AI-based social engineering cyberattacks top 2026 threat landscape
20/10/2025 | ISACA
A new study by ISACA has found that AI-driven social engineering will be the most significant cyber threat in 2026. This marks the first time this specific AI threat has topped the survey, with 63% of the 3,000 IT and cybersecurity professionals surveyed in the inaugural Tech Trends & Priorities Pulse Poll citing it as a major challenge. The threat surpasses long-standing concerns like ransomware and extortion attacks (54%) and supply chain attacks (35%).
The report highlights a significant gap in preparedness for generative AI risks, with only 13% of organisations feeling "very prepared," while 25% feel "not very prepared." Despite this, 62% identify AI and machine learning as top technology priorities for 2026.
Another leading concern is the increasing talent shortage, with only 18% of respondents believing they have a strong talent pipeline. While 39% plan to hire more digital trust roles in 2026, 44% anticipate difficulty in filling these positions with qualified candidates.
The report recommends establishing robust AI governance processes, accelerating plans to upskill the workforce, and strengthening cyber resilience.
Meanwhile, CrowdStrike’s latest State of Ransomware Survey identified that 76% of organisations are struggling to cope with the speed and sophistication of AI-powered attacks. A further 78% of respondents admitted to being hit by ransomware attacks in the past 12 months.
Training Announcement: Freevacy offers a range of independently recognised professional AI governance qualifications and AI Literacy short courses that enable specialist teams to implement robust oversight, benchmark AI governance maturity, and establish a responsible-by-design approach across the entire AI lifecycle. Find out more.
What is this page?
You are reading a summary article on the Privacy Newsfeed, a free resource for DPOs and other professionals with privacy or data protection responsibilities helping them stay informed of industry news all in one place. The information here is a brief snippet relating to a single piece of original content or several articles about a common topic or thread. The main contributor is listed in the top left-hand corner, just beneath the article title.
The Privacy Newsfeed monitors over 300 global publications, of which more than 6,250 summary articles have been posted to the online archive dating back to the beginning of 2020. A weekly roundup is available by email every Friday.