Exabeam Expands AI Threat Detection as UAE Reports Up to 700,000 Cyberattacks Per Day

Exabeam has expanded its Agent Behaviour Analytics platform to cover AI tools including ChatGPT, Microsoft Copilot and Google Gemini — as the UAE reports between 500,000 and 700,000 cyberattacks daily, with Iran-linked actors leveraging AI for cyber operations.

Omar Al-Hakeem
Senior Cyber Threat Analyst | MENA Region4 min read
A digital illustration representing AI-powered threat detection and the surge in cyberattacks facing the UAE, as Exabeam expands its Agent Behaviour Analytics platform.

A digital illustration representing AI-powered threat detection and the surge in cyberattacks facing the UAE, as Exabeam expands its Agent Behaviour Analytics platform.

Exabeam has announced a significant expansion of its Agent Behaviour Analytics platform, extending detection capabilities to AI tools including OpenAI's ChatGPT and Microsoft Copilot, as organisations struggle with rising risks linked to artificial intelligence.

The company said the update enables security teams to monitor how employees and AI agents interact across enterprise systems, providing visibility into queries, data sharing, usage patterns and access points. The move comes amid growing concern that AI systems are evolving into autonomous digital workers capable of accessing systems and executing business processes.

"AI agents are evolving from simple chatbots into autonomous digital workers," said Steve Wilson, Chief AI and Product Officer at Exabeam. "They authenticate, access systems, and execute real business processes. When compromised, their activity will often look legitimate. Guardrails designed to catch prompt injection or hallucinations do not address that risk. Securing digital workers requires deep visibility into baseline behaviour and the ability to detect subtle deviations before they become material incidents."

The expanded platform also integrates visibility into Google Gemini and feeds behavioural telemetry into Exabeam's threat detection, investigation and response workflows.

Pete Harteveld, CEO at Exabeam, said organisations must better understand how AI operates internally as adoption accelerates.

"AI is rapidly reshaping how organisations operate, compete and grow, creating a new, digital workforce that helps them move faster and at scale," he said. "As this transformation accelerates leaders are compelled to understand how these systems operate inside the enterprise. Our expansion of Agent Behaviour Analytics helps organisations stay protected from emerging risks while adopting AI with confidence and maintaining the oversight and accountability required to proliferate these capabilities across an enterprise."

The update introduces five key capabilities including AI behaviour baselining, prompt and model abuse detection, identity and privilege monitoring, agent lifecycle tracking, and alignment with the OWASP Top 10 for Agentic AI risks.

Industry leaders say such tools are increasingly necessary as AI adoption transforms cybersecurity landscapes.

"As we move deeper into the agentic era, the rapid adoption of AI agents — including a growing ecosystem of enterprise-grade AI tools across our organisation — is transforming the risk landscape," said Nithin Reddy, Global VP of Cybersecurity at Dayforce. "Security teams now operate in a world where both humans and autonomous agents interact with systems and data at a massive scale. Traditional detection models weren't built for this reality. What we need is clear behaviour visibility and a simple way to quantify risk. Exabeam gives us that clarity — helping us focus on the risks that actually matter instead of chasing thousands of benign signals and enabling us to put the right guardrails in place while continuing to accelerate AI innovation across the business."

UAE faces unprecedented surge in AI-powered cyberattacks

The announcement comes as global concerns mount over AI-driven cyber threats, with the United Arab Emirates reporting a sharp rise in attacks linked to artificial intelligence.

Dr Mohammed Al Kuwaiti, Chairman of the UAE Cyber Security Council, revealed that hostile actors, including state-linked entities, are leveraging artificial intelligence tools such as ChatGPT and other platforms to conduct cyber operations. These operations range from reconnaissance and vulnerability scanning to phishing campaigns and the development of malicious software designed to disrupt services.

"Artificial intelligence has transitioned from being a supporting tool to a central component of modern cyber warfare," Dr Al Kuwaiti said. "It enables attackers to execute faster, more convincing, and cost-effective campaigns, including the use of deepfake technology and targeted disinformation."

According to Al Kuwaiti, the UAE currently faces between 500,000 and 700,000 cyberattacks each day, primarily targeting sectors critical to national security and economic stability. Despite the volume, he noted that national cyber defence systems are successfully mitigating most threats before they cause harm.

In response, the UAE has strengthened its cyber defence framework, focusing on continuous monitoring, rapid response and preparedness. Measures include adopting a zero-trust security model, activating the National Cyber Security Operations Centre and deploying advanced threat intelligence systems.

Authorities are also conducting nationwide cyber crisis simulations and sharing real-time alerts to maintain service continuity and minimise the impact of potential breaches.

"Proactive measures remain essential," Al Kuwaiti noted. "By combining advanced technology with coordinated response mechanisms, we are able to safeguard critical infrastructure and essential services even amid a significant increase in cyberattacks."

He added that public awareness remains a critical line of defence, urging individuals to adopt basic cybersecurity practices such as avoiding suspicious links, enabling multi-factor authentication and relying on verified information sources.

"In times of tension, your awareness must be faster than phishing attempts, calmer than rumours, and more precise than fabricated content," Al Kuwaiti stressed.

Omar Al-Hakeem

Senior Cyber Threat Analyst | MENA Region

Omar Al-Hakeem is a cybersecurity researcher specializing in threat intelligence, ransomware trends, and nation-state activity across the Middle East and North Africa. With over 12 years of experience in SOC operations and incident response, he provides deep technical breakdowns of emerging attacks and regional cyber risks. At MENA Cyber Wire, Omar focuses on real-world threat analysis and actionable defense strategies for enterprises and startups.

Intelligence Focus Areas

AI SecurityUAE Cybersecurity