The rise of artificial intelligence tools is reshaping the field of cybersecurity. While attackers currently seem to have the upper hand, organizations can still protect themselves and turn cybersecurity into a tool for growth, performance, and resilience. Artificial intelligence can boost efficiency but also amplifies threats, such as the detection of system weaknesses, the creation of content used in social engineering, the development of self-operating malware, and the exploitation of both human and technical flaws. Additionally, there is a growing concern about shadow AI—unauthorized or undetected AI systems that develop within organizations.
Small and medium-sized enterprises and mid-sized companies are now at the forefront of the battle against cyberattacks. The nature of cyber threats is evolving, becoming more credible, more targeted, and harder to detect. These businesses often lack the resources and preparation needed to defend themselves, making them prime targets. In industrial settings, cybersecurity has become a major concern for companies managing critical infrastructure, as the merging of systems and interconnected networks blurs the lines between traditional IT systems and operational technology (OT).
A recent cyberattack on the English manufacturer Jaguar Land Rover serves as a warning. The attack caused factory shutdowns lasting three weeks, leaving teams without work and affecting over 5,000 suppliers and subcontractors, some of whom faced potential bankruptcy. The financial impact was estimated in the billions of euros. At the same time, new regulations are being introduced to strengthen cybersecurity, including the Cyber Resilience Act, the AI Act, and the NIS 2 directive, which are expanding cybersecurity requirements to more companies.
AI agents capable of executing cyberattacks on their own have recently been reported. A few weeks ago, it was revealed that AI's capabilities had become so advanced that they could pose a threat to humanity as a whole. This has sparked a mix of fear marketing by major tech companies, who may benefit from highlighting risks to justify increased investments, and genuine technological progress. As a result, it is becoming increasingly difficult to clearly assess the risks involved.
AI is speeding up the execution of cyberattacks and strengthening defense strategies. While AI enables more industrialized and automated attacks, its real impact lies in the increased speed of execution, which threatens organizations by making current response processes outdated. It might seem that the balance is tilted toward attackers, who will eventually gain access to the latest large language models, giving them unprecedented speed and scalability.
However, there are solid reasons to be optimistic from the perspective of cyber defense. AI can help identify attack paths that were previously unknown, better understand complex system architectures, detect and respond to incidents more proactively, and reduce the workload on security operations teams. For this to happen, it is essential to implement AI governance, map data carefully, and regulate its use by employees to avoid stifling innovation while reducing the risks of misuse.
Ultimately, human intelligence will remain essential in managing vulnerabilities, placing them in the context of the company, and choosing technological dependencies. More than ever, the human factor will be decisive, with a growing need to train and sensitize employees about the opportunities and challenges of artificial intelligence tools, taking into account privacy and security concerns.
Artificial Intelligence's Dual Role in Cybersecurity Threats and Defenses
AI-rewritten from original reportingHow it works
aicybersecuritysmeregulationmalwarethreats



