Contact to us

12.2% of users in Pakistan attacked by online threats during the first half of 2026: Kaspersky

Islamabad: Kaspersky’s Global Research & Analysis Team (GReAT) reveals key cyber threat trends for the first half of 2026 at Cyber Security Weekend for the Middle East, Turkiye and Africa region (META).

As the cybersecurity landscape continues to evolve, cyberthreats are becoming increasingly diverse and sophisticated. The rapid adoption of artificial intelligence (AI), coupled with ongoing geopolitical and economic instability, is contributing to the rise of cybercrime and the growing complexity of cyberattacks.

According to Kaspersky’s telemetry, online threats exploiting vulnerabilities in websites, emails and web services continued to affect millions of users across the META region during the first half of 2026.
Turkiye recorded the highest percentage of users affected by web-based threats at 22.8%, followed by Kenya (21.2%) and Qatar (19.3%). In contrast, Saudi Arabia, Jordan and Pakistan registered the lowest share of users targeted by web-borne attacks in the region. In Pakistan, 12.2% Kaspersky users with online threats blocked by Kaspersky solution during first half of 2026.

Kaspersky experts report that threat actors are increasingly integrating AI into different stages of their operations. Large language models are already being used to generate phishing emails, malicious code and supporting operational content.

AI is also beginning to play a larger role in malware development. Researchers have already observed AI-assisted malware development in campaigns linked to the FunkSec group, which deployed Rust-based malware capable of data theft, encryption and process manipulation. Similarly, during the RevengeHotels campaign in 2025, threat actors used large language models to generate portions of the infector and downloader code.

“We expect AI to remain one of the key factors shaping the threat landscape in 2026, as we already see how it is reshaping attacker workflows and accelerating their operations,” said Sergey Lozhkin, Head of Global Research and Analysis Team in APAC and META regions at Kaspersky. “By lowering the time and cost required to develop and adapt malicious tools, AI allows threat actors to iterate faster and scale their efforts. Defenders should be prepared for quicker shifts in tactics.”

In addition to the growing use of AI by cybercriminals, Kaspersky experts identified several trends that organizations should monitor closely. Cloud-based data exfiltration is a method in which attackers increasingly route stolen data through legitimate cloud and file-sharing services to blend in with normal traffic. Some groups disrupt production and business processes, not just encrypt data, to increase pressure for payment via Ransomware targeting operations.Some AI agent solutions are granted broad or even full system access.

If compromised, attackers could modify the system prompt or the agent’s configuration, for example, causing it to download a payload on every startup. As AI agents gain broader access to enterprise systems, attackers start exploit compromised skills to manipulate agent behavior, steal sensitive data, execute unauthorized actions, and establish persistent access. This creates a new layer of risk where trusted AI tools can be turned into powerful mechanisms for cyberattacks.

As cyberthreats continue to evolve alongside emerging technologies, Kaspersky recommends that organizations strengthen their cybersecurity posture through continuous vulnerability management, timely patching, employee awareness training, threat intelligence, and advanced security solutions like Kaspersky Next, capable of detecting sophisticated and AI-assisted attacks.

Leave a Reply

Your email address will not be published. Required fields are marked *