AI-Driven Cybersecurity Risks Surge in German SMEs Amid Accelerated Threats and New Regulations

German SMEs face rising AI-driven cybersecurity risks from unauthorized AI use and accelerated attacks, prompting calls for stronger defenses and adherence to NIS2 regulations.

    Key details

  • • 64% of SME employees use unauthorized AI tools, exposing companies to hidden risks.
  • • AI has reduced vulnerability exploitation time from 771 days (2018) to hours (2024).
  • • NIS2 requires systematic risk and vulnerability management to address AI-driven threats.
  • • Recommended measures include password management, multi-factor authentication, VPN use, AI usage policies, and continuous security training.

A recent focus on cybersecurity in German businesses reveals growing concerns over 'shadow AI' and the accelerating pace of cyberattacks driven by artificial intelligence. According to a 2026 survey by WatchGuard Technologies, 64% of employees in small and medium-sized enterprises (SMEs) admitted to using unauthorized AI tools at work, exposing companies to unseen vulnerabilities. Compounding risks include poor cybersecurity practices such as reuse of passwords by 76% of employees, 70% using public Wi-Fi for work, and half accessing company resources without VPN protection. Less than 30% of respondents believe their companies have complete knowledge of the software in use internally, highlighting significant gaps in oversight.

Parallel to these challenges, the speed at which AI enables attackers to exploit vulnerabilities has dramatically increased. The time between vulnerability disclosure and attack has shrunk from an average of 771 days in 2018 to just a few hours by 2024. This rapid acceleration demands faster, more automated security response processes from companies. The European NIS2 directive addresses this urgent threat environment by mandating systematic risk and vulnerability management to keep pace with AI-driven cyberattacks.

WatchGuard's Marc Laliberte emphasizes that companies often invest in security technology but lack insight into actual employee practices, creating critical vulnerabilities. To combat these challenges, SMEs and their Managed Service Providers are advised to implement six key measures: enforce password managers and multifactor authentication, detect unauthorized AI tool usage, establish clear AI policies, adopt VPN and Zero Trust models for extended protection, and provide continuous security training tracking human risk alongside technical risks.

Furthermore, companies should focus on five strategic actions as prescribed by the NIS2 directive: accelerating vulnerability management, automating security processes, leveraging AI defensively, strengthening governance and accountability, and building security competence. Together, these steps aim to fortify businesses against increasingly sophisticated and rapid AI-accelerated cyber threats.

These developments underscore the need for German SMEs to urgently adapt their cybersecurity strategies in response to AI’s dual role as both a facilitator of new threats and a tool for defense. The convergence of shadow AI usage internally and externally accelerated attacks makes enhancing organizational visibility, employee awareness, and regulatory compliance more critical than ever.

This article was translated and synthesized from German sources, providing English-speaking readers with local perspectives.

Source comparison

The key details of this story are consistent across the source articles

The top news stories in Germany

Delivered straight to your inbox each morning.