Close Menu
  • Home
  • AI Models
    • DeepSeek
    • xAI
    • OpenAI
    • Meta AI Llama
    • Google DeepMind
    • Amazon AWS AI
    • Microsoft AI
    • Anthropic (Claude)
    • NVIDIA AI
    • IBM WatsonX Granite 3.1
    • Adobe Sensi
    • Hugging Face
    • Alibaba Cloud (Qwen)
    • Baidu (ERNIE)
    • C3 AI
    • DataRobot
    • Mistral AI
    • Moonshot AI (Kimi)
    • Google Gemma
    • xAI
    • Stability AI
    • H20.ai
  • AI Research
    • Allen Institue for AI
    • arXiv AI
    • Berkeley AI Research
    • CMU AI
    • Google Research
    • Microsoft Research
    • Meta AI Research
    • OpenAI Research
    • Stanford HAI
    • MIT CSAIL
    • Harvard AI
  • AI Funding & Startups
    • AI Funding Database
    • CBInsights AI
    • Crunchbase AI
    • Data Robot Blog
    • TechCrunch AI
    • VentureBeat AI
    • The Information AI
    • Sifted AI
    • WIRED AI
    • Fortune AI
    • PitchBook
    • TechRepublic
    • SiliconANGLE – Big Data
    • MIT News
    • Data Robot Blog
  • Expert Insights & Videos
    • Google DeepMind
    • Lex Fridman
    • Matt Wolfe AI
    • Yannic Kilcher
    • Two Minute Papers
    • AI Explained
    • TheAIEdge
    • Matt Wolfe AI
    • The TechLead
    • Andrew Ng
    • OpenAI
  • Expert Blogs
    • François Chollet
    • Gary Marcus
    • IBM
    • Jack Clark
    • Jeremy Howard
    • Melanie Mitchell
    • Andrew Ng
    • Andrej Karpathy
    • Sebastian Ruder
    • Rachel Thomas
    • IBM
  • AI Policy & Ethics
    • ACLU AI
    • AI Now Institute
    • Center for AI Safety
    • EFF AI
    • European Commission AI
    • Partnership on AI
    • Stanford HAI Policy
    • Mozilla Foundation AI
    • Future of Life Institute
    • Center for AI Safety
    • World Economic Forum AI
  • AI Tools & Product Releases
    • AI Assistants
    • AI for Recruitment
    • AI Search
    • Coding Assistants
    • Customer Service AI
    • Image Generation
    • Video Generation
    • Writing Tools
    • AI for Recruitment
    • Voice/Audio Generation
  • Industry Applications
    • Finance AI
    • Healthcare AI
    • Legal AI
    • Manufacturing AI
    • Media & Entertainment
    • Transportation AI
    • Education AI
    • Retail AI
    • Agriculture AI
    • Energy AI
  • AI Art & Entertainment
    • AI Art News Blog
    • Artvy Blog » AI Art Blog
    • Weird Wonderful AI Art Blog
    • The Chainsaw » AI Art
    • Artvy Blog » AI Art Blog
What's Hot

India leads the way on Google’s Nano Banana with a local creative twist

SAIC Roewe M7 DMH Launches with Doubao Large Model, Starting at 85,800 Yuan for a New Interactive Smart Travel Experience_world’s_model_the

OpenAI, Google reasoning models achieve gold-level scores in ICPC coding contest

Facebook X (Twitter) Instagram
Advanced AI News
  • Home
  • AI Models
    • OpenAI (GPT-4 / GPT-4o)
    • Anthropic (Claude 3)
    • Google DeepMind (Gemini)
    • Meta (LLaMA)
    • Cohere (Command R)
    • Amazon (Titan)
    • IBM (Watsonx)
    • Inflection AI (Pi)
  • AI Research
    • Allen Institue for AI
    • arXiv AI
    • Berkeley AI Research
    • CMU AI
    • Google Research
    • Meta AI Research
    • Microsoft Research
    • OpenAI Research
    • Stanford HAI
    • MIT CSAIL
    • Harvard AI
  • AI Funding
    • AI Funding Database
    • CBInsights AI
    • Crunchbase AI
    • Data Robot Blog
    • TechCrunch AI
    • VentureBeat AI
    • The Information AI
    • Sifted AI
    • WIRED AI
    • Fortune AI
    • PitchBook
    • TechRepublic
    • SiliconANGLE – Big Data
    • MIT News
    • Data Robot Blog
  • AI Experts
    • Google DeepMind
    • Lex Fridman
    • Meta AI Llama
    • Yannic Kilcher
    • Two Minute Papers
    • AI Explained
    • TheAIEdge
    • The TechLead
    • Matt Wolfe AI
    • Andrew Ng
    • OpenAI
    • Expert Blogs
      • François Chollet
      • Gary Marcus
      • IBM
      • Jack Clark
      • Jeremy Howard
      • Melanie Mitchell
      • Andrew Ng
      • Andrej Karpathy
      • Sebastian Ruder
      • Rachel Thomas
      • IBM
  • AI Tools
    • AI Assistants
    • AI for Recruitment
    • AI Search
    • Coding Assistants
    • Customer Service AI
  • AI Policy
    • ACLU AI
    • AI Now Institute
    • Center for AI Safety
  • Business AI
    • Advanced AI News Features
    • Finance AI
    • Healthcare AI
    • Education AI
    • Energy AI
    • Legal AI
LinkedIn Instagram YouTube Threads X (Twitter)
Advanced AI News
IBM

Cost of Data Breach in US Rises to $10.22 Million, Says Latest IBM Report

By Advanced AI EditorJuly 30, 2025No Comments5 Mins Read
Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


IBM’s Cost of a Breach Report shows that global costs are down, but US costs are up. More than anything it shows the arrival of a new emerging influence: the effect of AI in both attack and defense.

The global average cost of a breach fell to $4.44 million (the first decline in five years), but the average US cost rose to a record $10.22 million. The lifecycle of a breach (dwell time plus restoration time) fell to 241 days – a record low and 17 days lower than the previous year.

The higher cost of a US breach will have little to do with relative regional levels of security or even the influence of AI. “While the U.S. has adopted AI-driven defenses at a slightly higher rate, organizations in the US. continue to experience the highest data breach costs year after year,” explains Kevin Albano, associate partner at IBM X-Force Intel. 

“The disparity is influenced by several factors, including a 14% year-over-year jump in detection and escalation costs, driven in part by higher labor costs. US organizations also reported paying higher regulatory fines, further compounding the overall cost burden.”

The standout takeaway from this year’s report (PDF) is that, for good and evil, AI is here – and criminals seem to be taking it more seriously than defenders. AI is a new and high value target, and while AI breaches are still only a relatively small portion of the overall number of breaches, they will undoubtedly increase as AI usage increases.

AI is used as a target, and as an attack enabler and defense solution. It is a high value target. It improves the scale and sophistication of attacks but can also be used to increase the speed of attack detection. Noticeably, companies that employ AI in their defense, decrease the cost of any breach. But equally noticeable, companies are weak in securing their own AI models.

Thirteen percent of breaches involved AI models or applications, and 97% of those breaches had no access controls. Sixty percent of them led to compromised data and 31% led to operational disruption. Security and governance are taking a back seat in AI implementation.

The lack of access control is surprising since the prevention of unauthorized access is the fount of all security. The failure is primarily caused by the desire to implement AI, for its potential to automate functions and reduce costs, as quickly as possible. “AI’s complexity and novelty challenges organizations in implementing effective access controls, as security best practices for AI systems are still evolving in this relatively new field,” suggests Albano.

Advertisement. Scroll to continue reading.

Shadow AI is an important element of this. Extensive use leads to increased breach cost, and the loss of more PII and IP. The adage of not being able to secure what you cannot see remains true.

Certainly, reliance on AI’s inbuilt guardrails to provide a line of defense is false security. Many AI breaches were supply chain incidents (30%), involving compromised apps, APIs and plug-ins. However, direct manipulation of AI bots occupies the next three spots: prompt injection (17%), model evasion (21%), and model inversion 24%). All three involve the extraction of data or information that the guardrails should prevent. Prompt injection was the earliest tactic – a direct attempt to trick the guardrails. But as the guardrails have improved over time, this direct attack has become more difficult.

Attackers have switched to context manipulation. Context is the previous questions ‘remembered’ by the AI to enable it to handle a conversation. Manipulation builds a conversation without ever directly delivering a new request that would trigger the guardrails. Model inversion and model evasion are the two primary examples of manipulation.

“Model inversion focuses on reconstructing training data, model evasion aims to manipulate inputs to cause incorrect outputs, and prompt injection involves altering the prompts to influence the AI’s behavior,” explains Albano.

Most breaches target customer PII, comprising 53% of stolen or compromised data. This year, phishing replaced stolen credentials as the most common initial attack vector – quite possibly through the increasing use of AI. 

“Phishing attacks caused 16% of data breaches, with each costing an average of $4.8 million. Generative AI now enables attackers to create convincing phishing emails in just 5 minutes – down from 16 hours previously,” says Albano.

“These phishing emails typically deploy infostealers that harvest passwords, browser cookies, autofill data, keystrokes, and screenshots to steal user credentials.” Infostealers have become the backbone of cybercrime, feeding the growth in fraud (which is also but separately aggravated by criminal use of AI) .

IBM uses the same method for calculating the cost of a breach each year. “Researchers calculate the cost of a data breach using four process-related activities: detection and escalation, notification, post-breach response and lost business,” explains IBM.

“The research excludes very small and very large breaches. The data breaches examined in the 2025 report ranged in size between 2,960 and 113,620 compromised records. The researchers used activity-based costing, which identifies activities and assigns a cost according to actual use.”

The result is an average cost of a breach. It may not be 100% accurate for all breaches because it cannot include breached companies that don’t report their breaches or losses. However, by using the same research formula each year it provides a valid and comparable figure that shows trends. This is the real strength of the report. It demonstrates the current state of the continuing struggle between attackers and defenders, while the detailed analysis explains what is happening – such as this year’s emergence of the effect of AI on cybersecurity.

Related: Cost of Data Breach in 2024: $4.88 Million, Says Latest IBM Study

Related: Allianz Life Data Breach Impacts Most of 1.4 Million US Customers

Related: 750,000 Impacted by Data Breach at The Alcohol & Drug Testing Service

Related: Marks & Spencer Expects Ransomware Attack to Cost $400 Million



Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleAI Customer Service Trends 2025: Why Agentic AI and Human in the Loop Matter?
Next Article LISTEN: Howard Picks the Bills: Training camp edition
Advanced AI Editor
  • Website

Related Posts

Aspiring to be a unicorn in the era of AI: One Dal grad’s adventures at IBM – Dal News

September 17, 2025

Daily Life of IBM’s Head of VC: Miles With Her Dogs and Meeting Startups

September 17, 2025

Assessing IBM: Insights From 10 Financial Analysts – IBM (NYSE:IBM)

September 16, 2025

Comments are closed.

Latest Posts

Jennifer Packer and Marie Watt Win $250,000 Heinz Award

KAWS Named Uniqlo’s First Artist-in-Residence

Jeffrey Gibson Talks About Animals at Unveiling of New Sculptures at the Met

‘New Yorker’ Commissions High-Profile Artists for Anniversary Covers

Latest Posts

India leads the way on Google’s Nano Banana with a local creative twist

September 18, 2025

SAIC Roewe M7 DMH Launches with Doubao Large Model, Starting at 85,800 Yuan for a New Interactive Smart Travel Experience_world’s_model_the

September 18, 2025

OpenAI, Google reasoning models achieve gold-level scores in ICPC coding contest

September 18, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • India leads the way on Google’s Nano Banana with a local creative twist
  • SAIC Roewe M7 DMH Launches with Doubao Large Model, Starting at 85,800 Yuan for a New Interactive Smart Travel Experience_world’s_model_the
  • OpenAI, Google reasoning models achieve gold-level scores in ICPC coding contest
  • Nvidia CEO Jensen Huang Is Bananas for Google Gemini’s AI Image Generator
  • Nvidia AI chip challenger Groq raises even more than expected, hits $6.9B valuation

Recent Comments

  1. Timothyglurl on 1-800-CHAT-GPT—12 Days of OpenAI: Day 10
  2. Juniorfar on 1-800-CHAT-GPT—12 Days of OpenAI: Day 10
  3. Timothyglurl on 1-800-CHAT-GPT—12 Days of OpenAI: Day 10
  4. shadowwhirllynx2Nalay on MIT leaders discuss strategy for navigating Trump in private meeting
  5. mysticotter71Nalay on MIT leaders discuss strategy for navigating Trump in private meeting

Welcome to Advanced AI News—your ultimate destination for the latest advancements, insights, and breakthroughs in artificial intelligence.

At Advanced AI News, we are passionate about keeping you informed on the cutting edge of AI technology, from groundbreaking research to emerging startups, expert insights, and real-world applications. Our mission is to deliver high-quality, up-to-date, and insightful content that empowers AI enthusiasts, professionals, and businesses to stay ahead in this fast-evolving field.

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

LinkedIn Instagram YouTube Threads X (Twitter)
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
© 2025 advancedainews. Designed by advancedainews.

Type above and press Enter to search. Press Esc to cancel.