Welivesecurity AI-Driven Cyberthreats Escalate for SMBs
Article Content
- •73% of SMBs are integrating AI, increasing their attack surface.
- •40% of businesses lack a proper AI policy, heightening security risks.
- •Over 25,000 suspicious AI skills identified, with 3,000 being malicious.
The cybersecurity landscape is rapidly evolving, driven by AI technology that enhances both the capabilities of threat actors and the attack surfaces of businesses. Small and medium-sized businesses (SMBs) are particularly vulnerable as they adopt AI at an accelerated pace, with 73% integrating it into their operations. However, 40% of these businesses lack a proper AI policy, increasing their risk exposure. Malicious AI skills repositories are emerging, with over 25,000 suspicious skills identified, including 3,000 deemed malicious that can exfiltrate data or execute malware. The complexity of security tools and fragmented policies further complicates defenses, leaving organizations overstretched and unprepared. The urgency for effective cybersecurity measures is emphasized as organizations must balance AI benefits with governance and security needs.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track PromptSpy in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Surge in Exploited CVEs and Malware Activity in H1 2026 In the first half of 2026, Insikt Group reported 215 actively exploited CVEs, marking a 34% increase from the previous year. Notably, AsyncRAT emerged as the leading malware, with nearly 60,000 unique hashes. The report highlighted a significant rise in NFC-based Android attacks, which surged by 188%. Threat actors…
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…