AI Is Driving a 51% Surge in New Vulnerabilities, Forescout Finds

I have been warning about AI-powered attacks for years. Most of the time, those warnings felt premature. Not this week. Forescout Technologies released its 2026H1 Threat Review on July 21, 2026, and the report makes uncomfortable reading for anyone responsible for security.

The headline numbers are big. Published vulnerabilities jumped 51% year-over-year to 37,137. Ransomware attack claims rose 25% to 4,544 incidents, averaging 25 attacks per day. Active ransomware groups hit 103, up 16%. But the underlying trend is what should concentrate the mind.

AI is compressing the attack timeline

Daniel dos Santos, VP of Research at Forescout, put it plainly: “AI is dramatically increasing the speed and scale of cyberattacks.” The report found that rapid advances in AI and frontier models are helping threat actors discover and exploit vulnerabilities faster than security teams can realistically remediate them.

This is not theoretical. Forescout’s Vedere Labs team tracked more than 37,000 newly published vulnerabilities in just the first half of 2026. That is over 200 new CVEs every single day. In a world where AI can scan codebases, generate exploits, and move laterally across networks in minutes, the old quarterly patch cycle is a relic.

The attack surface is also expanding beyond traditional IT. Forescout noted that threat actors are increasingly targeting operational technology, IoT devices, medical equipment, programmable logic controllers, and human-machine interfaces. These systems often receive less security oversight than servers and workstations, and attackers know exactly where the blind spots are.

What this means in practice

The practical implications are clear. Your team is being asked to defend against a flood of vulnerabilities that grows by roughly 10% each month. At the same time, attackers using AI can identify the most critical flaws, chain them together, and launch campaigns in hours instead of weeks.

Here is what should happen immediately:

  • Map your entire attack surface. Include IoT, OT, and IoMT devices. You cannot protect systems you do not know exist, and these are exactly the systems attackers are targeting first.
  • Prioritise exposure management. Knowing a CVE exists is useless if you cannot see which assets are actually exposed. Focus on internet-facing and critical systems first.
  • Segment your networks. Contain east-west movement so a single compromise does not become a full breach. Zero trust is not just a buzzword here; it is a survival strategy.
  • Accelerate patching cycles. The window between disclosure and exploitation is shrinking. Move critical updates from monthly to weekly, or faster where possible.
  • Invest in visibility before AI-powered defence. AI-assisted detection is valuable, but only if you can see the traffic and assets you are trying to protect. Visibility without segmentation is better surveillance of a sinking ship.

Forescout also highlighted that 46% of additions to CISA’s Known Exploited Vulnerabilities catalog were CVEs published before 2026. Old vulnerabilities are still being weaponised, which means unpatched systems from previous years remain live targets. Adding new CVEs on top of an existing backlog creates a compounding risk that many teams simply cannot clear.

This is not a call to panic. Panic does not close ports or apply patches. It is a call to treat AI-driven threat acceleration as a structural shift, not a temporary spike. The organisations that will weather this period best are the ones that combine strong asset visibility with disciplined network segmentation and faster remediation cycles.

The barrier to entry for sophisticated attacks is dropping while the volume of vulnerabilities is rising. Security teams do not need to work harder. They need to work smarter, faster, and with better visibility into what actually lives on their networks.

Related Reading

Subscribe

Related articles

Scientists use AI to design working viruses from scratch

Stanford and Arc Institute researchers used AI to design 16 working viruses not found in nature, marking the first AI-generated complete genomes confirmed in the lab.

The AI Sandbox Myth: Why Your Security Tests Are Hacking Real Companies

Anthropic's Claude breached three real organisations during cybersecurity tests, OpenAI's models exploited a zero-day to hack Hugging Face, and a UK lab found AI agents faking identities to target real people. The containment myth is collapsing. Here is what enterprises must do now.

Machine-Speed Science: Can America 10x Discovery While Cutting the Labs?

The White House wants to 10x scientific discovery with AI while proposing a 54% cut to the NSF. A balanced look at the Genesis Mission, export controls, open weights and the entry-level job squeeze.

Google Rebuilds Its AI Leadership Team as Rivals Gain Ground

Google has announced a significant leadership reshuffle across its AI divisions, with DeepMind CEO Demis Hassabis moving to chairman and Jeff Dean departing to co-found a scientific discovery startup.

Meta’s Muse Spark Breached a Company During Testing. The AI Containment Problem Is Everyone’s Problem Now.

Meta confirmed its Muse Spark 1.1 AI model hacked another company during a cybersecurity test. After OpenAI and Anthropic, this is now a pattern, not an accident.
spot_imgspot_img
Phil Hall
Phil Hall
Philip Hall is a Sydney-based Cyber AI and Automation leader with more than 30 years of technology experience and a career in cyber security dating back to 2008. His work spans cyber architecture, cloud security, threat intelligence, assurance, incident support, AI-enabled defence and the security of autonomous agents.