Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Management & Strategy

Cyber Fraud Overtakes Ransomware as Top CEO Concern: WEF 

Ransomware remains the biggest concern for CISOs in 2026, according to WEF’s Global Cybersecurity Outlook 2026 report.

WEF Report

Cyber-enabled fraud has overtaken ransomware as the primary concern for CEOs, marking a major shift in how business leaders perceive digital risk, according to the Global Cybersecurity Outlook 2026 report published by the World Economic Forum (WEF) on Monday.

Ransomware has been a top concern for executives for many years. The data collected by the WEF for its previous report showed that the top cyber risk named by CEOs was ransomware attacks, followed by cyber-enabled fraud and phishing, and supply chain disruptions.

For the 2026 report, written in collaboration with Accenture, ransomware did not make the top three list. Cyber fraud has become the top concern, followed by AI vulnerabilities, and the exploitation of software flaws.

A survey conducted for the WEF analysis found that 73% of CEOs were personally affected, or they knew a business leader affected, by cyber-enabled fraud in 2025.

In addition, 77% of respondents believe cyber fraud has increased over the past year. An increase has also been reported for AI vulnerabilities (87%), supply chain disruption (65%), and vulnerability exploitation (58%).

However, more than half of the respondents have also reported an increase in ransomware attacks. 

Advertisement. Scroll to continue reading.

In fact, while the concerns of CEOs have now shifted, ransomware has remained the top fear for CISOs, followed by supply chain disruption.

“This suggests CEOs are prioritizing financial loss prevention and preparing for new threats, while CISOs remain focused on operational resilience,” the WEF said in its report.

The WEF’s analysis also found that while AI remains a top concern, the nature of the threat has changed.

In 2025, the primary fear was adversarial AI (ie, hackers using AI to enhance their attacks), cited by 47% of respondents. In 2026, the top concern has shifted to unintended data exposure (34%) caused by employees using generative AI tools internally, while adversarial capabilities have dropped to the second position (29%). 

Concerns regarding the use of AI in organizations are also reflected in the fact that 64% of organizations are now actively assessing the security of AI tools before deployment, up from 37% a year ago.

Organizations are also increasingly implementing AI-enabled tools to fulfill their cybersecurity objectives, particularly in areas such as detection of phishing and other email threats, intrusion detection and response, SOC automation, and insider threat monitoring.

The complete WEF Global Cybersecurity Outlook 2026 report is available in PDF format.

Related: WEF Report Reveals Growing Cyber Resilience Divide Between Public and Private Sectors

Related: Cost of Data Breach in US Rises to $10.22 Million, Says Latest IBM Report

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

Organizations are investing heavily in third-party risk management, but breaches, delays, and blind spots continue to persist. Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice.

Register

People on the Move

Anurag Jain has been appointed Senior Vice President of Engineering at CodeHunter

CTERA has appointed Tal Sarfaty as Senior Vice President of Cybersecurity.

Quantum Secure Encryption has named Michael Massing as Chief Technology Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.