AI-enabled cyber attacks biggest near-term challenge for banks, says RBI
The RBI has identified AI-enabled cyber attacks as the biggest near-term cyber threat facing India’s banking system. While banks have strengthened cyber risk management practices, the central bank said employee awareness, forensic preparedness and incident response capabilities require further improvement
Published Date – 1 July 2026, 12:24 AM
Mumbai: Artificial intelligence-enabled cyber attacks were classified as the “most important” near-term cyber threat for the Indian banking system by the RBI on Tuesday.
The RBI said it undertook a survey on the system’s preparedness, which revealed that financial institutions have established robust practices in cyber risk management, particularly vulnerability assessment and penetration testing of critical information systems.
“AI-enabled cyber attacks emerged as the most important near-term challenge,” it said in comments that come amid heightened discussion around the capabilities of systems like Mythos.
The RBI said processes relating to regulatory reporting and board-level reporting of significant cyber incidents have also matured.
However, cybersecurity awareness and training for employees remain areas that require further strengthening.
Similarly, forensic preparedness also needs improvement to strengthen incident response capabilities, preserve digital evidence and facilitate regulatory and law enforcement investigations in the event of sophisticated cyber attacks.
In its bi-annual Financial Stability Report, the central bank also classified the AI-led stock market boom in some countries as a potential source of “financial fragility”.
Recent outperformance of some emerging markets has been largely been driven by AI-linked companies rather than broad-based strength, the RBI said.
“Both remain sources of financial fragility as sell-offs in these firms could cause broader market declines in the US and cause spillovers to other markets through wealth effects,” the RBI report said.
Comments are closed.