UAE Cybersecurity Leader Warns That a Single Malicious Virus Could Potentially Cause Major Disruptions to Critical Infrastructure, Affecting Airport Operations, Electricity Supplies and Essential Water Services, Highlighting the Growing Need for Stronger Digital Protection and Preparedness.
UAE Cybersecurity Chief Warns One Computer Virus Could Disrupt Airports, Electricity or Water Systems.

Dr Mohamed Al Kuwaiti called on the public to exercise greater caution while using digital platforms, warning that rapid advances in artificial intelligence are making it harder to tell genuine information apart from altered, misleading or entirely fabricated online content.
UAE Cybersecurity Chief Warns of Growing Threat from Cyberwarfare and Digital Attacks
A single piece of malicious software could potentially cause serious disruption to essential infrastructure, affecting airport operations, interrupting vital services or damaging the digital systems that support everyday life, according to the UAE’s senior cybersecurity official.
Dr Mohamed Al Kuwaiti, Head of Cybersecurity for the UAE Government, said the nature of online threats is changing rapidly. What was once largely associated with conventional cybercrime is increasingly developing into a broader security challenge involving attempts to interfere with or damage the digital systems that modern societies depend on.
The warning comes as governments and organisations around the world face an expanding range of cyber risks, particularly as more essential services rely on interconnected digital networks.
Cyber threats becoming more sophisticated
Al Kuwaiti explained that cybersecurity is no longer limited to dealing with individual cases of online fraud, data theft or hacking.
According to him, the digital battlefield is expanding, with cyber operations increasingly becoming part of wider conflicts.
He described cyberwarfare as a growing component of modern security challenges, alongside developments involving digital currencies and the wider virtual environment.
The official said the scale of activity demonstrates why countries need to strengthen their digital defences and remain prepared for increasingly sophisticated attempts to compromise important systems.
A successful cyberattack does not necessarily have to destroy physical infrastructure to cause significant damage. Interfering with the software, networks or digital controls supporting essential services could itself result in major disruption.
Hundreds of thousands of attacks every day
The UAE is dealing with a substantial volume of cyber activity on a daily basis.
Al Kuwaiti said the country was currently recording an average of approximately 600,000 cyberattacks each day.
During the peak of the war, that figure rose to around 800,000 attacks a day.
The numbers illustrate the scale of the challenge facing cybersecurity authorities and organisations responsible for protecting digital infrastructure.
Not every attempted attack will necessarily succeed or cause damage, but the sheer volume of malicious activity means security teams must constantly monitor networks, identify suspicious behaviour and respond to potential threats.
Al Kuwaiti said the elevated number of attacks was linked to the wider regional conflict, explaining that periods of war can lead to increased attempts to penetrate systems and obtain sensitive information.
The changing face of digital conflict
Traditional warfare has historically focused on physical targets, but modern conflicts increasingly include a digital dimension.
Government networks, companies, communications systems and essential infrastructure can all become potential targets.
Cyber operations may be used to obtain information, disrupt services, influence public opinion or create uncertainty.
This means cybersecurity has become closely connected with national security.
For countries with highly developed digital infrastructure, protecting networks is essential because many everyday services now depend on computer systems.
An attack against a digital network could therefore have consequences beyond the online environment.
Three broad categories of cyber threats
Al Kuwaiti said the threats facing the UAE can generally be grouped into three major categories: cybercrime, cyberterrorism and cyberwarfare.
Although these categories can sometimes overlap, each involves different objectives and methods.
Cybercrime generally refers to malicious activities carried out for purposes such as financial gain, theft, fraud or the acquisition of valuable information.
Cyberterrorism involves the use of digital tools and online platforms for extremist purposes, including spreading harmful ideas and attempting to influence or radicalise individuals.
Cyberwarfare represents a broader state-level or conflict-related threat, where digital capabilities can potentially be used against strategic systems and critical infrastructure.
Cybercrime remains a major concern
The first category, cybercrime, covers a wide range of online offences.
These can include attempts to steal money, obtain personal information, compromise accounts or gain unauthorised access to computer systems.
Digital platforms can also be exploited to spread false claims, manipulate users or conduct other forms of malicious activity.
As more financial, commercial and personal activity moves online, criminals have more opportunities to target individuals and organisations.
This makes basic digital awareness increasingly important for the public.
People can become targets through seemingly ordinary online interactions, including suspicious messages, fraudulent websites or misleading content.
Cyberterrorism and online influence
The second category identified by Al Kuwaiti is cyberterrorism.
He said extremist groups and other malicious actors can use technology to distribute their messages and influence people.
Social media platforms, online gaming environments and other digital spaces can potentially be exploited to circulate misleading or extremist ideas.
The objective may not always be to attack a computer system directly.
Instead, digital platforms can be used to influence individuals, create division, weaken social cohesion or encourage radicalisation.
This makes the online information environment an important part of the broader cybersecurity conversation.
The role of misinformation
False information can spread quickly through digital platforms, particularly when users share material without checking where it originated.
Al Kuwaiti highlighted the importance of recognising that malicious online activity can involve both technical attacks and attempts to manipulate information.
Rumours and fabricated claims can create confusion and undermine trust.
In periods of conflict or heightened tension, the spread of inaccurate information can become particularly damaging because people may make decisions based on material that is incomplete, manipulated or entirely false.
Artificial intelligence adds another layer
The rapid development of artificial intelligence is also changing the cybersecurity landscape.
AI tools can make it easier to create convincing text, images, audio and other digital material.
This can make it more difficult for ordinary users to determine whether something they encounter online is authentic.
At the same time, AI can provide defenders with new tools for identifying suspicious activity and responding to cyber threats.
The technology therefore has potential benefits as well as risks, but its rapid development means governments, companies and individuals need to adapt quickly.
Critical infrastructure needs protection
One of the biggest concerns surrounding cyberwarfare is the potential impact on critical infrastructure.
Modern airports, electricity networks, water systems, telecommunications services and other essential facilities depend heavily on digital technology.
If the systems controlling or supporting these services were disrupted, the consequences could extend far beyond computers and networks.
For example, interference with an airport’s digital systems could affect operations and create delays.
Similarly, disruption to the technology supporting electricity or water infrastructure could interfere with essential services used by large numbers of people.
This is why cybersecurity protection is increasingly viewed as an essential part of infrastructure security.
Why one malicious programme can matter
The warning about a single malicious programme highlights how interconnected modern systems have become.
A piece of malware does not necessarily need to affect every computer in a network to create serious problems.
If it reaches a particularly important system or compromises a key part of an interconnected network, the resulting disruption could potentially spread to other services.
This makes prevention, early detection and rapid response critical.
Cybersecurity teams therefore have to consider not only individual devices but also the wider networks and systems connected to them.
A constantly changing threat
Cybersecurity is a constantly evolving field because attackers and defenders are continually adapting to one another.
As organisations introduce new technologies, malicious actors can search for new vulnerabilities.
Likewise, security teams develop new protective measures in response to emerging threats.
This creates an ongoing cycle in which digital security requires continuous attention rather than a one-time solution.
Organisations need to monitor their systems, update security measures and ensure that employees understand common cyber risks.
Public awareness also matters
While governments and cybersecurity agencies play a central role in protecting national networks, individual users also have an important part to play.
People should be cautious when opening unfamiliar links, downloading unknown files or sharing sensitive information online.
Checking the source of information before sharing it can also help reduce the spread of false claims.
Strong passwords, multi-factor authentication and regularly updated software can provide additional protection for personal accounts and devices.
These simple measures cannot eliminate every risk, but they can make it more difficult for attackers to compromise individual users.
Cybersecurity as part of national resilience
The growing number of attacks demonstrates why cybersecurity has become an important element of national resilience.
A country’s ability to maintain essential services during a cyber incident can be just as important as its ability to protect physical infrastructure.
This requires cooperation between government agencies, private companies, technology providers and members of the public.
Critical infrastructure operators in particular need robust plans for identifying and responding to potential attacks.
They must also be prepared for situations in which multiple systems are targeted at the same time.
The impact of regional conflict
The increase in reported cyber activity during periods of conflict highlights the connection between geopolitical developments and digital security.
When tensions rise, cyber operations can become another tool used by hostile actors.
These activities may involve attempts to obtain intelligence, disrupt systems or influence public perception.
Al Kuwaiti’s comments about the increase from approximately 600,000 daily attacks to around 800,000 during the peak of the war illustrate how cyber activity can intensify during major geopolitical events.
Protecting information and systems
The challenge for cybersecurity authorities is therefore twofold.
They must protect the technical systems that support essential services while also helping prevent the manipulation and misuse of information.
Both areas are increasingly interconnected.
A technical breach can result in the theft of information, while misleading information can be used to influence people or create confusion during a crisis.
Effective cybersecurity therefore involves technology, awareness, monitoring and cooperation.
Looking ahead
As the UAE continues to expand its digital infrastructure, cybersecurity will remain an important part of the country’s broader development.
The increasing reliance on connected systems creates significant benefits for residents, businesses and government services, but it also creates new responsibilities.
Protecting those systems requires continuous investment and preparation.
The UAE’s cybersecurity authorities are therefore facing a threat environment that is becoming more complex, with cybercrime, cyberterrorism and cyberwarfare presenting different challenges.
The scale of daily attacks also demonstrates why constant vigilance is necessary.
A warning for the digital age
Al Kuwaiti’s warning underlines a broader reality of modern life: a cyberattack does not have to involve physical weapons to have consequences in the real world.
Digital systems now support many of the services people rely on every day.
If those systems are compromised, the impact can potentially extend to transportation, utilities, communications, businesses and government services.
As cyberwarfare becomes an increasingly important part of modern conflicts, governments and citizens alike need to understand the risks and take digital security seriously.
For the UAE, protecting critical infrastructure, securing information and improving public awareness will remain key priorities as the country navigates an increasingly complex online threat environment.
Cybersecurity awareness must begin at home, UAE official says
The UAE’s cybersecurity leadership has warned that digital threats are no longer limited to attacks on computer systems. Online platforms, social networks, gaming environments and emerging technologies can also be misused to influence people, spread harmful messages and create risks for society.
Dr Mohamed Al Kuwaiti, Head of Cybersecurity for the UAE Government, said the nature of cyber threats continues to change as technology develops. While extremist groups may alter their methods of operating online, he stressed that the underlying danger remains.
Online platforms can be exploited
According to Al Kuwaiti, cyberterrorism can involve the misuse of technology and popular digital platforms to distribute misleading or extremist messages.
Social media networks, online games and other internet-based services are accessible to large sections of society, making them potential channels for people seeking to influence others.
The challenge, he explained, is not simply protecting computer networks. It is also about ensuring that people can recognise harmful narratives and understand when digital content is being used to manipulate them.
Although the methods used by extremist groups may change over time, the threat has not disappeared.
The rise of the lone-wolf threat
One development highlighted by Al Kuwaiti is the growing possibility of individuals becoming radicalised without being formally connected to a larger organisation.
This is sometimes described as the “lone wolf” model.
Rather than requiring a large group to organise an attack, an individual can potentially be influenced through online material and eventually decide to act independently.
Al Kuwaiti said this creates a particularly difficult challenge because the individual may believe that they can personally bring about significant change.
The danger, therefore, does not necessarily come from a clearly identifiable organisation. It can also emerge when an individual becomes deeply influenced by harmful ideas encountered through digital channels.
Children and the online environment
Al Kuwaiti also raised concerns about the amount of time young people spend in digital environments.
Online games, social media and other platforms can form a significant part of children’s everyday lives.
While digital entertainment is not inherently harmful, he said parents and communities need to help young people understand the difference between fictional or virtual experiences and real-world behaviour.
The distinction becomes particularly important when children encounter violent or aggressive material through entertainment platforms.
Young users may understand that a game is fictional, but adults still have an important role in explaining that actions and consequences in the real world are fundamentally different.
Helping children understand the difference
The cybersecurity chief emphasised the importance of ensuring children remain connected to real-world values and responsibilities while navigating digital spaces.
Parents can help by talking openly with children about the content they encounter online and encouraging them to ask questions when something appears confusing, disturbing or misleading.
Simply restricting access to technology may not be enough.
As children grow up in an increasingly connected environment, developing good digital judgement can be just as important as learning how to use technology itself.
Society as the first layer of protection
Al Kuwaiti said cybersecurity awareness should not be viewed as the responsibility of government agencies alone.
He described society as an important first line of defence.
Government specialists and cybersecurity professionals can build sophisticated systems to detect and prevent attacks, but individuals also make decisions every day that can affect digital security.
Opening a suspicious attachment, clicking an unfamiliar link, sharing private information or believing an unverified message can create opportunities for malicious actors.
Greater public awareness can reduce those risks.
Critical infrastructure faces a different danger
While cyberterrorism can involve attempts to influence people, cyberwarfare presents another level of concern because it can directly target the digital systems supporting essential services.
Al Kuwaiti said recent developments had demonstrated attempts to interfere with or damage digital infrastructure.
Modern societies rely heavily on interconnected technology to operate airports, electricity networks, water systems, energy facilities and other critical services.
An attack against these systems could potentially have consequences far beyond the digital world.
The risk to essential services
The increasing dependence on connected infrastructure means that cybersecurity has become closely linked with public safety.
Electricity networks, water supplies and aviation systems all rely on technology to monitor and manage operations.
If malicious software were able to compromise an important component, the resulting disruption could potentially affect large numbers of people.
Al Kuwaiti used aviation as an example of how a seemingly small digital intrusion could have much wider consequences.
A relatively small piece of malicious software entering an important system could potentially interfere with operations and create disruption across an entire sector.
Aviation among the most sensitive areas
The potential for cyberattacks to affect aircraft and aviation systems is considered particularly serious because air transport depends on numerous interconnected digital systems.
Airports rely on technology for many aspects of their operations, while airlines and aircraft also use sophisticated digital infrastructure.
This means cybersecurity measures must account for multiple layers of technology rather than focusing on a single computer or network.
For the UAE, aviation is especially important because the country is a major international travel and transport hub.
Protecting the sector therefore remains a significant cybersecurity priority.
Technology continues to evolve
Al Kuwaiti said the security landscape will continue changing alongside technological development.
The UAE has moved through several stages of digital transformation, including the expansion of e-government services and increasingly connected infrastructure.
Now, artificial intelligence, quantum technologies, autonomous systems, robotics and drones are becoming increasingly important.
These technologies can create significant economic and social benefits, but they can also introduce new security challenges.
Every new technology creates opportunities for innovation while potentially opening new areas that need to be protected.
People remain central to cybersecurity
Despite the rapid pace of technological development, Al Kuwaiti stressed that one factor remains constant: people.
Technology can change, but individuals continue to make decisions about how digital systems are used.
This makes human awareness an essential part of cybersecurity.
People who understand common online threats are more likely to question suspicious messages, recognise potential scams and verify information before taking action.
Developing that culture of caution can therefore strengthen security at both the individual and national levels.
AI makes online information harder to assess
Artificial intelligence is adding another challenge because it can be used to create increasingly convincing digital material.
Images, videos, audio recordings and written content can be generated or altered using AI tools.
As a result, something that appears genuine may not necessarily be authentic.
Al Kuwaiti urged people to become more careful when assessing what they encounter online, particularly when content could influence an important decision.
The traditional assumption that something must be true simply because it looks convincing is becoming less reliable.
Seeing is not always believing
The cybersecurity official highlighted how advances in technology are changing the way people should evaluate digital information.
In the past, visual evidence may have been considered relatively strong proof of authenticity.
Today, however, sophisticated editing and AI-generated material can make fabricated content appear highly realistic.
This means users should examine information carefully rather than immediately accepting what they see.
Checking the original source, looking for confirmation from reliable outlets and avoiding impulsive reactions can help reduce the risk of being misled.
Think before clicking
Al Kuwaiti encouraged people to adopt a cautious approach whenever they receive unfamiliar digital messages.
Users should consider whether a link is trustworthy before opening it and should be careful when downloading applications or entering personal information.
Extra caution is particularly important when a message involves money, financial details, passwords or other sensitive information.
A message that creates a sense of urgency may be designed to encourage someone to act before thinking.
Taking a moment to verify the request can prevent potentially serious consequences.
Parents have an important role
The official also stressed that parents need to remain engaged with their children’s digital lives.
Young people are spending increasing amounts of time on social networks, gaming platforms and other online services.
Without communication at home, children may be more vulnerable to misleading information or individuals who attempt to influence them.
Al Kuwaiti encouraged parents to maintain open conversations with their children and understand the types of digital environments they use.
The aim is not simply to monitor children but to help them develop the judgement needed to navigate the internet safely.
Communication can provide protection
Regular conversations between parents and children can make it easier for young people to report suspicious or uncomfortable experiences.
If children know they can approach their parents without fear of immediate punishment, they may be more willing to discuss unusual messages, online contacts or disturbing material.
This creates another layer of protection.
Parents can also teach children basic principles such as avoiding unknown contacts, protecting passwords, questioning suspicious information and seeking help when something does not feel right.
A whole-of-society approach
The UAE’s cybersecurity strategy, according to Al Kuwaiti, extends beyond government institutions.
He described the approach as involving the whole nation, with individuals, families, businesses, communities and public authorities all contributing to digital safety.
Cybersecurity cannot be treated solely as a technical issue handled by specialists.
Every internet user interacts with digital systems, meaning everyone can potentially play a role in strengthening the country’s cyber resilience.
Taking awareness into communities
This philosophy is reflected in initiatives such as the Cyber Run, which aims to bring cybersecurity awareness into everyday community settings.
The initiative combines physical activity with discussions and educational messaging about online safety.
Rather than limiting cybersecurity conversations to government offices, such programmes aim to reach ordinary members of the public.
Children, parents and other members of the community can participate, helping make cybersecurity a more familiar part of everyday life.
Making cybersecurity easier to understand
Community-based initiatives can also make complex cybersecurity topics easier for people to understand.
Technical terminology can sometimes make online security appear complicated or relevant only to computer experts.
Activities that involve families and communities can show that cybersecurity also concerns simple daily decisions.
Whether it involves checking a message, protecting an account or questioning information found online, small actions can contribute to stronger digital safety.
Technology and responsibility must develop together
The UAE is continuing to invest in advanced technology and digital services, but Al Kuwaiti’s comments highlight the importance of ensuring that technological progress is matched by public awareness.
Artificial intelligence, robotics, autonomous systems and other technologies can transform how people work and live.
However, their safe use depends partly on people understanding both their benefits and their potential risks.
Technology alone cannot guarantee security.
Human judgement remains an important part of the equation.
A message for every internet user
The central advice from Al Kuwaiti is straightforward: people should slow down and think carefully before responding to information online.
Users should not automatically trust messages simply because they appear professional or convincing.
They should verify important information, particularly when money, personal details or account access are involved.
They should also be cautious about unfamiliar links and applications.
These habits can reduce the likelihood of falling victim to scams, misinformation or other forms of online manipulation.
Preparing for future threats
As digital technology continues to advance, cybersecurity challenges are likely to become more complex.
Threats may target infrastructure, information systems or individuals, while new technologies could create risks that are difficult to predict today.
For this reason, cybersecurity awareness needs to be treated as an ongoing process rather than a one-time lesson.
Government agencies can develop stronger technical protections, but those measures are most effective when supported by an informed and cautious population.
The importance of staying alert
The UAE’s cybersecurity leadership is urging people to recognise that online safety is now part of everyday life.
The risks range from relatively common scams to sophisticated attacks against critical infrastructure.
They may involve financial crime, misinformation, extremist content or attempts to disrupt essential services.
Each type of threat requires a different response, but awareness remains a common line of defence.
A simple principle for the digital age
For individuals, the most practical lesson is to avoid making quick decisions based solely on what appears on a screen.
Pause before clicking.
Check where information came from.
Think carefully before sharing personal details.
Question material that appears unusually urgent or sensational.
And speak with children regularly about what they encounter online.
As technology becomes more advanced, these basic habits may become increasingly important.
Building a safer digital society
The UAE’s approach places responsibility across society rather than relying exclusively on cybersecurity specialists.
Government authorities, businesses, parents, teachers, communities and individual users all have a role in creating a safer digital environment.
The challenge is likely to grow as artificial intelligence and other advanced technologies become more deeply integrated into everyday life.
But the fundamental principle remains simple: technological progress needs to be accompanied by human awareness.
For Al Kuwaiti, encouraging people to stop, question and verify before taking action is one of the most effective ways to strengthen digital resilience.
In an environment where online content can be manipulated and cyber threats can potentially affect real-world infrastructure, thinking carefully before acting may be one of the most valuable cybersecurity habits anyone can develop.





