Google API keys for services like Maps embedded in accessible client-side code could be used to authenticate to the Gemini AI ...
Researchers say PromptSpy is the first Android malware to use generative AI during execution, querying Gemini to stay on a device.