Check Point

73 stats7 reports

All Statistics

Microsoft was the most impersonated brand in Q2 2026, appearing in 23% of all brand phishing attempts.

Check PointQ2 2026 Brand Phishing Report·1mo ago
Brand PhishingMicrosoftPhishing

The top five impersonated brands — Microsoft, LinkedIn, Google, Apple, and Amazon — together accounted for more than 50% of all brand phishing attempts this quarter.

Check PointQ2 2026 Brand Phishing Report·1mo ago
Brand PhishingPhishingMicrosoftLinkedInGoogle

Open AI’s ChatGPT entered the top ten most impersonated brands for the first time.

Check PointQ2 2026 Brand Phishing Report·1mo ago
Brand PhishingPhishingChatGPT

High-risk enterprise AI prompts doubled over the year, increasing from about 1 in every 50 interactions to 1 in every 25 interactions.

Check PointThe AI Security Report 2026·1mo ago
AI SecurityEnterprise RiskAI PromptsAI Use

Highly trained reviewers correctly detected approximately 41% of AI-generated faces.

Check PointThe AI Security Report 2026·1mo ago
AI-Generated MediaIdentity Verification

Between 87% and 93% of organizations experienced at least one high-risk AI interaction each month.

Check PointThe AI Security Report 2026·1mo ago
AI Security

Only 7.8% of vulnerability alerts warrant Critical or High attention after exploitability validation, so more than 90% do not require immediate remediation focus.

Vulnerability ManagementExposure ManagementVulnerability Remediation

Phishing websites account for 10.5% of critical exposures, up sharply from 1.0% the year before.

PhishingExposure Management

76% of all critical exposures come from just two categories: vulnerabilities and internal information disclosure.

Exposure ManagementInformation Disclosure

52% of AI workloads span hybrid environments

Cloud SecurityHybrid CloudAI Workloads

78% of organizations report confirmed or suspected AI-related security incidents over the past year

AI SecuritySecurity IncidentsAI Security Incidents

64% of organizations say their architecture needs redesign to support AI workloads

Cloud ArchitectureAI SecurityAI Workloads

1 in every 28 GenAI prompts posed a high risk of sensitive data leakage in March 2026 and 91% of organizations using GenAI tools regularly were impacted by this risk.

GenAIGenAI PromptsSensitive Data LeakageGenAI Risk

The education sector was the most targeted industry in March, experiencing an average of 4,632 cyber-attacks per organization per week, a 6% decrease year over year.

EducationCyber Attack

In March 2026, 672 ransomware attacks were reported globally. This represents an 8% decrease year over year, yet a 7% increase compared to February

Ransomware

Clop accounted for 13% of published attacks in February.

Cl0pRansomware

Telecommunications was the third most targeted sector, averaging 2,699 weekly attacks per organization, up 6% year over year.

TelecommunicationsCyber Attack

Organizations used an average of 11 different GenAI tools in February.

GenAI

The top malware list for Latin America includes 3 RATs, 2 Botnets (FakeUpdates, Androxgh0st), and 1 Downloader (FakeUpdates).

Latin America

The global weekly average for cyber attacks is 1,955.

Cyber attack

62% of malicious files in Latin America were delivered via email in the last 30 days.

Latin AmericaEmail

The average organization runs ten AI applications per month.

Check PointThe AI Security Report 2026·1mo ago
AI AdoptionAI Applications

Detections of long, malicious prompt-injection payloads increased roughly fivefold between March and May 2026.

Check PointThe AI Security Report 2026·1mo ago
AI SecurityThreat DetectionPrompt Injection

Vulnerabilities account for 78.2% of critical exposures in Utilities.

VulnerabilitiesUtilitiesExposure Management

Vulnerabilities account for 56.4% of critical exposures in Government.

VulnerabilitiesGovernmentExposure Management

Internal information disclosure accounts for 63.6% of critical exposures in Healthcare.

Information DisclosureHealthcareExposure Management

Internal information disclosure accounts for 42.7% of critical exposures in Financial Services.

Information DisclosureFinancial ServicesExposure Management

Healthcare records the slowest median remediation time at 158.8 hours.

HealthcareRemediation Time

42.6% of all critical exposures are vulnerabilities, more than double the 18.7% recorded the year before.

VulnerabilitiesExposure Management

Utilities resolve 30% of critical exposures within one hour.

UtilitiesIncident ResponseRemediationExposure Management

76% of organizations rate datacenter security as critical for AI

Data CenterAI Security

71% of organizations report increased web application firewall (WAF) false positives

WAFWeb SecurityFalse Positives

88% of organizations say AI has increased security complexity

Security ComplexityAI Security

67% of organizations report fragmented security policies

Security PoliciesFragmentation

24% of organizations cannot confirm whether they experienced an AI-related security incident due to lack of visibility

VisibilitySecurity IncidentsAI Security Incident

48% of organizations cite non-human identities (AI agents, APIs) as a top concern

Identity ManagementAI AgentsNon-Human Identity

24% of organizations say they have no AI-specific access controls

Access ControlAI GovernanceAI Access ControlsAI

78% of organizations have either experienced an AI-related security incident or cannot determine whether they have

AI SecuritySecurity IncidentsAI Security Incident

There is a 51-point gap between organizations' intent to secure AI in the cloud and their capability to enforce that security

AI SecuritySecurity ArchitectureCloud Security

26% of organizations report having the architecture to enforce their AI-related cloud security strategy

AI SecuritySecurity ArchitectureCloud Security

16% of organizations enforce AI access controls consistently across the environment

Access ControlAI GovernanceAI Access Controls

86% of leaders rate unified security management across cloud, datacenter, and edge as critical for AI workloads

Unified Security ManagementAI WorkloadsCloudData CenterEdge

35% of organizations say their datacenter security can support current AI needs

Data CenterCloud SecurityAI

77% of organizations have updated their security strategy for cloud in response to AI

AI SecurityCloud Security

24% of organizations can fully inspect AI traffic without impacting performance

Network SecurityTraffic InspectionAI Traffic

54% of organizations have experienced an AI-related security incident

Security IncidentsAI SecurityAI Security Incident

North America was the most affected region by ransomware in March 2026, accounting for 55% of reported incidents, followed by Europe at 24% and APAC at 12%.

RansomwareNorth AmericaEuropeAPAC

The average number of weekly cyber-attacks in March per organization reached 1,995, representing a 4% decrease month over month and a 5% decline compared to March 2025.

Cyber Attack

Business services remained the most targeted sector by ransomware in March 2026, accounting for 35% of ransomware victims, followed by consumer goods & services (14%) and industrial manufacturing (13%).

RansomwareBusiness ServicesConsumer GoodsIndustrial Manufacturing

Hospitality, Travel & Recreation recorded a 30% year-over-year increase in attacks in March 2026.

HospitalityTravelRecretaionCyber Attack