PromptLock: The First Glimpse of AI-Powered Ransomware

August 27, 2025

Cybersecurity researchers at ESET have uncovered what they believe to be the first known AI-powered ransomware, a new malware strain named PromptLock. While the good news is that it doesn’t appear to be fully functional yet, its discovery marks an unsettling turning point in the evolution of cybercrime.

A Proof of Concept – But a Warning Sign

ESET’s Anton Cherepanov and Peter Strycek revealed that PromptLock is likely a proof-of-concept or a work in progress, rather than a weapon currently being deployed in real-world attacks. However, even in its unfinished state, the malware demonstrates just how easily artificial intelligence can be harnessed by criminals to strengthen their attack chains.

AI-Powered Ransomware
How PromptLock Works

At its core, PromptLock takes advantage of OpenAI’s gpt-oss-20b model, running locally through the Ollama API. This allows the ransomware to dynamically generate malicious Lua scripts on an infected machine, making its behaviour unpredictable and harder to detect.

The scripts can:

  • Scan the local filesystem

  • Identify and inspect files

  • Exfiltrate selected data

  • Encrypt targeted content

Although the code includes references to file destruction, this feature does not yet appear to be operational.

The ransomware itself is written in Go (Golang), a programming language increasingly favoured by cybercriminals for its versatility across platforms. Early analysis shows that both Windows and Linux variants of PromptLock have already been uploaded to VirusTotal.

Why AI Raises the Stakes

Artificial intelligence has already lowered the barrier for entry into cybercrime. Attackers with limited technical knowledge can now generate convincing phishing campaigns, realistic deepfakes, and automated attack scripts at the click of a button. PromptLock is the latest example of how these tools can be weaponised to amplify threats.

What makes AI-driven malware especially concerning is its ability to adapt in real time, altering its tactics to evade detection and maximise impact. This could transform ransomware from a static attack into a dynamic, evolving threat capable of operating at scale.

PromptLock
What This Means for Businesses

Although PromptLock itself may not yet pose an immediate danger, its discovery is a clear warning: AI will increasingly become part of the attacker’s toolkit. Organisations must prepare for a future where ransomware is not just widespread, but smarter, faster, and harder to defend against.

Practical steps include:

  • Strengthening endpoint detection and response (EDR) solutions

  • Maintaining offline, encrypted backups

  • Training staff to spot phishing and social engineering tactics

  • Keeping systems patched and monitored

How Black Sheep Support Can Help

At Black Sheep Support, we understand that the cyber threat landscape is evolving faster than ever — and AI-driven attacks like PromptLock are only the beginning. That’s why we offer Cyber Security & Health Checks, providing a comprehensive review of your organisation’s IT security posture. Whether you need guidance with the fundamentals or support in implementing more advanced protections, our expert team is here to help.

Is your business truly cyber secure? With Black Sheep Support, you gain more than just technical expertise — you gain a partner that helps you intelligently safeguard your business, empower your team, and navigate the complex, ever-changing cyber landscape with confidence.

What is PromptLock ransomware?

L
K

PromptLock is the first known example of AI-powered ransomware, discovered by researchers at ESET. Unlike traditional ransomware, it uses OpenAI’s gpt-oss-20b model to generate malicious scripts in real time, allowing it to scan, exfiltrate, and encrypt files on infected devices. While not yet active in real-world attacks, PromptLock highlights the growing risk of AI in cybercrime.

How does AI make ransomware more dangerous?

L
K

Artificial intelligence makes ransomware more effective by enabling it to adapt on the fly, automate tasks like file discovery and encryption, and evade traditional security tools. AI also lowers the barrier for entry, meaning less-skilled attackers can now launch more advanced attacks with minimal technical knowledge.

Is PromptLock ransomware currently active?

L
K

No — researchers believe PromptLock is still a proof-of-concept or work in progress. However, its existence shows that cybercriminals are experimenting with AI tools, making it likely that future ransomware strains will incorporate similar AI-driven tactics.

How can businesses protect themselves from AI-powered ransomware?

L
K

Businesses should strengthen their defences with endpoint detection and response (EDR) tools, maintain secure offline backups, and ensure all software is regularly patched. Staff training is also essential to spot phishing attempts, which often serve as the entry point for ransomware. Partnering with a specialist provider like Black Sheep Support helps ensure your cybersecurity strategy evolves alongside emerging threats.

How can Black Sheep Support help my business stay secure?

L
K

Black Sheep Support offers Cyber Security & Health Checks to review your IT security from top to bottom, helping you address both basic and advanced risks. Our expert-led services are designed to help you safeguard your business, empower your team, and prepare for evolving threats like AI-powered ransomware.