Close Menu
geekfence.comgeekfence.com
    What's Hot

    Irish SMEs report strong trading

    August 8, 2026

    Deep Learning with R, 2nd Edition

    August 8, 2026

    Deploying Semantic Views on Snowflake

    August 8, 2026
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook Instagram
    geekfence.comgeekfence.com
    • Home
    • UK Tech News
    • AI
    • Big Data
    • Cyber Security
      • Cloud Computing
      • iOS Development
    • IoT
    • Mobile
    • Software
      • Software Development
      • Software Engineering
    • Technology
      • Green Technology
      • Nanotechnology
    • Telecom
    geekfence.comgeekfence.com
    Home»Cyber Security»ESET Threat Report H1 2026
    Cyber Security

    ESET Threat Report H1 2026

    AdminBy AdminJuly 10, 2026No Comments3 Mins Read8 Views
    Facebook Twitter Pinterest LinkedIn Telegram Tumblr Email
    ESET Threat Report H1 2026
    Share
    Facebook Twitter LinkedIn Pinterest Email


    ESET Research

    Threat Reports

    A view of the H1 2026 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts.

    Jiří Kropáč

    08 Jul 2026
     • 
    ,
    2 min. read

    ESET Threat Report H1 2026

    The first half of 2026 shows how attackers continue to improve the efficiency and scalability of their operations. Rather than relying on entirely new methods and tools, they are quickly adapting established techniques to new platforms, technologies, and user behaviors.

    Artificial intelligence is playing a growing role in this development. In H1 2026, ESET analyzed nearly 900,000 AI skills – small functional components used by AI agents – and identified tens of thousands of suspicious and thousands of outright malicious instances. The number of AI skills within this new ecosystem is growing rapidly “as we speak”, further expanding the attack surface.

    AI is also beginning to appear within malware itself. Shortly after the emergence of the first AI-powered ransomware in 2025, ESET researchers identified PromptSpy, the first known Android malware to use generative AI in its execution flow. The malware leverages AI – specifically, Google’s Gemini – to interpret user interface elements and adapt across devices and environments without relying on hardcoded behavior. While still rare, PromptSpy illustrates the potential for increased flexibility in future threats – although guardrails against abuse included in LLMs are likely slowing down the adoption.

    ClickFix – a social engineering technique leveraging fake error messages – has expanded beyond fake CAPTCHA prompts into AI-themed help pages, browser extensions, and cloud authentication scenarios. ESET detections of this vector more than doubled between H2 2025 and H1 2026, indicating sustained activity and adaptation.

    Phishing campaigns are also evolving in response to user behavior. QR code phishing – also known as quishing – has reached record levels in ESET telemetry, with attackers embedding malicious links in QR codes to bypass cursory inspection and shift user interaction to mobile devices, while exploiting the implicit trust many people place in the black-and-white squares.

    Last but not least, ransomware activity showed no signs of slowing down, with continued use of EDR killers – tools designed to disable security software during attacks. ESET Research has documented over 100 EDR killers used in the wild, with new variants appearing regularly. At the same time, data from multiple sources shows that a declining share of victims are choosing to pay ransoms, suggesting some progress in mitigation and response measures.

    Follow ESET research on X, Bluesky and Mastodon for regular updates on key trends and top threats.

     

    To learn more about how threat intelligence can enhance the cybersecurity posture of your organization, visit the ESET Threat Intelligence page.





    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Canadian Man Pleads Guilty in Snowflake Extortions – Krebs on Security

    August 8, 2026

    This month in security with Tony Anscombe – July 2026 edition

    August 7, 2026

    UK AI tests found 19 unauthorized agent actions

    August 6, 2026

    Beyond Volume: Countering the Stealth Tactics of Modern DDoS Attacks

    August 5, 2026

    Fake IRS letters target cryptocurrency holders

    August 4, 2026

    Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes

    August 2, 2026
    Top Posts

    Understanding U-Net Architecture in Deep Learning

    November 25, 202572 Views

    The Next Paradigm in Efficient Inference Scaling – The Berkeley Artificial Intelligence Research Blog

    May 16, 202640 Views

    Hard-braking events as indicators of road segment crash risk

    January 14, 202634 Views
    Don't Miss

    Irish SMEs report strong trading

    August 8, 2026

    Almost half (46%) of Irish SMEs say business activity is stronger than it was this…

    Deep Learning with R, 2nd Edition

    August 8, 2026

    Deploying Semantic Views on Snowflake

    August 8, 2026

    Taiwan Investigates Chinese Firms for Poaching Tech Talent

    August 8, 2026
    Stay In Touch
    • Facebook
    • Instagram
    About Us

    At GeekFence, we are a team of tech-enthusiasts, industry watchers and content creators who believe that technology isn’t just about gadgets—it’s about how innovation transforms our lives, work and society. We’ve come together to build a place where readers, thinkers and industry insiders can converge to explore what’s next in tech.

    Our Picks

    Irish SMEs report strong trading

    August 8, 2026

    Deep Learning with R, 2nd Edition

    August 8, 2026

    Subscribe to Updates

    Please enable JavaScript in your browser to complete this form.
    Loading
    • About Us
    • Contact Us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2026 Geekfence.All Rigt Reserved.

    Type above and press Enter to search. Press Esc to cancel.