HonestCue Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
13
occurrences
First Seen
February 12, 2026
Last Seen
May 11, 2026

Related Threat Clusters

  • State-Sponsored Hackers Exploit Google's Gemini AI for Cyberattacks

    State-backed hackers from China, Iran, North Korea, and Russia are utilizing Google's Gemini AI model to facilitate various stages of cyberattacks, including reconnaissance and post-compromise actions. Notably, the…

    162 articles · Updated February 12, 2026
  • Rise in AI Model Theft and Misuse by Threat Actors

    Google's Threat Intelligence Group (GTIG) reports an increase in attempts to extract and replicate AI model logic, with state-backed and financially motivated attackers leveraging generative AI for reconnaissance,…

    13 articles · Updated February 12, 2026

Recent Intelligence Reports

  • Ai Vulnerability Exploitation Initial Access — cloud.google.com · May 11, 2026
  • Google Threat Intelligence Group — www.anrdoezrs.net · May 11, 2026
  • GTIG AI Threat Tracker: Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access — Mandiant · May 11, 2026
  • Google fears massive attempt to clone Gemini AI through model extraction — Csoonline · February 13, 2026
  • Google: State-backed hackers using Gemini AI at every stage of attacks — Computing · February 13, 2026
  • Adversaries Exploiting Proprietary AI Capabilities, API Traffic to Scale Cyberattacks — Thecyberexpress · February 13, 2026
  • Google reports that 'distillation attacks attempting to extract Gemini's capabilities to develop ... — Gigazine · February 13, 2026
  • State-Sponsored Hackers Turn Google's AI Into Full-Spectrum Attack Assistant — Uctoday · February 12, 2026

CVSS v3.1 Breakdown