- What: GCHQ's director warned about AI being weaponized in cyber warfare and increased Russian hybrid activity.
- Impact: Highlights growing concerns about AI in cyber conflict.
Cyberwarfare UK Cyberspying Chief Calls AI ‘an Unstoppable Force’ and Warns About Russia The speech is the latest in a string of warnings from intelligence experts that Russia is stepping up hostile activity in a “gray zone” that falls just below the threshold of war. By Associated Press | May 27, 2026 (1:32 PM ET) Flipboard Reddit Whatsapp Whatsapp Email Artificial intelligence is “an unstoppable force” that is being weaponized in ways that fall just short of traditional warfare, Britain’s cyberspying chief warned Wednesday. Anne Keast-Butler, director of the communications intelligence agency GCHQ , also said Britain and its allies are in “a space between peace and war” as Russia increases its “daily hybrid activity” against the West — even as Russian combat deaths in Ukraine approach 500,000. She said the West risks losing the conflict in cyberspace against Russia and other adversaries unless citizens, companies and governments treat cybersecurity with much greater urgency. “I’ve spent three decades working in national security, and the risk of miscalculation is as high as I’ve ever seen it,” Keast-Butler said in a speech at a World War II code-breaking center near London. She said that “tech companies are releasing AI-driven innovations at a remarkable pace, with untold consequences, as algorithms are weaponized often just below the threshold of traditional warfare. “AI is an unstoppable force with great opportunity,” she added. “But it is also a force with risks.” Advertisement. Scroll to continue reading. Keast-Butler singled out Russia as a threat, accusing Moscow of “relentlessly targeting critical infrastructure, democratic processes, supply chains and public trust” in Britain and Europe, as well as stealing technology and plotting sabotage and assassination attempts. “Russia is scaling up its daily hybrid activity against the U.K. and Europe, stretching from the seabed to cyberspace,” she told an audience of computing experts, diplomats, journalists and senior officials. “One area in sharp focus for us is protecting the data and energy flowing through the critical cables and pipelines in and around British waters,” she added. “We do this by exposing Russia’s intent, motive and underwater capabilities.” At the same time, she said Russian troops are “going backwards on the battlefield,” with new intelligence suggesting “almost half a million Russian soldiers” have been killed since the February 2022 invasion of Ukraine. The speech is the latest in a string of warnings from Western spies and intelligence experts that Russia is stepping up hostile activity in a “gray zone” that falls just below the threshold of war. In recent months, authorities in countries including Sweden, Poland, Denmark and Norway have alleged that hackers linked to Russia targeted their critical infrastructure, including power plants and dams. The head of the U.K.’s National Cyber Security Centre, Richard Horne, warned last month that hostile states including Russia, China and Iran are behind the most serious cyberattacks the country faces. He said such attacks could increase dramatically if Britain becomes involved in an international conflict. Keast-Butler said rapid advances in artificial intelligence mean that “the ground beneath our feet is shifting” and there is a “narrowing window for the U.K. and allies to stay ahead” of countries such as China, a science and technology “superpower.” She argued that there must be an effort “from boardrooms to living rooms” to make cybersecurity “10 times more urgent.” The spy chief said that GCHQ is developing a plan to “hardwire cutting-edge agentic AI into machine-speed cyber defense.” Harnessed responsibly, she said, AI can help spies “enhance algorithms, translate foreign languages, and find needles in haystacks quicker than ever before.” Keast-Butler also stressed the importance of international partnerships as U.S. President Donald Trump’s “America First” foreign policy and disregard for longtime allies strain the relationship between London and Washington. She said the U.K.-U.S. intelligence partnership is “fundamental for the security of both our nations.” GCHQ, short for Government Communications Headquarters, is the U.K.’s electronic and cyberintelligence agency. It works alongside the domestic security service MI5 and the foreign intelligence agency MI6. Keast-Butler, the first woman to head the agency, delivered the GCHQ director’s annual lecture speech at the agency’s World War II headquarters of Bletchley Park, a manor house 45 miles (72 kilometers) northwest of London where hundreds of mathematicians, cryptographers, crossword puzzlers, chess masters and other experts worked to crack Nazi Germany’s supposedly unbreakable secret codes. Their work both shortened the war and hastened the birth of modern computing. Related : UK Government Unveils New Cyber Action Plan Related : Most Serious Cyberattacks Against the UK Now From Russia, Iran and China, Cyber Chief Say Written By Associated Press Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights. More from Associated Press Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries Deal Reached With Hackers to Delete Data Stolen From the Canvas Educational Platform Canvas System Is Online After a Cyberattack Disrupted Thousands of Schools Cyberattack Hits Canvas System Used by Thousands of Schools as Finals Loom Worries About AI’s Risks to Humanity Loom Over the Trial Pitting Musk Against OpenAI’s Leaders US Military Reaches Deals With 7 Tech Companies to Use Their AI on Classified Systems Germany Suspects Russia Is Behind Signal Phishing That Targeted Top Officials US Launches Sweeping Crackdown on Southeast Asia Cyberscams and Sanctions Cambodian Senator Latest News Vulnerability in Popular Conference Software Granted Attackers a 100% Talk Acceptance Rate SecurityWeek to Host AI Risk Summit August 11-12 at the Ritz-Carlton, Half Moon Bay RevEng.AI Raises $15 Million to Hunt for Flaws and Backdoors in Software Binaries Romanian Hacker Sentenced to Prison in US for Selling Access to State Network Lastwall Raises $11.5 Million for Quantum-Resilient Identity Platform The Credential Crisis: How Stolen Credentials Defeat Modern Security ‘SymJack’ Attack Turns AI Coding Agents Into Supply Chain Attack Delivery Systems GlassWorm Botnet Disrupted Trending Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Virtual Event: Threat Detection and Incident Response Summit On-Demand Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization. Register Webinar: Third-Party Risk in Practice June 4, 2026 Organizations are investing heavily in third-party risk management, but breaches, delays, and blind spots continue to persist. Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice. Register People on the Move Joe Chen has become Chief Technology Officer at Trellix. Usercentrics has named Pawan Hegde as COO and Elena Ignatova as CPTO. SecureAuth has named Mark van Oppen as Chief Revenue Officer. More People On The Move Expert Insights Caught Off Guard: Securing AI After It Hits Production As enterprises rush AI projects into production, security teams are increasingly being forced into reactive mode. (Joshua Goldfarb) Cyber Resilience is the New Business Continuity Plan The organizations best prepared to face disruption are those that align security, continuity and risk management around what the business cannot afford to lose. (Steve Durbin) Enhancing Data Center Security Without Sacrificing Performance For AI data centers, where the stakes are the highest and performance constraints are the tightest, security and performance are no longer a zero-sum game. (Nadir Izrael) Is the SOC Obsolete, and We Just Haven’t Admitted It Yet? Many AI-first enterprises have already embraced sovereign architectures for general AI initiatives; cybersecurity—and the SOC—should be next. (Danelle Au) The Mythos Moment: Enterprises Must Fight Agents with Agents Only with the right platform and an agentic, AI-driven defense, will enterprises be able to protect themselves in the agentic era. (Etay Maor) Flipboard Reddit Whatsapp Whatsapp Email