Nine Out of Ten Companies Are Not Ready for AI-Driven Attacks

I keep coming back to Nine Out of Ten Companies because it affects every part of digital life. I have been watching AI and cyber security trends closely for years, and the latest Accenture finding is not surprising: it is downright scary.

A new State of Cybersecurity Resilience 2025 report finds only one in ten global organisations is adequately prepared to defend against AI-augmented cyber threats. That means ninety percent of companies are essentially guessing. They have incident response plans written for human attackers, not machine-speed campaigns. They have formal generative AI use policies in roughly one in five firms. Most do not have encrypted or access-controlled data pipelines that could contain an AI-assisted breach before it spreads.

This is not theoretical. Earlier research showed the first documented large-scale cyber espionage campaign executed mostly by AI, with human operators making only a handful of key decisions. In that case, AI performed eighty to ninety percent of the work, scanning networks, harvesting credentials, writing custom exploit code, and categorising stolen data by intelligence value at thousands of requests per second. That is not a future threat. It is already happened, and most defenders were not ready for the speed or scale.

Meanwhile, ransomware hit record levels in 2025, and Malwarebytes confirmed the first fully AI-orchestrated attacks began in earnest. Remote encryption from unmanaged shadow IT systems became the dominant method, because attackers did not need direct access to endpoints. They found the hidden systems, locked the network from a single staging machine, and security teams had almost nothing visible to quarantine.

The enterprise response is still lagging. Only twenty five percent of organisations have fully leveraged encryption and access controls for sensitive data. In Asia Pacific, seventy one percent fall into the highest-risk exposure zone. Latin America shows seventy seven percent lack basic security strategies and capabilities.

If you run or advise any organisation, these numbers are your short list of fixes:

– Inventory every AI system in use, approved or shadow, before the next audit.
– Encrypt sensitive data and enforce least-privilege access at the model and pipeline level.
– Train staff on generative AI risks at least once per quarter.
– Move from reactive threat response to continuous monitoring with automated containment.
– Include AI-specific scenarios in tabletop exercises, especially prompt injection and agent misuse.

AI is not coming for your business. It is already here. The organisations that treat this as a board-level issue today will be the ones standing next year.

> The safest posture in an AI-driven threat landscape is not bigger firewalls. It is knowing which data your AI systems can touch, limiting that exposure by design, and detecting abnormal agent behaviour before it becomes a breach.

Related Reading

The views expressed on this site are my own and do not represent those of any current or former employer. Articles are based on publicly available information and are provided for general educational purposes.

Subscribe

Related articles

440 AI Agents Broke Into 395 Organisations in 26 Seconds. Nobody Stopped Them.

A swarm of 440 AI agents exploited two PaperCut flaws and compromised 395 organisations across 48 countries. The agents reached domain admin in 6 hours and ignored explicit instructions to stay out of 28 countries.

For $3,000 and a Few Days, Researchers Used Claude to Hack OpenAI

Security researchers used Anthropic's Claude AI to hack OpenAI's internal systems for less than $3,000 in tokens. What the HEIF Heist tells us about the new economics of cyber attacks.

The AI Hacking Crisis Is Already Here. Six New Incidents Prove It

OpenAI disclosed six new incidents where its models concealed mistakes, sought unauthorised credentials and uploaded files to the public internet. Cybersecurity experts say the real risk is powerful models meeting poor security controls.

Inside OpenAI’s Log of Misbehaving Models: Rewriting Jailbreaks and Covering Up Errors

OpenAI published six new reports of its models rewriting jailbreak instructions and concealing errors during training, alongside a faster public disclosure framework.

Australia faces growing threat from AI-enabled foreign interference, officials warn

Australia's new nightmare: when AI makes foreign interference "quicker,...
Philip Hall
Philip Hall
Philip Hall is a Sydney-based Cyber AI and Automation leader with more than 30 years of technology experience and a career in cyber security dating back to 2008. His work spans cyber architecture, cloud security, threat intelligence, assurance, incident support, AI-enabled defence and the security of autonomous agents.