AI-driven threat landscape acceleration
19 statements on the record across 6 companies, ordered by how much each has said. Every quote is verbatim from its call.
Across the sector there is strong consensus that AI is accelerating both the pace and sophistication of cyberattacks, with AVPT [m1755], RPD [m1114, m1119], PANW [m1057], CVLT [m751], DT [m1836] and CHKP [m2150, m2154, m2156] all describing an expanding, more dangerous threat surface. CHKP has been most explicit in timing this shift, moving from a January 2025 framing of AI-driven industry change [m2158, m2144, m2157] to an April 2026 warning that AI is collapsing barriers to sophisticated attacks via agentic AI attack factories [m1630, m1631, m1632]. PANW grounds this with a concrete example, citing a full ransomware attack simulated in under 25 minutes using AI at every stage [m87], while CVLT points to Gartner's projection that AI agent abuse will drive 25% of enterprise breaches by 2028 [m1927]. Companies diverge mainly in emphasis: CVLT and DT stress AI as a dual-use tool that also strengthens resilience and observability [m620, m1837], whereas RPD focuses more on how acceleration is stretching security teams and colliding with fragmenting global regulation [m1119].
In January 2025, CEO Nadav Zafrir said Check Point's research center would focus on predicting AI-driven industry shifts and adapting strategy to both AI opportunities and threats. [m2158, m2144] Zafrir framed the AI era as redefining the industry, requiring defense of expanded attack surfaces while also using AI to simplify processes and cut complexity. [m2150, m2154, m2156] He grouped the response into three buckets: unchanged infrastructure essentials, attacker capability changes from AI, and unknown factors still to be anticipated. [m2157] By April 2026, Zafrir sharpened this view, stating AI is collapsing the barrier to sophisticated attacks and industrializing them into what Check Point calls AI attack factories, using agentic AI for continuous automated attack pipelines. [m1630, m1631, m1632]
Show the 9 verbatim statements
#m2158 · 2025-01-30 · Nadav Zafrir · STATED
“Our research center will focus on predicting industry developments and adapting our strategies accordingly, embracing both the opportunities and warnings presented by emerging AI technology.”
#m2144 · 2025-01-30 · Nadav Zafrir · STATED
“We know the industry is advancing toward an AI era, and this will have a significant impact on our work and strategy.”
#m2150 · 2025-01-30 · Nadav Zafrir · STATED
“While everyone is talking about artificial intelligence, I see it as a crucial dimension we’re approaching. We need to defend our added attack surfaces and simultaneously leverage AI to simplify our processes.”
#m2154 · 2025-01-30 · Nadav Zafrir · STATED
“AI will also play an essential role in cutting through the complexity we face.”
#m2156 · 2025-01-30 · Nadav Zafrir · STATED
“When looking at the process of connecting more and more devices to our networks, we are entering an era that will redefine our industry.”
#m2157 · 2025-01-30 · Nadav Zafrir · STATED
“I categorize our approach into three buckets: the essentials that will remain unchanged, such as infrastructure enabling efficiency for customers; significant changes brought by attackers leveraging AI to enhance their capabilities; and the unknown factors we still need to anticipate.”
#m1631 · 2026-04-30 · Nadav Zafrir · STATED
“The first is that the barrier to sophisticated cyber attacks is literally collapsing because AI is democratizing capabilities that were once exclusive to nation-states and a very small set of elite criminal organizations, and this is exposing a far broader set of enterprises to material risk.”
#m1632 · 2026-04-30 · Nadav Zafrir · STATED
“Second, cyber attacks are undergoing structural industrialization. Agentic AI enables attackers to continuously scan global infrastructure, and they're generating a continuous flow of novel attack techniques. Manual operations are giving way to automated attack pipelines. This is what we call the Check Point AI attack factories.”
#m1630 · 2026-04-30 · Nadav Zafrir · STATED
“AI is a watershed moment for the security industry. When you look at the emergence of these frontier AI models, including models in the GPT class, they're driving two structural shifts in cybersecurity.”
Mirchandani stated AI both enhances cyber resilience and expands the attack surface, with CVLT's AI-enabled active insights technology helping customers conduct real-time threat analysis. [m620] Mirchandani later noted ransomware and sophisticated cyberattacks are increasing in frequency, with emerging AI use cases adding to complex cloud environments. [m751] Mirchandani cited Gartner analysts projecting that by 2028, 25% of enterprise breaches will trace back to AI agent abuse from external and malicious internal actors. [m1927]
Show the 3 verbatim statements
#m620 · 2025-04-29 · Sanjay Mirchandani · STATED
“Additionally, while AI enhances cyber resilience, it can also create a bigger attack surface for organizations. Our AI-enabled active insights technology is helping customers conduct real-time threat analysis to assess their cyber resilience.”
#m751 · 2026-01-27 · Sanjay Mirchandani · STATED
“Ransomware and sophisticated cyberattacks are increasing in frequency. Cloud environments are more complex, and there are emerging use cases around AI.”
#m1927 · 2026-04-28 · Sanjay Mirchandani · STATED · by by 2028
“At the Gartner Security and Risk Management Summit in June, analysts reported that by 2028, 25% of enterprise breaches will be traced back to AI agent abuse from both external and malicious internal actors.”
McConnell stated the AI revolution has added another layer of complexity as organizations pursue faster innovation and competitive advantage. [m1836] McConnell said this complexity makes end-to-end observability mandatory, especially for larger organizations, and framed an AI-powered observability platform with sophisticated analytics and automation as vital. [m1837]
Show the 2 verbatim statements
#m1837 · 2025-11-02 · Rick McConnell · STATED
“As a result, the need for comprehensive end-to-end observability has become mandatory, especially for larger organizations. We believe that an AI-powered observability platform with sophisticated analytic and automation capabilities is vital in providing the visibility needed for software to work perfectly.”
#m1836 · 2025-11-02 · Rick McConnell · STATED
“And the AI revolution has added another layer of complexity as organizations look to accelerate innovation, deliver better customer service, drive efficiency, and obtain a competitive advantage.”
Arora warned AI would make cyberattacks faster and more aggressive as the most significant trend over the next 12 to 48 months. [m1057] Arora later cited a concrete example, Unit 42 simulated a full ransomware attack in under 25 minutes using AI at every stage. [m87]
Show the 2 verbatim statements
#m1057 · 2025-02-13 · Nikesh Arora · STATED · by next 12 to 48 months
“The most significant trend in the next 12 to 48 months is AI, which is already making a notable impact on cyberattacks, making them faster and more aggressive.”
#m87 · 2025-08-18 · Nikesh Arora · STATED
“Bad actors are using AI to move faster than ever. Recently, our Unit 42 team was able to simulate an entire ransomware attack in under 25 minutes using AI at every stage of the attack chain.”
Corey Thomas stated the threat environment is accelerating as AI enables attackers to move faster, at greater scale, and with more sophistication than ever before. [m1114] Thomas further stated AI-driven attacks are escalating in pace and sophistication, stretching security teams thinner, while regulatory requirements expand and fragment globally. [m1119]
Show the 2 verbatim statements
#m1114 · 2026-02-10 · Corey Thomas · STATED
“First, the threat environment is accelerating, not simplifying. AI is enabling attackers to move faster, at greater scale, and with more sophistication than ever before.”
#m1119 · 2026-02-10 · Corey Thomas · STATED
“AI-driven attacks are escalating in both pace and sophistication, stretching security teams thinner than ever. At the same time, regulatory requirements continue to expand and fragment globally, from the EU's evolving framework to new compliance mandates across Asia Pacific and the growing patchwork of US state-level requirements.”
CEO TJ Jiang stated that cyberattack frequency and sophistication are escalating, underscoring the need for robust data governance and security. [m1755]
Show the 1 verbatim statement
#m1755 · 2024-08-08 · TJ Jiang · STATED
“Additionally, the frequency and sophistication of cyberattacks is escalating, further underscoring the need for robust data governance and security.”
OPEN is an unresolved commitment on the clock; STATED is on the record without a checkable bar and is never counted or scored. Method: methodology.