Experts said the UAE has a high volume of mobile application use and downloads, making the region an important target for cybercriminals who distribute malicious programs disguised as ordinary and trusted applications.

Speaking at GISEC Global 2026, Pushkar Singh, head of Middle East and Africa at Protectt.ai, advised users to download mobile applications only from official platforms. He said Android users should use the Google Play Store, while iPhone users should download apps from the Apple App Store.

According to Singh, applications shared through WhatsApp, Telegram or other unofficial sources can sometimes be modified to include malicious code. While the application may appear normal to the user, installing it can put the mobile phone and the information stored on it at risk.

Cybersecurity experts said some organisations are using security systems that can detect suspicious or modified applications and prevent them from operating. The aim is to ensure that even if an employee accidentally installs such an application, it cannot gain access to the organisation’s systems or sensitive information.

Experts also expressed concern over the growing use of artificial intelligence in fraud. Singh said AI has made it easier to replicate a person’s voice and video. Fraudsters can use the technology to impersonate a well-known individual or official and persuade victims to transfer money or approve sensitive actions.

This means that even if a person sees or hears someone they know during a video or phone call, relying solely on their voice or face to verify a financial transaction is not considered safe. Experts advised verifying suspicious requests through another trusted channel.

Cybersecurity specialists also warned against unnecessary or careless use of VPN and proxy services. They said users should understand how their internet traffic is being routed, as data passing through insecure routes could be exposed to attackers.

The rapid growth of fintech, digital payments and AI-based financial services in the UAE and Gulf countries has also increased the importance of cybersecurity. Experts said cyber threats are no longer limited to traditional computer systems but can also affect mobile phones, digital payments, artificial intelligence systems and partner organisations.

At GISEC Global 2026, cybersecurity experts also highlighted the growing speed and complexity of cyberattacks enabled by AI. Deepfake fraud, identity theft, AI-assisted social engineering, data theft and attacks targeting AI models are emerging as major challenges for organisations.

Hadi Anwar, chief executive of CPHX, said cybersecurity is no longer only a technology issue but has also become an important part of business management and organisational oversight. He said companies need to focus on the security of the entire AI usage process, third-party models and digital supply chains.

Meanwhile, Ashraf Koheil, vice president at Group-IB, said Gulf countries were among the 10 regions most targeted by supply-chain attacks globally in 2025. According to him, 28.5% of phishing attacks targeting the financial sector in the Middle East and Africa were related to the region.

Experts said cyber threats are no longer limited to a company’s own computer systems. Suppliers, fintech partners, payment providers and other external services can also provide potential entry points for attackers.

Cybersecurity experts advised users not to click on unknown app links received through WhatsApp or Telegram, avoid approving financial transactions in response to suspicious calls and download applications only from official app stores.

Companies were also advised to adopt additional security measures to prevent malicious programs from becoming active in their systems even when users make mistakes.