The headlines are familiar: ‘Geopolitical tensions escalate’ and ‘Massive AI cyberattacks surge.’ These recurring stories are a stark indicator of the evolving landscape. Traditional approaches to cybersecurity are no longer enough. We must move beyond passive defence and actively prepare for a new era of cyberwarfare.
The statistics underscore this urgency. Research from Armis reveals that 88% of UK IT decision-makers are concerned about the impact of cyberwarfare, a 32% increase from the previous year. This concern arises amid a rapidly expanding attack surface – with 50 billion connected devices projected by the end of 2025 – and growing global instability. Yet the most significant driver behind this change is AI.
The question then becomes: what can organizations do to prepare? Fortunately, the key to effective preparation lies in the very tool being used against us.
The cost of falling behind in AI cyberwarfare
The news cycle consistently highlights how AI is enhancing the capabilities of nation-state attackers, cybercriminal groups, and other threat actors – with good reason. Nearly three-quarters (70%) of UK IT decision-makers now agree that AI-powered attacks pose a significant threat to their organization’s security.
Yet these threats are already slipping through the cracks. Four in five (82%) UK IT leaders admit that offensive techniques regularly evade their existing security tools. As IT and operational technology (OT) environments become more connected, the illusion of isolated, ‘air-gapped’ systems offering fool-proof protection is quickly fading. The integration of IT and OT systems may improve efficiency but often creates new vulnerabilities.
The attack surface is continually becoming more complex. In addition to traditional vectors such as networks, endpoints, and applications, bad actors are using AI to drive more deceptive techniques, such as voice cloning, deepfakes, and synthetic social engineering. Despite these developments, many organizational defences remain reactive.
There is growing concern about the use of AI by nation-state actors. Some 71% of UK IT leaders are specifically worried about AI enabling more sophisticated, targeted cyberattacks. Advanced persistent threat (APT) groups aligned with various nation-states are reportedly using large language models (LLMs) to enhance operations and undermine trust in democratic institutions.
The cost of falling behind is severe. The average ransomware payout for UK organizations has surged to £5.6 million, with one in eight paying up to £7.9 million. These figures, however, only capture part of the impact. Attacks often result in operational shutdowns, data theft, reputational damage, and – in nearly half (49%) of cases – the stalling or abandonment of digital transformation projects.
In this era of AI-driven cyberwarfare, organizations must adapt. It’s time to fight fire with fire.
Turning the tables in the age of AI
AI may be the weapon of choice for attackers, but it is also the most powerful tool that defenders have at their disposal. When used effectively, AI-driven threat intelligence can transform cybersecurity from a reactive scramble into a proactive strategy, enabling organizations to anticipate and outpace threats.
Predictive AI models can neutralise threats before they escalate. AI-powered tools can continuously monitor the attack surface across networks, endpoints, connected devices, and OT environments. These systems excel at processing vast data sets and identifying subtle patterns that human analysts might miss – flagging early indicators of compromise across both the surface and Dark Web.
However, to truly stay ahead, organizations must change their mindset. In this new AI-driven cyber landscape, responding after the fact is no longer viable. Defenders must match attackers in speed and sophistication. AI must become the backbone of the security strategy, not just an add-on. Fighting AI with AI is not just smart – it is essential. Used defensively, AI provides the ‘home field’ advantage: defenders know their environment best.
Encouragingly, interest is growing. Some 91% of UK IT leaders say they wish they had AI tools supporting their security operations. Yet adoption remains slow. Half (50%) of organizations cite budget and resource constraints, while 48% acknowledge a shortfall in the in-house expertise needed to deploy and manage AI-powered security effectively.
The stakes are too high for inaction. Without a clear understanding of what resides across an organization’s digital ecosystem, businesses remain exposed to AI-driven threats and the broader risks posed by unmonitored technologies. The key is to gain full situational awareness: mapping all activity across networks and proactively securing critical assets.
AI may pose a growing risk, but when used correctly, it can also be the strongest defence.
Unlocking the power of AI
In today’s digital environment – where geopolitics, cyberwarfare, and AI innovation are increasingly intertwined – organizations that fail to evolve will find themselves outpaced, outmanoeuvred, and overtaken by AI-driven threats. AI is blurring the line between conventional warfare and digital conflict.
The only way to gain the advantage is to adopt proactive, intelligent, and adaptive security strategies. These must be fuelled by AI, transforming it from a risk into a critical asset. Passively watching headlines and hoping the next attack doesn’t hit closer to home is no longer a viable strategy. Security leaders need AI to defeat AI.
The warnings are clear. The only question is whether organizations will act – or continue to watch from the sidelines.
The author
Nadir Izrael is Co-Founder and CTO at Armis






