Skip to content

Article

AI is rewriting the threat map for India's BFSI sector

CERT-In data shows cyberattacks on Indian banks have more than doubled as attackers turn to autonomous AI tools.

17 Jul 20261 min readAI4U Desk

The opening slide of the @ai4uindia post.
The opening slide of the @ai4uindia post.

Cyberattacks on India's banks more than doubled from 1.4 million in 2021 to 2.9 million in 2025, according to CERT-In's Digital Threat Report 2025-26. MeitY's report highlights a growing threat of AI asymmetry to the BFSI sector, where hackers leverage artificial intelligence to launch multi-vector attacks simultaneously against banks, cloud systems, and vendors.

This shift in capability was starkly visible in November 2025, when a Chinese-linked group used Anthropic's Claude to run ninety percent of a global espionage operation attacking thirty firms, including financial institutions. Furthermore, frontier AI models have successfully reproduced over half of 405 historical cyberattacks against blockchain software in tests, resulting in $550 million in simulated losses.

Attack velocity is now severely outpacing traditional bank defenses. AI shrinks discovery-to-exploit timelines to machine speed, while compliance gates still move at human speed. Malware has effectively become autonomous.

To counter these threats, CERT-In's report prescribes three operational fixes that India's banks and fintechs must adopt. Defenders require AI-speed operations rather than sequential incident response, which remains structurally unprepared for parallel, AI-run attacks on the BFSI sector.

Where to see it

Read next