Organisations fear AI-driven cyberattacks, but lack key defences

December 2024 Information Security, News & Events, Training & Education

A recent Kaspersky study reveals that businesses are increasingly worried about the growing use of artificial intelligence (AI) in cyberattacks. According to the findings, 56% of surveyed companies in South Africa reported a rise in cyber incidents over the past year, with almost half of respondents (47%) noting that many of these attacks were likely AI-driven.

The study underscores the reality that AI, which has revolutionised numerous industries, is now also empowering cybercriminals, adding an additional layer of complexity to the threats businesses face.

In its latest study titled Cyber defence & AI: Are you ready to protect your organisation? Kaspersky gathered the opinions of IT Security and Information Security professionals working for SMEs and Enterprise-level companies regarding new challenges in protecting their organisations against cyberattacks involving AI.

Leveraging AI by cybercriminals is a serious concern for 76% of respondents from South Africa. The pressure of this challenge is pushing companies to re-assess their cybersecurity strategies and look for proactive and comprehensive solutions. To effectively tackle AI-amplified threats, businesses in South Africa consider regular training to build internal expertise (98%), highly qualified personnel (98%), and relevant external cybersecurity expertise (98%) as the most important factors for protecting their organisations. They also recognise the importance of having enough staff in their IT teams (96%) and using third-party security solutions (91%).

Despite rising awareness, the study reveals a concerning gap in readiness among many companies. Just under half of the organisations surveyed in South Africa lack crucial resources needed to address these sophisticated threats – 44% do not have the relevant external cybersecurity expertise at their disposal, 38% report that their IT teams are not large enough, 36% lack highly qualified staff, and 31% fall short in regular training efforts.

Additionally, 42% of respondents do not think they have adequate security solutions, exposing them to potential vulnerabilities. While most respondents claim to know how to address this lack of resources, the fact remains that they are not in place.

“The cybersecurity landscape today mirrors past challenges, with businesses questioning if current solutions suffice. Ransomware, once a primary threat, now demonstrates a dangerous surge, and business decision-makers start questioning the causes of this resurgence. The recent hype around AI offers an easy, if not entirely correct, explanation. In reality, while using AI to create convincing phishing messages or more effective reconnaissance may be of some help, the root causes are most often more straightforward; cybercriminals have become more organised, better at collaborating, developing innovative attack strategies, and lowering the barriers for less skilled and resourceful attackers.”

“So, while it is useful to keep an eye on AI progress that can enable both attackers and defenders with new options, there are solid strategies companies can – and should – implement immediately. Companies should prioritise securing critical IT infrastructure with robust, multi-layered solutions that offer a unified security context. An XDR ecosystem, combined with skilled expertise – whether in-house or through a managed service – can greatly enhance defences.

Additionally, ongoing employee training, including cybersecurity basics and safe AI practices, adds another critical layer of protection for the organisation,” says Oleg Gorobets, a corporate infrastructure protection expert at Kaspersky.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

The dangers of parked domains
Information Security
Kaspersky warns that fraudsters are exploiting so-called ‘parked domains’ to harvest sensitive personal data from unsuspecting users. These deceptive sites often masquerade as error pages or ad-filled placeholders, exposing users to privacy breaches and potential identity theft.

Read more...
Protect the integrity of critical video evidence
Surveillance News & Events
SWEAR has announced the Community Video Integrity Project, a new initiative designed to help cities and public agencies proactively protect the integrity of critical video and establish a verifiable record of authenticity from the moment it is captured.

Read more...
ONVIF strengthens authenticity of video surveillance footage
Surveillance News & Events
Amid a rising tide of manipulated and AI-generated footage, the add-on will equip the surveillance industry with a shared, standards-based way to establish where video came from and whether it has remained unaltered.

Read more...
Security has an identity problem
Access Control & Identity Management Information Security
Cybersecurity discussions have mainly focused on defence, including stronger firewalls, tighter network controls, and better endpoint security. However, in today's world, those traditional defences have become less relevant.

Read more...
Detect procurement fraud before losses escalate
Security Services & Risk Management News & Events Financial (Industry) Editor's Choice
Organisations need to move procurement fraud prevention closer to the point where suspicious activity occurs, rather than relying primarily on investigations after money has already been lost, according to SAS and FACTS Consulting.

Read more...
Buying more security tools is not building a defence
Information Security
Sophisticated attacks are specifically engineered to bypass individual security tools, and companies absorbing the damage are those who have confused procurement with protection, says Richard Frost from Armata Cyber Security.

Read more...
Modernising ‘smart’ ports
IoT & Automation Information Security Transport (Industry) Logistics (Industry)
A modern port is part of a much larger digital trade ecosystem where all systems need to work together. If one part of that ecosystem is disrupted, the impact can quickly move through the supply chain.

Read more...
Reinventing cybersecurity
NEC XON News & Events Information Security Commercial (Industry)
NEC XON helps a workforce solutions leader reinvent cybersecurity with an AI-enhanced XDR solution to keep pace with increasingly devious cyberattack techniques, including fileless malware, lateral movement, and credential misuse.

Read more...
Hold the line
BlueVision Information Security Editor's Choice
While most businesses are still focused on guarding the wall, the perimeter today has moved to the login screen, according to Christo Coetzer, founder and managing director of BlueVision Technologies.

Read more...
Attackers are turning AI to their advantage
Information Security AI & Data Analytics
ESET's H1 2026 Threat Report analysed around 900 000 AI skills and found more than 3000 to be outright malicious, exposing a fast-growing attack surface for organisations experimenting with AI.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.