
The cybersecurity threat landscape has reached a critical juncture as both India and the UK face unprecedented challenges from AI-driven attacks. According to the latest developments from Cyber UK, the UK is experiencing a 'perfect storm' of cyber risk - acute geopolitical uncertainty combined with fast-developing technological advancements. This global crisis is exemplified by the Anthropic Mythos model, released in April, which is substantially more capable at cyber offence than other models, as confirmed by the UK's AI Security Institute (AISI). The government has responded by writing an open letter to business leaders warning of these enhanced capabilities, with regulators like the FCA and OFCOM also warning of increased scrutiny in light of these technological developments. As reported by CERT-In, AI systems are now capable of autonomously identifying software vulnerabilities, analyzing large volumes of source code, and launching complex, multi-stage attacks with minimal human intervention. India's top cybersecurity agency has now issued a high-severity warning about new AI-powered cyberattacks, highlighting how hackers can now find and exploit security gaps much faster than traditional methods.
The advisory highlights growing risks for micro, small and medium enterprises (MSMEs), which often lack advanced cybersecurity infrastructure. As reported by The Economic Times, CERT-In noted that AI-driven automation significantly lowers the barrier for attackers, while increasing the speed, precision and reach of attacks. This development represents a concerning trend for businesses that may not have the resources to implement sophisticated cybersecurity measures. In response to these challenges, Security minister Dan Jarvis announced that the government will ask every major organisation to sign a new Cyber Resilience Pledge this summer. The Pledge will invite organisations to make a 'public commitment' to their investors, customers and supply chains, to make cyber security a Board responsibility, to sign up to the NCSC's Early Warning service and to require that suppliers are Cyber Essentials certified. Following the advisory, Finance Minister Nirmala Sitharaman chaired a high-level meeting with commercial banks and key stakeholders to assess potential cybersecurity risks linked to AI. The government is now stepping up engagement with AI firm Anthropic and the US administration about Mythos to better understand the issue.
CERT-In has identified a sharp rise in the cyber capability maturity of emerging AI models, with the advisory warning of AI-driven phishing and impersonation, including highly convincing multilingual social engineering. The agency notes that vulnerabilities could now be weaponized within hours of disclosure, drastically shrinking the response window for defenders. According to Cyber UK speakers, attackers progressed over the course of just a few months last year from using AI primarily as a sophisticated search tool to deploying it as a fully-fledged assistant across the attack lifecycle (supporting reconnaissance, penetration testing and creation of targeted phishing campaigns). The warning encompasses risks including automated reconnaissance, credential compromise, service disruption, data theft, financial fraud, impersonation, and cascading failures across interconnected systems. As highlighted by Cyber UK, the attacks are therefore not necessarily more sophisticated, with many detectable with effective monitoring, but more voluminous.
CERT-In has issued specific guidance for individuals facing AI-powered cyber threats, emphasizing the need for enhanced security measures. The agency recommends that individuals keep their passwords strong, enable two-factor authentication whenever possible, and don't click on random messages or links, even if they look legitimate. For organizations, CERT-In suggests stepping up their monitoring game, using zero-trust security models, and turning on multi-factor authentication across critical systems, remote access gateways, and cloud environments. The advisory also recommends that MSMEs should go for automatic updates and managed security services to better protect against these sophisticated AI-driven attacks. This comprehensive approach reflects the evolving nature of cybersecurity threats in the AI era, where traditional security measures may no longer be sufficient.
While cyber threats evolve, industrial security solutions are advancing to meet the challenge. Siemens has announced significant expansions to its Industrial Edge ecosystem, accelerating data and AI integration and releasing enhanced cybersecurity functionalities. According to Horst J. Kayser, CEO Factory Automation at Siemens Digital Industries, the platform combines AI, security and ecosystem innovation, giving customers greater operational flexibility, simplified IT/OT integration and certified security for critical operations. The Industrial AI Suite, based on Industrial Edge, is now generally available, simplifying the entire AI lifecycle and enabling industrial AI via complete infrastructure. The platform supports IEC 62443-4-2-certified security functions for critical infrastructures, including air-gapped operation, which are targeted for release in the second half of 2026. Testing institute UL Solutions has awarded Siemens Industrial Edge and the virtual PLC the 'Smart Systems Verified – Platinum' certification, evaluating six key categories including connectivity, control and automation, digital experience, functional value, resilience, and cybersecurity.