Select a theme from the list.
Insights

From our experts

Latest
Fileless PHP Rootkit Hides a Web Shell Inside BIG-IP Server MemoryMicrosoft Brings Agentic Vulnerability Hunting Into Azure GovernmentMicrosoft's Record Patch Tuesday Forces Defenders to Rethink Update PrioritiesPublic Zero-Day Exploits Put Endpoint Security Tools Under Defensive ScrutinyPEEP Turns Trusted Browsers Into Persistent Command CentersBigBear Shows Why Microsoft 365 MFA Alone Cannot Stop Session HijackingMass Exploitation Hits WordPress Sites Through Two Critical Upload FlawsCitrix NetScaler Authentication Bypass Draws Real-World Attack TrafficProject Zenith Recasts the Windows PC as a Local AI Development PlatformPostGREShell Turns Trusted Replication Accounts Into Server BackdoorsStyleSmuggler Zero-Day Puts Magento Stores on Emergency FootingRogue AI Agents Turn an Abandoned Wiki Into a Secret Coordination HubFileless PHP Rootkit Hides a Web Shell Inside BIG-IP Server MemoryMicrosoft Brings Agentic Vulnerability Hunting Into Azure GovernmentMicrosoft's Record Patch Tuesday Forces Defenders to Rethink Update PrioritiesPublic Zero-Day Exploits Put Endpoint Security Tools Under Defensive ScrutinyPEEP Turns Trusted Browsers Into Persistent Command CentersBigBear Shows Why Microsoft 365 MFA Alone Cannot Stop Session HijackingMass Exploitation Hits WordPress Sites Through Two Critical Upload FlawsCitrix NetScaler Authentication Bypass Draws Real-World Attack TrafficProject Zenith Recasts the Windows PC as a Local AI Development PlatformPostGREShell Turns Trusted Replication Accounts Into Server BackdoorsStyleSmuggler Zero-Day Puts Magento Stores on Emergency FootingRogue AI Agents Turn an Abandoned Wiki Into a Secret Coordination Hub
Security Insight

IBM Finds AI Security Incidents Are Becoming a Mainstream Breach Cost

IBM Finds AI Security Incidents Are Becoming a Mainstream Breach Cost
Photo by Ann H on Pexels

IBM research indicates that 22 percent of surveyed UK organizations experienced an AI-related security breach during the previous year. The findings show that attackers are targeting the infrastructure around AI systems while also using AI to accelerate phishing, impersonation, and malware operations.

Artificial intelligence is no longer merely an experimental security concern. New findings highlighted by IBM indicate that more than one in five surveyed UK organizations experienced an AI-related breach during the last year, while AI-driven attacks increased by 56 percent over the same period.

The average financial impact associated with an AI-related breach was reported at approximately $6 million. Although individual organizations will experience very different costs, the figure reflects a broader reality: poorly governed AI adoption can create access paths into sensitive data, cloud infrastructure, software development systems, and business workflows.

The AI Model Is Not Always the Weakest Link

Attackers frequently targeted the supporting technology around AI rather than directly defeating a model. Compromised APIs and plugins accounted for 27 percent of reported targeting activity, while cloud misconfigurations represented another 27 percent. These are familiar security weaknesses, but AI can amplify their impact because models and agents often connect to large data stores and privileged business applications.

AI is also changing the attacker's side of the equation. Deepfake impersonation was the most commonly cited AI-enabled attack type, appearing in 45 percent of responses. AI-assisted phishing and malware activity are also increasing, enabling criminals to produce convincing messages, automate reconnaissance, and adapt campaigns more quickly.

A Practical Enterprise Response

  • Create and maintain an inventory of approved AI models, agents, plugins, and data connections.
  • Apply least-privilege access to every AI service and non-human identity.
  • Review cloud configurations and API permissions continuously.
  • Require additional verification for financial requests, password resets, and sensitive instructions delivered through voice or video.
  • Record agent actions so investigators can reconstruct decisions and data access after an incident.
  • Include AI services in incident response, backup, and breach-notification plans.

IBM also found signs of growing resilience. Sixty-one percent of surveyed UK firms plan to increase cybersecurity investment following a breach, with incident response, AI governance, and data protection among the priorities.

In my view, organizations should avoid interpreting every incident involving an AI application as evidence of an entirely new class of attack. Many failures still begin with exposed credentials, excessive permissions, insecure APIs, and incorrect cloud settings. The difference is that AI systems can connect these weaknesses at greater speed and scale. Effective AI security therefore begins with strong identity, data, cloud, and software governance rather than a separate collection of controls built around the AI label.

Talk to our team →

Latest

Fileless PHP Rootkit Hides a Web Shell Inside BIG-IP Server MemorySep 9, 2026Microsoft Brings Agentic Vulnerability Hunting Into Azure GovernmentSep 9, 2026Microsoft's Record Patch Tuesday Forces Defenders to Rethink Update PrioritiesSep 9, 2026Public Zero-Day Exploits Put Endpoint Security Tools Under Defensive ScrutinySep 8, 2026PEEP Turns Trusted Browsers Into Persistent Command CentersSep 8, 2026BigBear Shows Why Microsoft 365 MFA Alone Cannot Stop Session HijackingSep 8, 2026

Most read

1Sophos Turns Its Own Network Into a Proving Ground for Safer Enterprise AI2Sophos Fusion Recasts the Security Platform as an AI-Driven Defense System3Global CMS Exploitation Wave Plants Webshells on Business Websites4Microsoft Makes Passkeys the Entra ID Default and Sets a Deadline for Native SMS Authentication5Laser Attack Exposes an Unpatchable Weakness in Tangem Crypto Wallet Cards6Critical NGINX Overflow Puts Internet-Facing Servers on an Urgent Upgrade Path