Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Microsoft Copilot Deployments Delayed Over Security Concerns

July 23, 2026

ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files

July 23, 2026

Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness

July 23, 2026
Facebook X (Twitter) Instagram
Thursday, July 23
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
News

Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness

Team-CWDBy Team-CWDJuly 23, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


The rise of AI tooling as part of the attacker playbook has become a significant factor in why ransomware attacks have become harder to detect until it is too late.

According to a global survey of cybersecurity professionals by Proofpoint, of those organizations which have been hit by a ransomware attack, almost two thirds (65%) said that AI increased the effectiveness of the attack.

The AI tools did this by helping cybercriminals to produce more convincing phishing emails, impersonation attacks and credential theft campaigns.

“Across the incidents examined in this report, evidence of AI involvement was the norm, not the exception,” said the 2026 AI-Era Ransomware Report, published on July 22.

According to analysis of the incidents, the initial point of entry for a ransomware attack commonly involved human interaction. Of the incidents studied, 47% involved malicious links at some point of the attack chain, 46% involved malicious attachments and 36% involved credential harvesting.

According to the report, when respondents were asked why the ransomware attack was able to bypass their existing controls, 40% said that the initial lure appeared legitimate to the extent that the employee did not suspect anything was wrong.

Previously, many malicious emails, attachments and websites contained subtle signs which might look suspicious enough to provide pause for thought, such as clumsy phrasing, mismatched logos, or ‘official’ login pages that don’t look quite right.

Now, empowered with AI tools, attackers have the capability to make these lures look like legitimate business communications.

 Read more: Why Ransomware Remains One of Cybersecurity’s Most Persistent and Costly Threats

“AI hasn’t fundamentally changed ransomware, but it has materially improved the attacks that lead to ransomware,” said Ryan Kalember, chief strategy officer at Proofpoint.

“Today’s attackers are using AI to create highly convincing phishing emails, malware components like scripts, and credential theft campaigns that exploit human trust at scale. Organizations that continue treating ransomware and data extortion as endpoint or recovery problems are missing what these attacks most frequently begin with: people, identities and trusted communications.” 

It is not only people who are being duped by AI-based attacks, enterprise software protection solutions and technical controls regularly failed to identify malicious activity.

Of those surveyed, a third said existing email security controls failed to detect the attack entirely, while a quarter cited misconfiguration or gaps in security controls.

“Organizations that want to reduce ransomware risk must focus on stopping attacks at the point of entry, protecting identities from compromise, and responding before attackers can turn access into extortion,” said Proofpoint.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleTwo Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack
Next Article ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files
Team-CWD
  • Website

Related Posts

News

Microsoft Copilot Deployments Delayed Over Security Concerns

July 23, 2026
News

ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files

July 23, 2026
News

Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack

July 23, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

Common Apple Pay scams, and how to stay safe

January 22, 2026

Find your weak spots before attackers do

November 21, 2025

The hidden risks of browser extensions – and how to avoid them

September 13, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.