The 2025–2026 cybersecurity landscape is being fundamentally reshaped by the integration of artificial intelligence (AI) into security strategies and the emergence of new threat vectors. According to the PwC 2026 Global Digital Trust Insights Survey, a significant proportion of organizations are prioritizing AI in their cybersecurity budgets, with 36% of business and technology executives ranking AI among their top three investment areas. This focus on AI surpasses traditional priorities such as cloud security, network security, zero trust, data protection, and threat management. Security leaders are particularly interested in AI's threat hunting capabilities, with 48% identifying this as their primary use case, while other applications include vulnerability scanning, event detection, identity management, and behavioral analytics. Despite this enthusiasm, only 6% of organizations feel fully capable of defending against cyberattacks, highlighting a gap between ambition and readiness. Budget constraints and a lack of AI expertise are cited as major barriers to broader adoption, even as 78% of organizations expect their cybersecurity budgets to grow in the coming year. Quantum computing is also emerging as a concern, with most organizations feeling unprepared for its potential impact on security.
The 2025 Cybersecurity Pulse Report, synthesized from executive interviews, technical research, and practitioner insights, underscores a strategic shift from incremental defense improvements to comprehensive redesigns in response to agentic AI, systemic risk, and multivector adversaries. The report identifies five core themes defining the current security agenda: the centrality of AI (including agentic models and offensive AI), the expansion of threats from hardware to cloud (such as firmware persistence and IAM sprawl), the proliferation of multivector threats (including deepfakes, ghost calls, and SOC fatigue), evolving governance and policy challenges (such as AI liability and systemic risk), and innovation in defense (with gaming-inspired architectures and hardware resilience). These themes reflect a growing recognition that traditional security models are insufficient in the face of rapidly evolving threats and technological advancements.
Organizations are encouraged to benchmark their security roadmaps against these global priorities, understanding how agentic AI and systemic cyber risk are reshaping strategies. The reports collectively highlight the need for new approaches to resilience, innovation, and competitive advantage in cybersecurity. The integration of AI is not only changing how threats are detected and managed but also driving debates around governance, liability, and regulatory compliance. As adversaries leverage AI for more sophisticated attacks, defenders are compelled to adopt equally advanced technologies and rethink their operational models. The convergence of AI, cloud, and hardware security challenges is creating a complex environment that demands continuous adaptation and investment.
Despite increased budgets, the persistent lack of expertise and preparedness for emerging technologies like quantum computing remains a significant concern. The reports suggest that organizations must invest not only in technology but also in talent development and strategic planning to address these gaps. The evolving threat landscape, characterized by multivector attacks and human exploitation tactics, is placing additional stress on security teams and necessitating more robust, AI-driven solutions. Ultimately, the shift toward AI-based security and strategic intelligence is redefining the priorities and practices of cybersecurity leaders worldwide, setting the stage for a new era of digital trust and resilience.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
1 event from the most recent confirmed update back to the earliest known activity.
Initial story creation
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.