Poland ranked first worldwide for detections of downloaders, which retrieve additional threats, and CloudEye, a tool used to conceal and deliver malware. The country also ranked second for email-borne threats and among the targets of web-based threats.
ESET analysed nearly 900,000 add-ons and instruction sets for AI agents. More than 25,000 were classified as suspicious, while over 3,000 were identified as malicious.
During the first half of the year, Poland ranked among the world’s leading countries for detections of multiple types of cyberthreats recorded by ESET systems. It placed first for downloader detections, involving malicious programs designed to download additional threats onto a device, as well as for detections of CloudEye, a tool used by cybercriminals to conceal and distribute malware.
Poland also ranked second for email threats and among the targets of web-based threats, as well as third for ransomware and attacks targeting Remote Desktop Protocol services.
At the same time, the latest ESET Threat Report H1 2026 shows that cybercriminals are increasingly improving the effectiveness of established attack methods by adapting them to new platforms, cloud services and users’ growing trust in artificial intelligence.
The report covers the period from December 2025 to May 2026. One of its most important conclusions is the growing role of AI, both for users and businesses and for cybercriminals.
ESET analysed nearly 900,000 so-called AI skills: small add-ons or sets of instructions defining which tasks an AI agent can perform, which tools it should use and which data it can access. More than 25,000 were classified as suspicious, while over 3,000 were identified as clearly malicious.
Poland in the crosshairs: among the world’s most heavily targeted countries
According to ESET telemetry data, Poland ranked:
- First for downloader detections, ahead of Turkey and Italy.
- First for CloudEye detections, ahead of Turkey and Spain.
- Second for email threats, behind Japan.
- Second among the targets of web-based threats, behind Japan.
- Third for ransomware detections, behind Turkey and the United States.
- Third among the targets of attacks on RDP services, behind Spain and the United States.
- Fourth for infostealer detections, behind Turkey, Japan and Spain.
Poland’s high position is therefore not limited to one type of incident. It covers a broad range of threats, from attacks beginning in emails and on websites to information theft, ransomware and attempts to exploit remote-access services.
Poland’s first-place ranking for downloader detections is particularly significant. Downloaders are programs designed to retrieve further components of an attack, such as data-stealing tools, ransomware or software enabling attackers to take control of a system.
Detecting a downloader may therefore indicate the beginning of a more extensive infection chain.
In the case of ransomware, this is another six-month period in which Poland has ranked among the three most frequently targeted countries in the world. Malware that encrypts data and demands payment for restoring access has been one of the most serious threats in cyberspace for many years.
Poland’s high position in ransomware detection rankings is not solely the result of external threats. To a significant extent, it also reflects internal weaknesses among Polish companies.
According to the Cybersecurity Profile of Polish Business 2026 report prepared by ESET and DAGMA IT Security, only 17% of employees know what ransomware is. Meanwhile, half of Polish employees who use a computer at work have received no cybersecurity training during the past five years.
“The consequences of failing to invest in cybersecurity can be calculated by estimating the cost of a successful attack. Building a protection strategy should therefore begin with a risk analysis: which attacks are most likely, and how much would the company lose if they occurred?
“A simple calculation combining the probability of a specific threat with the estimated cost of its consequences provides solid arguments during budget discussions. It is far more effective than referring only to regulations or general statistics.
“Once the scale of the risk is understood, an organisation can rationally set its priorities, because it is impossible to secure everything at once. The key is to identify the most valuable assets and begin investments with those,” explains Dawid Zięcina of DAGMA IT Security.
Artificial intelligence is also creating new opportunities for cybercriminals
The add-ons for AI agents analysed by ESET included components using offensive tools such as Mimikatz and Impacket, as well as self-modifying scripts whose behaviour can change after installation.
Researchers also identified seemingly safe add-ons promoted as security scanners. In practice, some of them use only very basic analytical methods, creating a false sense of security among users.
AI is also appearing directly within malicious software. ESET identified PromptSpy, the first known Android threat to actively use generative artificial intelligence while operating.
The malware uses the Gemini model to interpret elements of the user interface and adapt its actions to different devices and environments. Such cases remain rare, but they demonstrate how AI may increase the flexibility of future cyberthreats.
“Instead of relying on completely new methods and tools, attackers are quickly adapting proven techniques to new platforms, technologies and user behaviours. The number of add-ons for AI agents is increasing rapidly, while also expanding the potential attack surface,” adds Kamil Sadkowski.
Fake messages, real attacks: social engineering in a new form
The ClickFix technique also continued to develop during the first half of 2026. Attackers display a fake error message or technical warning and then provide the user with supposedly simple instructions for resolving the problem.
In reality, the victim is manipulated into manually executing a malicious command.
The number of ClickFix detections increased by 108% between the second half of 2025 and the first half of 2026.
New variants use websites containing instructions presented as AI-generated content, browser extensions and cloud-service login processes.
In a variant known as ConsentFix, cybercriminals attempt to steal an authorisation token. In certain scenarios, this may allow them to access an account without entering the password again and without triggering an additional login confirmation.
QR codes are increasingly leading users into traps
Phishing attacks using QR codes, known as quishing, also reached record levels.
During the first half of 2026, approximately 11% of detected phishing emails contained a QR code. ESET systems recorded an average of around 100,000 such detections per month.
Attackers use QR codes to conceal the destination address and move the interaction to a smartphone, where it is more difficult for users to verify the full website address.
The popularity of QR codes in payments, restaurant menus and login systems means that many people scan them automatically without first checking their source.
Ransomware continues to grow, although fewer victims are paying
ESET documented more than 100 EDR killer tools designed to disable, freeze or blind security software before the main ransomware component is launched.
More than 60 of these tools exploit vulnerable drivers to interfere with security mechanisms at the operating-system level.
At the same time, despite the continued increase in ransomware attacks, the proportion of victims choosing to pay a ransom has reached a historic low.
Industry reports analysed by ESET indicate that between 14% and 28% of affected organisations paid the ransom.
Country rankings refer to detections recorded by ESET solutions and do not constitute a comprehensive ranking of all cyberattacks occurring worldwide.
The full ESET Threat Report H1 2026 contains detailed telemetry data, an analysis of emerging attack techniques and descriptions of the most significant threats recorded between December 2025 and May 2026.







