A new report highlights the latest cybersecurity cyber threat trends in Saudi Arabia during the first half of 2026. Kaspersky’s Global Research & Analysis Team (GReAT) presented these findings at the Cyber Security Weekend for the Middle East. Specifically, detection systems blocked 5.4 million online attacks in the Kingdom during this period.
While millions of users across the region faced risks, Saudi Arabia registered one of the lowest shares of targeted users. In contrast, Turkiye recorded the highest percentage of affected users at 22.8 percent. Meanwhile, Kenya and Qatar followed with 21.2 percent and 19.3 percent respectively.
Analysis of Cyber Threat Trends in the Region
The data shows that online threats exploiting vulnerabilities in websites, emails, and web services remain highly active. Consequently, organizations must adapt to these evolving cyber threat trends to protect their digital assets. Furthermore, geopolitical and economic factors continue to influence the frequency of these digital attacks.
The Role of Artificial Intelligence in Attacks
Threat actors are increasingly integrating artificial intelligence into different stages of their operations. For instance, large language models now generate phishing emails, malicious code, and supporting operational content. Additionally, researchers observed AI-assisted malware development in campaigns linked to the FunkSec group.
During that campaign, the group deployed Rust-based malware capable of data theft, encryption, and process manipulation. Similarly, the RevengeHotels campaign in 2025 utilized large language models to generate portions of infector and downloader code. As a result, the time and cost required to develop malicious tools have decreased.
“We expect AI to remain one of the key factors shaping the threat landscape in 2026, as we already see how it is reshaping attacker workflows and accelerating their operations.”
Sergey Lozhkin, Head of Global Research and Analysis Team in APAC and META regions at Kaspersky
Emerging Vectors and Tactics
Beyond artificial intelligence, several other tactics are shaping the current digital environment. For example, attackers increasingly route stolen data through legitimate cloud and file-sharing services to blend with normal traffic. Moreover, some ransomware groups now disrupt production and business processes rather than just encrypting data.
Another emerging risk involves the compromise of AI agent solutions that have broad system access. If compromised, attackers can modify system prompts to download payloads on startup. Consequently, these malicious skills become a new attack vector that manipulates trusted tools.
Recommended Security Measures for Organizations
To mitigate these risks, the report recommends that organizations strengthen their overall security posture. Specifically, businesses should implement continuous vulnerability management and timely patching. In addition, employee awareness training and advanced threat intelligence remain essential defenses.
Finally, deploying advanced security solutions like Kaspersky Next can help detect sophisticated, AI-assisted attacks. By combining these strategies, enterprises can better defend against the complex cyber threat trends observed this year.





