
CANCOM Cyber Security Report 2026: AI exacerbates the threat landscape – digital sovereignty is becoming a strategic success factor
- Digital sovereignty is emerging as a crucial factor for the resilience, security and competitiveness of companies and organisations in Europe.
- New regulations such as NIS2, DORA and the AI Act are not merely compliance requirements; they also offer organisations the opportunity to modernise their security strategy and strengthen their digital resilience in the long term.
Cyberattacks remain the greatest business risk for companies worldwide. At the same time, artificial intelligence (AI), geopolitical tensions and new regulatory requirements are fundamentally changing the security landscape. These developments are analysed in the new CANCOM Cyber Security Report 2026. For the report, CANCOM’s cybersecurity experts analysed current threat trends, regulatory developments and technological innovations, combining these with experience gained from security projects, incident response operations and the running of the Cyber Defence Centre.
The analysis of threat trends and practical experience shows that AI is emerging as a key driver of the current threat landscape. Cybercriminals are already using AI to automate phishing campaigns, forge identities or specifically circumvent security mechanisms. Among other things, the CANCOM Cyber Security Report describes scenarios in which deepfake technologies are used to create fake job applicant profiles in order to infiltrate companies undetected.
At the same time, AI opens up new possibilities for cyber defence. Modern security solutions help organisations detect suspicious activity more quickly, analyse security incidents automatically and contain attacks at an early stage.
“Artificial intelligence is radically shifting the balance of power in cybersecurity: it makes attacks faster, more precise and more scalable,” says Alexander Ernst, Director of the Competence Centre – Network & Security at CANCOM. “But at the same time, it is one of the most powerful tools for defence. The crucial factor is who uses AI more effectively: attackers or defenders.”
Digital sovereignty is gaining in importance
One of the report’s key focuses is on Europe’s digital sovereignty. Given the heavy reliance on non-European technology providers, the ability to operate digital infrastructures in a controlled and resilient manner is becoming increasingly important for businesses and public institutions.
The report makes it clear that digital sovereignty extends far beyond the question of individual technologies. What matters most are transparency, control, resilient infrastructures and the ability to make strategic decisions independently.
Regulation as a driver of innovation
With regulations such as NIS2, DORA, the Cyber Resilience Act and the AI Act, regulatory pressure on businesses continues to mount. However, CANCOM views this not merely as a compliance requirement, but as an opportunity for sustainable modernisation and greater resilience.
The report highlights how companies can use regulatory requirements to professionalise security processes, manage risks systematically and ensure their digital transformation is future-proof.
A holistic approach to greater digital resilience
As a leading digital business provider and AI enabler, CANCOM pursues a holistic approach to cybersecurity. This ranges from security consulting and compliance advice, through managed security services, to incident response, red teaming and the operation of the CANCOM Cyber Defence Centre.
More than 250 security specialists, over 60 analysts at the Cyber Defence Centre and more than two million critical alerts processed annually form the basis for supporting businesses, organisations and the public sector in defending against modern cyber threats.
The full CANCOM Cyber Security Report 2026 is available here .