Cybersecurity experts are warning that artificial intelligence (AI) is rapidly changing the nature of cybercrime, making attacks more sophisticated and difficult to detect as Kenya emerges as one of the countries most affected by web-based threats in the Middle East, Turkey and Africa (META) region.
New findings released by cybersecurity company Kaspersky show that its security systems blocked about 4.5 million cyberattacks originating from websites, emails and other online platforms in Kenya during the first half of 2026.
The report places Kenya among the most targeted countries in the region, with 21.2 per cent of internet users exposed to web-based threats.
Turkey recorded the highest percentage at 22.8 per cent, followed by Qatar at 19.3 per cent, Nigeria at 18.4 per cent and South Africa at 17.2 per cent.
The findings were unveiled during Kaspersky’s Cyber Security Weekend for the Middle East, Turkey and Africa region, where experts highlighted how cybercriminals are increasingly using artificial intelligence to launch attacks.
According to the researchers, hackers are now deploying large language models to generate phishing emails, write malicious software and create fake content designed to deceive victims.
“We expect AI to remain one of the key factors shaping the threat landscape in 2026, as we already see how it is reshaping attacker workflows and accelerating their operations,” said Sergey Lozhkin, Head of Kaspersky’s Global Research and Analysis Team in the Asia-Pacific and META regions.
“By lowering the time and cost required to develop and adapt malicious tools, AI allows threat actors to iterate faster and scale their efforts. Defenders should be prepared for quicker shifts in tactics,” he added.
Cybersecurity analysts say AI is transforming the entire lifecycle of cyberattacks.
Beyond generating convincing phishing messages, advanced AI systems are now capable of producing significant portions of malicious code, reducing the technical expertise and time previously required to develop malware.
Kaspersky researchers pointed to recent campaigns in which cybercriminal groups used AI-assisted tools to create malware capable of stealing data, encrypting files and manipulating computer processes.
One of the emerging concerns is the growing use of legitimate cloud-storage and file-sharing services to hide stolen information.
Attackers are increasingly routing sensitive data through trusted online platforms, making suspicious activity more difficult to identify.
Ransomware attacks are also evolving.
Rather than simply encrypting files and demanding payment, some criminal groups are now disrupting entire production systems and business operations to increase pressure on victims.
Another worrying trend is the rise of AI agents that are granted extensive access to company systems.
According to the report, compromised AI tools could be manipulated to download malicious software, steal confidential information or maintain long-term access to corporate networks.
Experts warn that as businesses across Kenya embrace digital transformation and integrate AI into their operations, they must strengthen their cybersecurity defences to keep pace with increasingly sophisticated threats.
“Organisations need to invest in continuous vulnerability management, employee awareness programmes and advanced security systems capable of detecting AI-assisted attacks,” Kaspersky said in its recommendations.
With cybercriminals exploiting the same technologies that businesses are adopting to improve efficiency, cybersecurity experts argue that awareness and preparedness will be critical in protecting Kenya’s rapidly expanding digital economy.










