{"id":4620,"date":"2026-02-25T02:38:45","date_gmt":"2026-02-25T02:38:45","guid":{"rendered":"https:\/\/ft365.org\/index.php\/2026\/02\/25\/cost-of-insider-incidents-surges-20-to-nearly-20m\/"},"modified":"2026-02-25T02:38:45","modified_gmt":"2026-02-25T02:38:45","slug":"cost-of-insider-incidents-surges-20-to-nearly-20m","status":"publish","type":"post","link":"https:\/\/ft365.org\/index.php\/2026\/02\/25\/cost-of-insider-incidents-surges-20-to-nearly-20m\/","title":{"rendered":"Cost of Insider Incidents Surges 20% to Nearly $20m"},"content":{"rendered":"<div>\n<p><img decoding=\"async\" src=\"https:\/\/ft365.org\/wp-content\/uploads\/2025\/06\/localimages\/ea721ff9-8ba4-4d88-b386-57e9e1606077.jpg?width=64&#038;height=64&#038;mode=crop&#038;scale=both&#038;format=webp\" alt=\"Photo of Phil Muncaster\" loading=\"lazy\"><\/p>\n<\/div>\n<div id=\"cphContent_pnlArticleBody\" data-layout-id=\"2\" data-edit-folder-name=\"text\" data-index=\"0\">\n<p>Employee negligence driven by shadow AI cost organizations more than any other type of insider risk last year, accounting for 53% of the $19.5m lost on average per business, according to DTEX.<\/p>\n<p>The security vendor\u2019s <em>Cost of Insider Risks 2026 <\/em>report was produced by the Ponemon Institute and based on interviews with 8750 IT and security practitioners in 354 global organizations.<\/p>\n<p>Malicious incidents such as sabotage, data theft, fraud and unauthorized disclosure accounted for 27% ($4.7m) of the total lost to insider risks last year, DTEX claimed.<\/p>\n<p>That pales in comparison to negligence (e.g. ignoring IT warnings) and mistakes (e.g. accidentally \u201cpressing the wrong button\u201d), which amounted to an average of $10.3m in losses per company.<\/p>\n<p>A third category of \u201coutsmarted\u201d employees refers to those that may have been phished. This\u00a0accounted for the smallest share of losses: 20% or $4.5m.<\/p>\n<p>In total, the report catalogued 7490 incidents and recorded a 20% increase in insider-related losses since 2023.<\/p>\n<p><em>Read more on insider threats: Foreign Interference Drives Record Surge in IP Theft.<\/em><\/p>\n<p>Costs related to employee negligence have risen 17% year-on-year, the report found. The main causes were the use of personal webmail, file sharing sites and shadow AI.<\/p>\n<p>Although 73% of respondents are worried that undocumented AI use is creating invisible data loss pathways, just 13% have formally adopted AI technology into their business strategy. Only 18% have fully integrated AI governance policies into their insider risk management program.<\/p>\n<h2>The Shadow AI Threat<\/h2>\n<p>The report pointed to several risks associated with shadow AI:<\/p>\n<ul>\n<li>The inputting of internal documents into public models like ChatGPT<\/li>\n<li>AI notetakers producing publicly accessible recordings and summaries containing sensitive internal discussions and PII<\/li>\n<li>AI browsers that enable access to malicious sites, AI-assisted torrenting, and NSFW content generation<\/li>\n<li>AI browsers and agents accessing corporate systems, performing tasks, and bypassing traditional controls and logging<\/li>\n<\/ul>\n<p>Blocking AI tools merely encourages staff to use other ones, the report warned.<\/p>\n<p>AI agents are seen as particularly problematic. Over two-fifths (44%) of respondents said that malicious use of agents will \u201csignificantly\u201d or \u201cmoderately\u201d increase data theft risks, but only 19% classify AI agents as equivalent to human insiders.<\/p>\n<h2><strong>Improvements Being Made<\/strong><\/h2>\n<p>However, agents can also be part of the solution. A fifth (19%) of respondents said they\u2019ve deployed AI agents in daily workflows, and 71% rate them important or extremely important for early insider risk detection.<\/p>\n<p>Behavioral analysis was cited as important or essential by 71% of responding organizations.<\/p>\n<p>This is part of the reason why organizations took an average of 67 days to contain an insider incident, down from 86 days.<\/p>\n<p>DTEX urged CISOs to \u201cdouble down on what works\u201d:<\/p>\n<ul>\n<li>Behavioral intelligence to highly \u201cearly, non-obvious risk signals\u201d before incidents can escalate<\/li>\n<li>Identity-centric security for humans, service accounts and AI agents<\/li>\n<li>Defensive AI that improves precision, reduces false positives, and enables risk-aware prevention at scale<\/li>\n<li>Governance and data classification to close AI-driven exposure gaps<\/li>\n<li>A mindset shift from \u201chuman-only risk\u201d to \u201chuman-plus-machine risk,\u201d treating AI as an \u201coperational insider<\/li>\n<\/ul><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Employee negligence driven by shadow AI cost organizations more than any other type of insider risk last year, accounting for 53% of the $19.5m lost on average per business, according to DTEX. The security vendor\u2019s Cost of Insider Risks 2026 report was produced by the Ponemon Institute and based on interviews with 8750 IT and<\/p>\n","protected":false},"author":2,"featured_media":4621,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-4620","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"featured_image_urls":{"full":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"thumbnail":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019-150x150.jpg",150,150,true],"medium":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"medium_large":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"large":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"1536x1536":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"2048x2048":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"morenews-featured":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"morenews-large":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"morenews-medium":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019.jpg",300,300,false],"crawlomatic_preview_image":["https:\/\/ft365.org\/wp-content\/uploads\/2026\/02\/4620-9aa96157-8279-4667-8b79-e9ee9d75d019-146x146.jpg",146,146,true]},"author_info":{"display_name":"henry","author_link":"https:\/\/ft365.org\/index.php\/author\/henry\/"},"category_info":"<a href=\"https:\/\/ft365.org\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","_links":{"self":[{"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/posts\/4620","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/comments?post=4620"}],"version-history":[{"count":0,"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/posts\/4620\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/media\/4621"}],"wp:attachment":[{"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/media?parent=4620"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/categories?post=4620"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ft365.org\/index.php\/wp-json\/wp\/v2\/tags?post=4620"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}