14 September 2026

The state of terrorism, 25 years after 9/11

Atlantic Council

Al-Qaeda and the Islamic State of Iraq and al-Sham (ISIS) have transitioned from centralized bureaucratic organizations into highly dispersed global networks of regional affiliates. This structural evolution allows localized subgroups in Mali and Somalia to secure territory and recruit foreign fighters, presenting decentralized threats that are increasingly difficult for Western intelligence agencies to detect and disrupt.

Twenty-five years after the September 11 attacks, the broader counterterrorism landscape suffers from strategic drift and a lack of defined victory conditions. State-based conflicts are rising. These instabilities provide extremist networks with recruits and sanctuary, while asymmetric adversaries leverage cyber operations, artificial intelligence, and cryptocurrency to expand their global reach. Concurrently, the United States has shifted toward a transactional, nationalist foreign policy, abandoning traditional nation-building. This transition threatens to undermine the critical international partnerships and trust necessary to counter these highly adaptive, digitized threats in an increasingly combustible global environment.

Comment

The transition of extremist propaganda from centralised physical hubs to decentralised digital ecosystems is exemplified by the persistent distribution of the ISIS-K publication, *Voice of Khurasan*. This digital-first strategy leverages encrypted platforms and artificial intelligence to bypass traditional Western content moderation algorithms. Consequently, the threat of radicalisation has shifted from physical training camps in the Hindu Kush to highly atomised, self-mobilised online spaces targeting Western youth.

This technological decentralisation creates severe attribution challenges for the US National Security Agency. Attribution has become exceptionally difficult. Without centralised command-and-control nodes to intercept, signals intelligence collection is forced to pivot toward identifying anomalous behavioural patterns across vast, encrypted datasets. Ultimately, the persistence of the *Voice of Khurasan* network forces a reallocation of US intelligence resources away from traditional Middle Eastern human intelligence networks toward advanced machine-learning detection suites.

Strategic Question for Discussion
Which carries more weight in countering the *Voice of Khurasan* digital network—offensive cyber operations targeting hosting infrastructure, or defensive algorithmic moderation on commercial platforms—and what does this balance reveal about the limits of state-centric intelligence?
The trajectory indicates that offensive cyber operations yield only temporary disruptions against highly redundant, cloud-hosted networks. Consequently, the pattern suggests that the primary battleground has shifted to commercial platform algorithms, where state intelligence agencies possess limited direct authority. This dynamic reveals that state-centric intelligence is increasingly dependent on private-sector cooperation to counter decentralised digital threats.
Share your assessment in the comments below.