Close Menu
Must Have Gadgets –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Best action camera deal: Get the DJI Osmo 360 Camera Adventure Combo for its lowest price yet

    November 7, 2025

    YouTube Bug Makes All ‘Shorts’ Interaction Buttons Disappear

    November 7, 2025

    With Skigill, the classic RPG skill tree becomes a crowded battlefield

    November 7, 2025
    Facebook X (Twitter) Instagram
    Must Have Gadgets –
    Trending
    • Best action camera deal: Get the DJI Osmo 360 Camera Adventure Combo for its lowest price yet
    • YouTube Bug Makes All ‘Shorts’ Interaction Buttons Disappear
    • With Skigill, the classic RPG skill tree becomes a crowded battlefield
    • Norton 360 Deluxe review 2025
    • Best early Black Friday laptop deals 2025: 12+ sales out early
    • Secure your data for just $0.07 a day thanks to this IPVanish early Black Friday deal
    • Google’s Best-Sounding Buds Just Hit Their Lowest Price
    • Never Tie a Trash Bag Again: Why This Smart Garbage Can Is My New Favorite Gadget
    • Home
    • Shop
      • Earbuds & Headphones
      • Smartwatches
      • Mobile Accessories
      • Smart Home Devices
      • Laptops & Tablets
    • Gadget Reviews
    • How-To Guides
    • Mobile Accessories
    • Smart Devices
    • More
      • Top Deals
      • Smart Home
      • Tech News
      • Trending Tech
    Facebook X (Twitter) Instagram
    Must Have Gadgets –
    Home»Smart Home»A New Type of AI Malware Threatens Smart Homes, But These Security Habits Can Help
    Smart Home

    A New Type of AI Malware Threatens Smart Homes, But These Security Habits Can Help

    adminBy adminNovember 7, 2025No Comments6 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    A New Type of AI Malware Threatens Smart Homes, But These Security Habits Can Help
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Old-school home hacking is typically ineffective — it takes too much effort for the average burglar and modern devices are better protected against mass internet attacks (especially if you keep firmware updated). But now there’s a new trick for cybercriminals to use: It’s called prompt injections — or promptware — and it can make AI do things you never wanted it to. 

    In a smart home, that means that promptware can force AI to seize control of devices, doing everything from turning up the heat and switching off lights to unlocking smart locks. 

    Don’t miss any of our unbiased tech content and lab-based reviews. Add CNET as a preferred Google source.

    Experts are still learning what dangers promptware presents to LLM-style AI and the many places it can hide. Meanwhile, there are steps you can take to help stay safe and alert. Here’s what I suggest.

    The rise of promptware

    Gemini’s Google Home integrations are useful, but command options can include some risks.

    Google

    Promptware or prompt injections took center stage this summer at a Blackhat conference where Tel Aviv University researchers headed by Ben Nassi demonstrated how they were able to use malicious prompts hidden in everyday messages to make Google’s Gemini AI do things like open smart windows, turn on a connected boiler or send the geolocation of a user, thanks to Gemini’s integration with Google Home and related apps. Inside messages were hidden carefully devised commands that boiled down to, “Hey Gemini, activate this feature and make it do this when the user types something like ‘thank you’ or ‘goodbye’ in an email.”

    Even worse, much of the promptware was “zero click,” which meant users didn’t have to click on a URL, document or message to activate it. Gemini just had to read a title or calendar message where the prompt was carefully hidden, like when it summarizes an email conversation for you.

    Good news came from this: You don’t currently need to worry about Gemini falling prey to these home-controlling prompts. Google was made aware of these vulnerabilities early in 2025 and set up safeguards to remove them and help prevent this type of promptware.

    Google’s spokesperson also told me that, “This active collaboration with white hats and security researchers is a profoundly positive development, leading to productive testing and bug hunting that makes AI systems stronger for everyone. We actively participate in and value programs like our AI Vulnerability Reward Program.”

    However the discovery of these vulnerabilities showed just how dangerous promptware can be and how AIs can be tricked by promptware located in the most innocuous places. It’s also not an attack that can be detected by traditional virus software or firewalls. That’s a problem as AIs become more developed, more present in our daily communication and more connected to our computers, home devices and phones.

    I expect cybercriminals will be watching for promptware vulnerabilities that may not be caught as early as these Gemini missteps, especially as the Alexa Plus AI continues its slow rollout and Apple is in talks to upgrade Siri with Gemini AI features, too.

    5 key steps to stop promptware threats

    Promptware is a new AI-based threat, but there are ways to protect your home.

    Kmatta/Getty Images

    If promptware/prompt injection slips past defenses just by making AI read it, how do you protect against it? Fortunately, several security practices can help — and in the age of AI, these steps also prevent other privacy and security problems, so they’re healthy habits for everyone.

    Always keep your devices updated, especially in the age of AI

    Updates have always been a first-line defense to patch security vulnerabilities and keep apps safer. Now, they provide important updates to the AI features that live on our phones as well, which can include new security features.

    Always keep your phone’s OS updated to the latest version, as well as the apps (AI or otherwise) that you use on it. Push automatic updates if settings allow you to.

    Read more: My Smart Home Is Much Safer After These 5 Vital Password Changes

    Don’t accept or open any messages from unknown sources

    Not all promptware is zero-click, and some versions need you to open or agree to something to insert the prompt where the AI will read it. Prevent this by avoiding any messages or senders that you don’t recognize. Don’t even open them to learn more if possible — just delete and move on.

    When I contacted Google, one thing they mentioned was, “Prompt injection attacks, while specific to AI, share a fundamental dynamic with long-standing threats like phishing in email. Both are areas where attackers will consistently probe for new vulnerabilities.” Like phishing, it’s best to remove and report than take any risks.

    Don’t ask AI to summarize anything you don’t already know well and trust

    In many cases, AI won’t actually read the prompt unless it’s ordered to do so. That can include summarizing emails or texts, creating calendar events, summarizing online documents and so on. To avoid promptware, it’s best to avoid asking AI to summarize a bunch of messages that you could go through yourself.

    Be careful letting AIs access too many unknown messages.

    Screenshot by James Martin/CNET

    Disable AI in your email, calendars, chat apps and other places you can get messages

    Promptware has to come from somewhere, even if it doesn’t always require you to click on a link. One often effective way to prevent it from taking control of connected devices it tp make sure your chosen AI doesn’t “see” any prompts.

    To that end, see if you can disable AI features in your email, messages (like text message summaries), and productivity apps like calendars to greatly lower the risks of any kind of promptware taking control.

    If you can create detailed settings, you can switch AI to only do things when prompted, so you can still retain certain benefits. This is the HITL or Human-in-the-Loop defense where a human must give AI permission to act so it doesn’t run across any promptware on its own.

    Don’t just copy and paste email subject lines, file names or code

    Promptware often hides at the edges of lengthy descriptions, email subjects, file names and code snippets you may be tempted to copy and paste when you’re organizing or transferring data. It saves time, but I recommend getting into the habit of checking all those titles and descriptions first to make sure there aren’t weird commands hiding at the tail end.

    For more, check out why I like AI in home security, the latest moves to protect kids from AI and why you shouldn’t use AI as a therapist.

    Habits homes malware security Smart Threatens type
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    admin
    • Website

    Related Posts

    Never Tie a Trash Bag Again: Why This Smart Garbage Can Is My New Favorite Gadget

    November 7, 2025

    Early Black Friday Wifi Mesh & Router Deals: Save Over $200 on Netgear, TP-Link, and More Top Brands

    November 7, 2025

    50% of seniors struggle to sleep — but Saatva’s smart mattress could be the solution with up to $525 off this Black Friday

    November 7, 2025
    Leave A Reply Cancel Reply

    Top Posts

    Best action camera deal: Get the DJI Osmo 360 Camera Adventure Combo for its lowest price yet

    November 7, 2025

    PayPal’s blockchain partner accidentally minted $300 trillion in stablecoins

    October 16, 2025

    The best AirPods deals for October 2025

    October 16, 2025
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    How-To Guides

    How to Disable Some or All AI Features on your Samsung Galaxy Phone

    By adminOctober 16, 20250
    Gadget Reviews

    PayPal’s blockchain partner accidentally minted $300 trillion in stablecoins

    By adminOctober 16, 20250
    Smart Devices

    The best AirPods deals for October 2025

    By adminOctober 16, 20250

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Latest Post

    Best action camera deal: Get the DJI Osmo 360 Camera Adventure Combo for its lowest price yet

    November 7, 2025

    YouTube Bug Makes All ‘Shorts’ Interaction Buttons Disappear

    November 7, 2025

    With Skigill, the classic RPG skill tree becomes a crowded battlefield

    November 7, 2025
    Recent Posts
    • Best action camera deal: Get the DJI Osmo 360 Camera Adventure Combo for its lowest price yet
    • YouTube Bug Makes All ‘Shorts’ Interaction Buttons Disappear
    • With Skigill, the classic RPG skill tree becomes a crowded battlefield
    • Norton 360 Deluxe review 2025
    • Best early Black Friday laptop deals 2025: 12+ sales out early

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2025 must-have-gadgets.

    Type above and press Enter to search. Press Esc to cancel.