Pakistan Among Least Targeted by Web-Based Threats in META Region: Kaspersky

Muhammad Naeem:

Islamabad: The cyber threat landscape is becoming increasingly complex as artificial intelligence (AI) transforms the way cybercriminals operate, according to Kaspersky researchers, who unveiled the major cybersecurity trends and regional risks recorded during the first half of 2026 at the Cyber Security Weekend for the Middle East, Türkiye and Africa (META) region.

The cybersecurity company said the rapid adoption of AI, combined with ongoing geopolitical and economic uncertainty, is accelerating the evolution of cybercrime and enabling attackers to launch more sophisticated and scalable operations.

Kaspersky’s telemetry showed that online threats exploiting vulnerabilities in websites, emails and web services continued to impact millions of users across the META region during the first half of 2026.

Türkiye recorded the highest percentage of users affected by web-based threats at 22.8%, followed by Kenya (21.2%) and Qatar (19.3%). Saudi Arabia, Jordan and Pakistan reported the lowest share of users targeted by web-borne attacks. In Pakistan, Kaspersky blocked online threats for 12.2% of its users during the first six months of 2026.

According to Kaspersky researchers, threat actors are increasingly incorporating AI into every stage of their operations. Large language models are already being used to generate phishing emails, write malicious code and produce supporting content for cyberattacks.

The company also noted that AI is beginning to play a greater role in malware development. Researchers observed AI-assisted malware linked to the FunkSec group, which deployed Rust-based malware capable of stealing data, encrypting files and manipulating system processes. During the RevengeHotels campaign in 2025, attackers also used large language models to generate parts of the infector and downloader code.

“We expect AI to remain one of the key factors shaping the threat landscape in 2026, as we already see how it is reshaping attacker workflows and accelerating their operations,” said Sergey Lozhkin, Head of Global Research and Analysis Team for the APAC and META regions at Kaspersky. “By lowering the time and cost required to develop and adapt malicious tools, AI allows threat actors to iterate faster and scale their efforts. Defenders should be prepared for quicker shifts in tactics.”

Beyond AI-driven attacks, Kaspersky highlighted several emerging risks that organisations should closely monitor. Cybercriminals are increasingly using legitimate cloud storage and file-sharing platforms to exfiltrate stolen data, allowing malicious activity to blend with normal network traffic and making detection more difficult.

Researchers also warned that ransomware groups are expanding their tactics beyond data encryption by deliberately disrupting business operations and production systems to increase pressure on victims to pay.

Another growing concern is the rapid adoption of AI agents with broad system privileges. If compromised, attackers could manipulate an AI agent’s configuration or system prompts to download malicious payloads automatically, steal sensitive information, execute unauthorised actions and maintain persistent access to enterprise environments. As businesses integrate AI agents into critical operations, these trusted tools could become powerful new attack vectors if not properly secured.

Kaspersky said organisations should strengthen their cybersecurity defences and remain vigilant as AI continues to reshape both offensive cyber capabilities and defensive security strategies throughout 2026.

Leave a Reply

Your email address will not be published. Required fields are marked *