On August 27, the fraudsters took Mr. SP Oswal, chairman of the Vardhman Group, into what they termed “digital custody,” subjecting him to constant monitoring through a Skype account they set up for him. According to Mr. Oswal, the fraudsters staged an elaborate fake Supreme Court hearing via Skype. During the hearing, a person impersonating Chief Justice of India D Y Chandrachud allegedly passed an order directing him to transfer Rs. 7 crore to a Secret Supervision Account (SSA). Following Mr. Oswal’s report, Ludhiana police launched an investigation, and recovered total of Rs 5.25 crore from the bank accounts used in the fraud. In another recent episode, IT consultant Sam Mitrovic shared his near-miss encounter scam. His ordeal began when he received a Gmail account recovery request, a common phishing technique used to trick users into entering their credentials on fake login pages. Although Mitrovic ignored the initial prompt, the attack resurfaced a week later with more aggressive tactics.
All these ordeals or scams prompt us to stop attending calls from unkown numbers and delete our social media presence. Really! Is this the solution, definitely Not! We should try to stay alert, but is this enough- not so much. Thus, we finally come to a conclusion that we have to use technology to keep such threats at bay. This is when we talk of individuals but what is happening at business (corporate) level. There the plethora of information or data is at major risk. VARINDIA attempts to understand the role of the buzzing word Artificial Intelligence (AI) in combating the cyber threats, in terms of both potentials and challenges, if any. AI has revolutionized various fields, but its potential for both offensive and defensive cyber operations has raised significant concerns.
AI as a Cybersecurity Shield:
India, as one of the fastest-growing digital economies, faces a range of cyber threats that have grown more complex and sophisticated with the expansion of internet connectivity and digital infrastructure. These threats affect not just individuals, but also businesses, government institutions, and critical infrastructure. Some of the key cyber threats in India include, Ransomware, Phishing and Social Engineering, Data Breaches, Advanced Persistent Threats (APTs), Attacks on Critical Infrastructure, Internet of Things (IoT) Vulnerabilities, Mobile and Banking Malware, Cryptojacking, Cloud Security Threats and Cyber Espionage.
In today's digital landscape, AI-driven cybersecurity is no longer a luxury but a necessity for businesses of all sizes. As cyber threats become increasingly sophisticated and frequent, traditional security measures are falling short. AI offers a powerful solution by providing advanced capabilities such as threat detection, anomaly detection, and automated response.
AI-driven cybersecurity vs traditional methods
With attacker breakout time now measured in minutes and seconds, and adversary tactics growing more sophisticated, traditional security methods often fall short. Legacy, rules-based systems struggle to identify unknown threats, such as zero-day vulnerabilities. Also, traditional cybersecurity systems often fall short, lacking the speed and sophistication required to counter modern digital threats. These systems rely on pre-existing patterns and are ineffective against zero-day attacks, allowing threat actors to bypass defenses undetected.
Jaydeep Singh, General Manager, India Region, Kaspersky feels that Human error is a significant part of cybersecurity weaknesses. AI-driven security tools not only are able to increase the rate of system issue detection, automate system updates and backups, they help minimise delays. This helps security teams to better mitigate and manage issues as network and security systems are replaced, modified, and updated.
Cyberattacks can infiltrate systems in nanoseconds by exploiting any vulnerability, making swift incident response and recovery planning essential to mitigate further damage. AI-driven behavioural analysis enables companies to predict and counter evolving attack patterns more effectively.
“AI-driven cybersecurity brings a new level of speed and precision that traditional methods often struggle to match. AI can rapidly process and analyse large volumes of data to detect threats in real-time,” added Ravindra Baviskar, Director - Sales Engineering, Sophos India.
AI can help you recognise patterns and anomalies that would otherwise be missed in manual checks, reducing the time it takes to respond to attacks and lowering the chance of false alarms. Traditional approaches, which rely on predefined rules, can be slower to react and less flexible. This is why by using AI, businesses can stay ahead of increasingly sophisticated threats with automated and highly accurate threat detection.
In contrast, AI-enabled cybersecurity, powered by machine learning algorithms and extensive data analysis, offers real-time detection and response with greater accuracy. AI automates critical security processes such as patch management, vulnerability updates, threat pattern recognition, and incident response, ensuring constant adaptation to the evolving threat landscape. Its predictive capabilities enable proactive threat hunting, risk assessment, and remediation planning, providing 24/7 vigilance. This allows security teams to focus on post-attack response and resource allocation. Additionally, AI-driven systems consolidate data from multiple sources, empowering security personnel with informed decision-making and a more comprehensive view of potential threats.
“Trend Micro’s unified cybersecurity platform- Trend Vision One- powered by AI enhances threat detection, prevention and response capabilities. It supports hybrid environments, simplifies and converges security operations, manages the full cyber risk lifecycle and enables real-time risk assessment and prioritization,” shared Sharda Tickoo, Country Manager for India & SAARC, Trend Micro.
Integration of AI-powered cybersecurity solutions
Businesses can effectively integrate AI-powered cyber security solutions into their existing IT infrastructure by adopting scalable, cloud-based platforms that offer AI-driven services. Solutions like Check Point’s Infinity platform is built with flexibility in mind, allowing businesses to integrate AI without overhauling their current infrastructure. “AI-based security tools within the Infinity portfolio, work seamlessly across various environments—whether on-premises, in the cloud, or hybrid environments—enabling businesses to harness AI’s power while maintaining operational continuity,” said Manish Alshi, Senior Director, Channels & Alliances, India & SAARC, Check Point Software Technologies.
AI enhances existing security measures by automating routine tasks such as vulnerability detection, patch management, and threat response, allows businesses to improve their cyber security posture without the need for significant manual intervention, freeing up valuable resources for more strategic initiatives. Check Point’s AI-based Quantum IoT Protect automatically identifies and segments IoT devices in real-time, enforcing zero-trust policies without disrupting the broader IT ecosystem.
Emphasising that businesses can effectively integrate AI-powered cybersecurity solutions into their existing IT infrastructure only with the right approach. Vishal Salvi, CEO, Quick Heal Technologies Ltd. said, “GoDeep.AI, for instance, features a highly scalable and modular architecture that facilitates seamless integration. Our technology allows customers to access AI/ML capabilities just like any standard security feature, making the adoption process straightforward. By enabling data ingestion into our platform, businesses can significantly improve their Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) without disrupting their current systems. This ensures a smooth transition to enhanced cybersecurity measures while maintaining operational continuity.”
However, Satnam Narang, Sr. Staff Research Engineer, Tenable said that integrating AI-powered cybersecurity solutions into existing IT infrastructure needs to be done with careful planning and execution. Organisations must evaluate their existing IT infrastructure to understand data flows, storage locations, and security gaps. This helps identify where AI-powered solutions can do the best job. Define specific goals the AI is expected to solve, such as data security, enhancing visibility in the cloud, or minimising vulnerabilities that pose the greatest threat.
To ensure that AI-powered cybersecurity solutions are compatible with existing security frameworks and standards, organizations should take a strategic approach. Cybersecurity players recommend establishing a baseline assessment both with and without AI/ML deployment. This allows for accurate measurement of the impact and effectiveness of the AI integration.
Vishal Salvi from QuickHeal shared, “However, it’s important to recognize that there are currently no standardized AI/ML benchmarks in cybersecurity. Therefore, organizations should prioritize solutions from trusted providers with a proven track record. At Seqrite, we focus on creating solutions that align with established security best practices while harnessing the power of AI. Our goal is to ensure that our AI-driven tools enhance existing security frameworks, enabling a seamless integration experience for our clients.”
Emerging trends in AI-based cybersecurity
In the next 2-3 years, Generative AI (GenAI) is expected to emerge as a significant focus for cybersecurity and other industries. Its use as a virtual assistant to enhance the functionality of cybersecurity tools, streamline incident analysis, and provide context for threat reports tailored to different user profiles is also expected.
The growing availability of data, coupled with the adoption of Cyber Security Mesh Architecture, will enable the development of AI/ML-driven cross-functional applications. However, it’s crucial to acknowledge the escalating cyber risks associated with AI/ML. Reports indicate a substantial rise in phishing attacks linked to GenAI, alongside concerning trends in fraud, such as digital impersonation and deepfake technologies.
QuickHeal’s Vishal Salvi, shared that on the regulatory front, the European Union has implemented stricter AI controls, while the Indian Government is also making rapid advancements to promote safe and secure AI adoption. “At Seqrite, we are actively monitoring these trends and adapting our solutions to effectively address the opportunities and challenges they present.”
The industry forsees the integration of AI-driven Security Operations Center (SOC) co-pilots. AI-powered tools will help SOC teams manage the overwhelming amount of data generated by firewalls, system logs, and threat intelligence by automating critical threat-hunting tasks, prioritize alerts, and offering actionable insights, allowing human analysts to focus on more complex problems.
“The integration of AI into the Internet of Things (IoT) security will also see critical focus. As IoT devices proliferate, AI will be essential in securing these networks in real time by identifying abnormal behavior patterns and isolating compromised devices before they can cause harm,” added Manish Alshi from CheckPoint.
Sophos sees Deep learning will improve how we identify new and complex threats and help develop predictive models too. Another trend will be AI’s role in strengthening zero-trust architectures, helping businesses manage access more securely.
Roadblocks in adopting AI-driven cybersecurity solutions:
AI integration presents significant challenges for smaller businesses, particularly due to financial, technical, and operational constraints. The cost of AI-driven cybersecurity solutions can vary and sometimes require substantial capital investment in implementation, training, maintenance, and potential recovery efforts. Additionally, the specialized hardware needed to support AI operations, as well as the acquisition of AI platforms, imposes further costs.
Small businesses frequently lack the robust IT infrastructure necessary for sustaining these systems, making it difficult to expand or scale AI solutions. Integration complexities, particularly with legacy security tools, further slow adoption, and smaller businesses may not benefit from the seamless interface integration needed to mitigate complex and evolving cyber threats. The dynamic nature of cybersecurity also requires continuous updates and retraining of AI models to adapt to new threats, an investment that many small businesses find difficult to sustain.
This actually means that one of the main challenges SMBs face in adopting AI is the cost of implementation. AI solutions require investment in infrastructure, cloud services, and skilled personnel. Smaller businesses often find it difficult to justify these costs, especially when returns on investment are not immediate.
AI also requires large volumes of high-quality data to work effectively, difficult for businesses with limited resources. Without enough data, AI models may struggle to identify threats, leading to security gaps. Talent shortages in AI and cyber security further complicate adoption, as SMBs may struggle to attract the necessary expertise.
According to CheckPoint Integrating AI into existing systems is another challenge, particularly for businesses with outdated or complex infrastructure for small businesses with legacy systems, as they require significant upgrades to hardware, software, and network infrastructure. Navigating the rapidly evolving regulatory landscape around AI in cyber security can be resource-intensive, as AI systems must comply with local data protection laws and industry-specific regulations.
However small businesses are equally vulnerable to cyberattacks and can adopt AI-driven solutions tailored to their needs. Sharda Tickoo opined, “Implementing robust Multi-Factor Authentication (MFA), investing in smaller, targeted AI cybersecurity tools that align with business objectives, and conducting employee training sessions can all help mitigate risks without overwhelming resources. They can further adopt affordable and cost effective cloud security solutions that can be customized without heavy upfront costs, providing agility and efficiency in their operations.”
Privacy n Data management in the world of AI:
AI systems are increasingly used to control critical infrastructure, making them attractive targets for cyberattacks. Compromising these systems can lead to significant disruptions and potential harm. AI models and algorithms represent valuable intellectual property. Protecting them from theft or unauthorized access is a major challenge.
A key concern is the rise of malware-free attacks, which grew by 75% last year. Adversaries are using compromised credentials, harvested via AI-enhanced social engineering, to move laterally through systems undetected. As AI continues to evolve, identity-based and cross-domain attacks will increase, requiring businesses to stay ahead of these emerging threats.
Fabio Fratucello, International CTO, CrowdStrike informed, “It’s not just defenders looking to AI to gain a competitive advantage. Attackers are increasingly using AI to accelerate and enhance the sophistication of their campaigns. For instance, AI-powered phishing and social engineering attacks are becoming more prevalent. At CrowdStrike, we’ve observed threat actors using generative AI to create highly personalised emails, SMS messages, deep fakes, and social media outreach, which bypass traditional defences.”
Next, AI’s power in cybersecurity comes with challenges, especially regarding privacy and data management. AI systems often need access to vast amounts of data to be effective, which can raise concerns about how that data is handled. Ensuring data privacy and compliance with regulations like GDPR is essential. Data privacy becomes even more critical when personal information is involved, as seen in AI-driven user behavior analysis. Organizations must ensure that data used by AI systems complies with global privacy regulations such as the General Data Protection Regulation (GDPR) and India’s Digital Personal Data Protection Act, 2023 (the Act) enacted in 2023. Failing to implement strong data governance frameworks can lead to inadvertent privacy breaches or unauthorized data use.
Another challenge is the lack of transparency in how some AI systems make decisions, which can make it harder to fully trust the outcomes. To address these concerns, businesses need to focus on strong data governance and ethical practices alongside AI adoption.
Additionally, the interpretability and explainability of AI/ML models are significant challenges; understanding the rationale behind a model's decisions is essential for trust and accountability. At Seqrite, Quick Heal takes these challenges seriously. As the only cybersecurity-focused company from India to join the US Artificial Intelligence Safety Institute Consortium, they are committed to providing thought leadership on AI/ML and addressing these complex issues. Our focus is on developing solutions that are not only robust but also transparent and mindful of privacy concerns.
The cloud’s unique challenges and opportunities for data and AI make it crucial for organisations to address the full spectrum of security responsibilities that accompany collecting, storing and using data. These responsibilities include automatically and continuously scanning data assets, discovering and monitoring sensitive data and alerting on any potential risk. Tenable’s Satnam, shared, “To address these challenges, new solutions such as data security posture management (DSPM) and AI security posture management (AI-SPM) are becoming integral to many organisations.”
Role of Channel:
In today’s time no business can serve the market without the partners. Positioning of AI also cannot do away with the role of channel. Channel Partners play a crucial role in the integration of AI solutions into existing IT environments. For example, Check Point’s AI-powered Harmony Email & Collaboration and Check Point Quantum solutions are built with flexibility in mind, allowing seamless integration across various environments. Channel partners help customers understand how AI can complement their existing security frameworks, offering guidance on how to align these solutions with industry regulations.
Beyond selling solutions, channel partners play an essential role in educating customers about the benefits of AI, from reducing response times to improving accuracy in detecting threats. Their expertise helps businesses implement AI-driven tools effectively and ensures ongoing support to adapt to new challenges, making them an integral part of cybersecurity awareness.
For Kaspersky, channel partners play an important role in creating awareness about new solutions and dispel misinformation regarding AI-driven threats and AI-enabled cybersecurity. They can help in growing the business in the SMB and consumer segments. They train their channel partners regularly and provide them 24/7 support so that they can in turn provide the right solutions and continuous support to our end customers.
For Check Point channel partners are key to providing post-deployment support, helping businesses optimize their AI tools and ensure they are running efficiently including offering managed security services, particularly beneficial for smaller businesses that lack the in-house expertise to manage AI-powered systems. Check Point has introduced initiatives like the Professional Services Certification Program, which enables partners to build long-term relationships with customers by offering highly specialized AI-based cyber security services.
Vishal Salvi from Quick Heal shared, “Our GoDeep.AI platform utilizes AI/ML for both detection and protection, catering to both consumer and enterprise needs. We prioritize collaboration with leading Cloud Service Providers (CSPs) that have invested significantly in AI technologies, alongside partnerships with agile startups that foster innovation.”
Quick Heal’s channel strategy focuses on educating partners and customers about the advantages of integrating AI into cybersecurity and the latest products we offer. By ensuring they understand how our AI-driven solutions can enhance their customers’ security posture amid an increasingly complex threat landscape, we empower them to help their clients make informed decisions and fully leverage our technology.
This collaborative approach not only strengthens the effectiveness of our AI-based cybersecurity offerings in the market but also positions the channel as a catalyst for bringing unique use cases and customer challenges to us, enabling providers like us to tailor AI/ML based solutions that meet specific needs.
Cybersecurity Month:
Realising the significance of the cybersecurity, October is observed as a ‘Cybersecurity Awareness Month’ across the globe. It plays a vital role in promoting the importance of cybersecurity practices and educating individuals and organizations on how to protect their data, privacy, and systems in an increasingly digital world. Launched in 2004 by the National Cyber Security Alliance (NCSA) and the U.S. Department of Homeland Security (DHS), this month-long campaign has grown in significance over the years as cyber threats have evolved in complexity and frequency.
As we are moving ahead with the PM Modi’s vision of Digital Bharat, the Indian government has actively embraced Cybersecurity Awareness Month, aligning its initiatives with global efforts to raise awareness and promote cyber safety. Over the years, the government has rolled out several activities and campaigns to educate the public, strengthen cybersecurity frameworks, and address rising cyber threats in the country. The Cyber Swachhta Kendra (Botnet Cleaning and Malware Analysis Centre) is a government initiative that was launched to promote awareness and clean infected systems. Such initiatives are often highlighted during Cybersecurity Awareness Month.
Corporates mark October as a crucial time to revisit best practices for staying safe online. From leveraging biometric authentication to practicing good password hygiene and being cautious of phishing attempts, these practical recommendations ensure that consumers are well-equipped to protect themselves from common cyber threats.
Sharing their initiatives, Mr. Zakir Hussain Rangwala, CEO of BD Software Distribution Pvt Ltd, commented, “As cyberattacks targeting Indian enterprises continue to rise, it has become imperative for us to take proactive measures. At BD Software, we are committed to addressing these challenges not only by delivering advanced cybersecurity solutions but also by fostering awareness across the industry. Our extensive training sessions and webinars have empowered our partners and employees, equipping them with the knowledge and tools necessary to combat these threats effectively. By strengthening our network and enhancing cybersecurity education, we aim to safeguard SMBs in India, ensuring they are better prepared to face the evolving digital landscape.”
The Cyber Surakshit Bharat Initiative was launched to improve cybersecurity awareness among government officials and public sector employees. Not only during Cybersecurity Awareness Month, but the Indian government promotes cyber literacy as an essential part of education. MeitY, in collaboration with the Ministry of Education, organizes awareness programs in schools and colleges to instill cyber-safe practices among young students. The programs often include workshops on cyber hygiene and advice on avoiding cyberbullying, hacking, and phishing attacks.
Last but not the least…
Artificial Intelligence has become a crucial element in shaping the future of cybersecurity. it is revolutionizing the cybersecurity landscape, proving to be both a potent tool and a formidable threat in the realm of cyber warfare. As AI-driven technologies continue to evolve, their dual capabilities are reshaping the dynamics of offense and defense in the digital battlefield.
On one hand, AI-driven solutions help detect, analyze, and mitigate threats faster than ever before, on the other hand, Machine learning algorithms can identify patterns and anomalies that could indicate a cyberattack, thus enhancing proactive defense mechanisms.
On the flip side, AI itself can be vulnerable. AI-powered systems can become the target of AI-assisted attacks. As threat actors increasingly use AI to bypass security protocols or exploit weaknesses, organizations face new challenges. These AI-assisted cyberattacks can amplify the risk, with techniques like adversarial attacks designed to confuse AI models or manipulate their outputs.
A key concern is that AI assets—such as machine learning models—could be manipulated by these threats, increasing exposure to risk. Malicious actors could inject false data, interfere with AI decision-making, or exploit vulnerabilities in AI algorithms to gain unauthorized access or cause operational disruptions.
The use of AI in cyber warfare presents a complex landscape with both opportunities and risks. As AI technology continues to advance, it is essential for organizations and governments to develop effective strategies to mitigate threats and harness the benefits of AI for defensive purposes. The dual use of AI in both cybersecurity defense and as a tool for cyberattacks highlights the need for organizations to continuously evolve their AI security measures and protect their systems from such advanced, AI-driven threats.



