Kaspersky spots new exposure management threat

DQChannels Bureau
DQChannels Bureau
Kaspersky spots new exposure management threat

Exposure Management is becoming a bigger concern for small and medium-sized businesses as cybercriminals increasingly disguise malicious software as popular AI services. Kaspersky security solutions detected more than 33,300 such attacks against SMBs globally between January and April 2026, nearly five times the number recorded during the same period in 2025.

India saw an even sharper rise. More than 600 attacks targeting Indian SMBs involved malware or unwanted software disguised as popular AI services, marking an increase of more than six times compared with the same period a year earlier.

The findings highlight a growing security gap around tools that employees are quickly adopting for everyday business work. As AI services become part of normal workflows, attackers are using that familiarity to make malicious downloads appear trustworthy.

Malware attacks on India SMBs follow AI adoption

The data shows how malware attacks on India SMBs disguised as AI services are adapting to changing user behaviour. In the first four months of 2026, malware posing as ChatGPT accounted for 41% of these attacks in India, followed by DeepSeek at 40% and Claude at 15%.

Kaspersky also detected attacks using OpenClaw as a lure, pointing to how quickly cybercriminals can adapt their tactics around emerging AI tools.

The malicious files were mainly different forms of Trojanware, which can appear harmless to trick users into installing them. Depending on the malware involved, these files can steal, delete, block, modify, or copy data and may also download additional malicious software.

Fake AI tool cyberattacks on small businesses grow

The rise of fake AI tools cyberattacks on small businesses is part of a wider pattern in which attackers use familiar software names to influence user behaviour. Kaspersky also detected almost 415,000 attacks globally between January and April 2026 where malicious or unwanted software was disguised as communication and video conferencing applications, including Telegram, WhatsApp, Zoom, and Microsoft Teams.

While the volume of these attacks changed only marginally from the previous year, the continued use of fake communication apps shows that familiar software remains an effective lure.

Artificial Intelligence software malware expands the attack surface

The growing use of artificial intelligence software malware as a disguise creates a challenge for SMBs that may not have large security teams or dedicated cybersecurity resources. Kaspersky's findings suggest that businesses need to combine technical protection with better employee awareness.

For Indian SMBs, the concern is particularly relevant as the company reported blocking more than 10.6 million internet-borne threats on Indian systems in the first quarter of 2026. The sharp rise in AI-themed attacks suggests that threat actors are closely following the tools businesses are adopting.

Read More: 

RAH Infotech and dbexpert.ai partnership targets database complexity

Freshworks appoints Ryan Manning to lead product strategy and technology

Aziro Achieves AWS Advanced Tier Partner Status to Accelerate Enterprise Cloud & AI

Dell Technologies expands consumer AI PC footprint in India with XPS 13, Dell 14S/16S, and Alienware 15

Latest Stories