by rewriting its own source code between executions using the Google Gemini API.

AI-driven malware makes context-aware choices, in contrast to conventional polymorphic malware, which produces random syntactic variations. Adaptive AI malware, according to one IEEE study, "reads its own crash logs, hypothesizes about which guardrail blocked it, and emits a revised version of itself", a radically different kind of threat.


The Expanding Arsenal of AI-Enabled Malware

Several families in this new category have been documented by GTIG:

  • PROMPTFLUX: A dropper that rewrites its own VBScript code using Gemini and saves newly obfuscated versions to the Windows Startup folder for persistence.
  • PROMPTSTEAL: A data-mining utility that creates one-line Windows instructions for document theft and system exploration using an LLM.
  • PROMPTLOCK is a cross-platform ransomware that uses an LLM to create and launch malicious Lua scripts during runtime.
  • QUIETVAULT: Credential-stealing malware that uses AI prompts to search for more secrets while exfiltrating NPM tokens and GitHub credentials.
  • FRUITSHELL: A reverse shell with hard-coded prompts intended to evade security solutions that rely on LLMs.


Why This Changes Everything

There are significant ramifications. Conventional antivirus software uses signatures, which are recognized patterns that help detect harmful files. However, each signature becomes outdated as soon as it is formed if malware is able to manufacture a new version of itself every hour. According to one analysis, it now takes "significantly less expertise and effort than detecting them" to create complex malware variants.

A risky computational asymmetry is produced as a result. While defenders are still constrained by human analysis, attackers can iterate at machine speed. According to the IEEE report, "the analyst bottleneck on the defender's side does not scale with the attacker's iteration speed" makes "AI versus AI" defense intrinsically inadequate.


What You Can Do

Google has taken steps to disable related assets and improve Gemini's classifiers, even if some of these families are still in the experimental stage. However, the pattern is evident: malware with AI capabilities is becoming more prevalent, independent, and hazardous. In order to detect malicious intent regardless of the code's writing style, organizations must shift from signature-based detection to behavioral analytics, zero-trust principles, and ongoing monitoring.


How Bayon Technologies Group Can Help You Stay Safe

At Bayon Technologies Group, we understand that AI-driven threats require a fundamentally different defensive posture. We help organizations build resilience against self-modifying malware through:

  • Behavioral Detection and Response: Identifying malicious intent regardless of how many times the code changes.
  • AI-Powered Threat Monitoring: Detecting anomalous activity that signature-based tools miss.
  • Zero-Trust Architecture: Limiting the blast radius of any successful compromise.
  • Continuous Security Awareness Training: Preparing your team for the next generation of threats.

The era of static malware is over. Contact Bayon Technologies Group today to build a defense strategy that keeps pace with AI-powered adversaries.


‹ Back