Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Cisco Vulnerability Exploited Months Before Disclosure, Google Warns

June 25, 2026

Twenty Million US IP Connections Used by Proxy Services

June 25, 2026

Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization

June 25, 2026
Facebook X (Twitter) Instagram
Thursday, June 25
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»AI-Driven Insider Risk Now a “Critical Business Threat,” Report Warns
News

AI-Driven Insider Risk Now a “Critical Business Threat,” Report Warns

Team-CWDBy Team-CWDMarch 5, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


The risk of insider threats is on the rise and businesses are concerned about the cybersecurity implications of intentionally malicious or negligent employees, research by Mimecast has warned.

According to the company’s State of Human Risk Report 2026, internal cybersecurity risk has grown across the board, to the extent that it should be treated as a “critical business threat.”

In many cases, the additional insider risk is because of employees mishandling or actively abusing AI tools

According to the report, cybersecurity leaders have concerns about the rise of AI in the workplace and the potential for large language models (LLMs) and other AI productivity tools to expand the potential attack surface which could be exploited by both external and internal threats.

Over the past year, 42% of organizations have reported an increase in threats from malicious insiders, employees who want to actively cause harm to their employer by stealing, manipulating or destroying data.

The same percentage (42%) reported a rise in cybersecurity incidents because of employee negligence.

These are incidents which occur because of careless actions by the employee which could have easily been avoided, such as transferring data insecurely using personal cloud accounts, using weak passwords or opening malicious links in phishing emails.

The report warns that that cyber attackers look to exploit this negligence – or indeed, actively malicious intent – to help gain access to accounts, files and systems and that the problem is growing.

According to the paper, concerns about malicious insiders from information security leaders has grown by 10% in the last year and IT and cybersecurity leaders expect to face an average of six insider-driven threats a month.

“Insider risk has become one of the most consequential and underestimated threats facing organizations today, not just because of the data loss it causes, but because attackers are increasingly exploiting insiders as a deliberate entry point to bypass perimeter defenses entirely,” said Mimecast CISO Leslie Nielsen. 

Attackers also deploy AI tools themselves, using them to help create more realistic, more effective phishing emails. Meanwhile, it’s possible for malicious insiders to deploy AI tools to help them achieve their goals, for example, by searching for and exfiltrating files and data.

“As AI makes it easier for insiders to exfiltrate data at scale, security must meet users at the point of risk,” said Nielsen.

The paper is based on research by Mimecast and Vanson Bourne which surveyed 2500 IT security anddecision makers across the world, including North America, Europe, Southeast Asia and Australia. Organization sizes ranged from 250 to over 10,000 employees.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleManual Processes Are Putting National Security at Risk
Next Article Malicious NuGet Packages Stole ASP.NET Data; npm Package Dropped Malware
Team-CWD
  • Website

Related Posts

News

Twenty Million US IP Connections Used by Proxy Services

June 25, 2026
News

Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization

June 25, 2026
News

KDDI Breach Affects Six Japanese ISPs, Exposes 14.2 Email Credentials

June 25, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

Can password managers get hacked? Here’s what to know

November 14, 2025

Why that next data breach alert could be a trap

April 18, 2026

Find your weak spots before attackers do

November 21, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.