AI-Driven Cybersecurity Threats and Defenses in 2026
Artificial intelligence is rapidly transforming the cybersecurity landscape, with both attackers and defenders leveraging AI to gain an edge. According to Google's Cybersecurity Forecast 2026, AI is now central to cybercrime, enabling adversaries to automate phishing, clone voices for social engineering, and launch sophisticated prompt injection attacks against large language models (LLMs). The rise of AI agents—autonomous systems acting on behalf of users—introduces new identity and access management challenges, as traditional security controls designed for humans are no longer sufficient. Security operations are also evolving, with analysts increasingly relying on AI tools for faster incident response, though this shift brings new oversight and risk management concerns. The criminal underground is developing unrestricted AI models, further lowering the barrier for less advanced threat actors.
The proliferation of AI-generated code and agentic workflows is reshaping software development and supply chain security, as highlighted by Endor Labs' 2025 State of Dependency Management and industry commentary. Studies show that a significant portion of AI-generated code is vulnerable, raising concerns about the security of modern applications. The Model Context Protocol (MCP) is emerging as a standard for enabling AI agents to interact with external tools, but introduces new attack surfaces that require a "Triple Gate Pattern" of defense across the AI, MCP, and API layers. Despite these risks, recent analyses reveal that startups and enterprises are prioritizing productivity and automation over security in their AI investments, often adopting a "build first, secure later" mentality. As AI becomes ubiquitous in both offensive and defensive cyber operations, organizations must adapt their security architectures and practices to address these evolving threats and opportunities.

Get ahead of threats like this
Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
How this story unfolded
2 events from the most recent confirmed update back to the earliest known activity.
Google publishes Cybersecurity Forecast 2026 on AI-driven threats
Google released its Cybersecurity Forecast 2026, warning that AI will significantly accelerate cybercrime and reshape both attacker and defender operations. The report highlighted risks including AI-enabled phishing, voice cloning, prompt injection, ransomware, supply-chain attacks, and growing nation-state activity.
a16z and Mercury data report highlights lack of explicit AI security tool spending
A spending report based on Mercury fintech platform data and published by Andreessen Horowitz found that startups were primarily buying AI tools for productivity, development, automation, and content generation, with no explicit security tools in the top 50. Commentary in the report coverage said this reflects either a build-first-secure-later mindset or the embedding of security features into broader SaaS and AI platforms.
Related entities
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Sources
5 references tracked. Mallory keeps watching after this page renders.
Google says 2026 will be the year AI supercharges cybercrime
helpnetsecurity.com
Open sourceSoftware Dependency Dilemma's in the AI Era
resilientcyber.io
Open sourceAI App Spending Report: Where Are the Security Tools?
darkreading.com
Open sourceTransforming Frontline Workflows with Passwordless Access, AI costs, and the News – Joel Burleson-Davis – ESW #431
scworld.com
Open sourceDefense in Depth for AI: The MCP Security Architecture You’re Missing
securityboulevard.com
Open sourceSee the full picture, correlated to your attack surface.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.


