According to Sergei Lozhkin, head of the META and APAC research center at Kaspersky, Egypt faced approximately 5 million cyber attacks in 2026. Lozhkin noted that the nature of these attacks is rapidly evolving, with attackers increasingly relying on artificial intelligence (AI) to execute advanced stages of their operations. This shift enables them to automate various phases of the attack, from information gathering to data theft.
Kaspersky's global research and analysis team consists of over 75 specialists worldwide, focusing on threat intelligence and reverse engineering to detect and analyze sophisticated threats. The team collaborates with entities in more than 90 countries, publishing reports to clarify the nature of threats, attacker tactics, and tools used, as well as prevention mechanisms. In 2025, Kaspersky released over 19 research reports on various cyber threats.
A significant transformation observed by Kaspersky's team in 2026 involves the emergence of attacks that can be executed in multiple stages without direct human intervention. Attackers utilize AI to gather information on targets, identify vulnerabilities, infiltrate networks, deploy ransomware, and steal data autonomously. This development represents a qualitative shift in the cyber threat landscape, as AI becomes a tool for both defending systems and developing and executing cyber attacks.
Lozhkin highlighted that attacks have become more targeted, with attackers conducting thorough intelligence gathering on targeted companies before executing an attack. They seek to understand the systems used by the organization, existing vulnerabilities, and the level of protection available, then tailor the attack accordingly. This approach makes attacks more precise and complex, increasing the difficulty of detection and traditional defense.
Kaspersky's research team relies on data from its security network, combined with analytical systems and AI tools, to monitor threats. More dangerous threats are subject to manual analysis by specialized researchers. While AI is crucial in analyzing vast amounts of data, it does not replace the role of experts, particularly in complex investigations requiring an understanding of attacker tactics and evidence analysis.
Advanced Persistent Threats (APT) remain among the most dangerous and sophisticated cyber attacks monitored by Kaspersky's research team. The team tracks several active threat groups in the Middle East, analyzing their campaigns, tactics, and tools. Some threat groups target multiple sectors, including commercial, military, aviation, and infrastructure, reflecting the broadening scope of potential cyber attack targets.
The rapid evolution of attack and defense tools necessitates the combination of AI and human expertise. Automated systems can process large volumes of data quickly, while specialized researchers remain essential for understanding the full context of an attack and identifying attacker tactics. The goal of research and analysis extends beyond detecting attacks to understanding their execution and tools used, aiding organizations in developing protective measures and responding to future threats.
Key points
- Egypt faced 5 million cyber attacks in 2026.
- AI-driven threats are increasingly used by attackers.
- Kaspersky's team collaborates with entities in over 90 countries.