One in Five Data Leaks Now Linked to Shadow AI Usage as Employees Feed Sensitive Corporate Data into Public AI Services
Small and medium-sized businesses as well as large corporations are increasingly exposed to data leaks caused by employees’ unauthorized use of generative AI tools. Security teams are struggling to keep pace as staff send internal information to public neural networks faster than information security departments can identify the new risk vectors.
According to research by Informzashchita, in July 2026 already 20% of organizations that suffered data leaks were able to link at least part of the incidents to unsanctioned GenAI usage. One year earlier the figure stood at approximately 12%. These cases go far beyond simply asking a chatbot to edit an email.
Employees are uploading contracts, source code, internal correspondence, client inquiries, and technical documentation to public AI services. The study breaks down the primary vectors responsible for these leaks:
- 42% occur through public AI web interfaces;
- 24% are connected to browser extensions and AI assistants that gain access to tabs, session history, and cookies;
- 19% result from independently connected APIs and libraries;
- 15% involve tools designed for programmers.
Traditional security controls frequently fail to detect the activity because the domains are legitimate, TLS encryption is active, and no malware signatures are present. As a result, confidential documents are exfiltrated to external services without triggering alerts.
The research also found that nearly one-third of companies using AI have discovered at least one API key or secret stored in insecure locations such as configuration files, test scripts, workstations, and Git repositories. Attackers who obtain these credentials can not only consume the organization’s AI budget but also reach connected databases and RAG data stores.
Late detection significantly increases the financial impact: incidents involving shadow AI raise average breach costs by roughly $670,000. Experts advise organizations to begin with comprehensive service inventories, secret scanning, browser-extension governance, and data classification instead of attempting to ban tools such as ChatGPT by policy alone.
Related articles
AI Learns Human Formulas of Deception, Fueling a Crisis of Free Speech and Truth
The article examines how artificial intelligence has begun replicating human social-behavioral patterns to create and cite nonexistent authoritative sources, thereby spreading false information at scale. It traces the historical evolution of propaganda from ancient Sparta and Athens through the Rothschilds and modern social media, showing how each new mechanism for verifying truth—expert opinion, reputation, and finally machines—has been subverted. The author highlights recent examples of rapid disinformation campaigns, including false claims about FlyDubai pilots and a supposed plague outbreak in Irkutsk, which were amplified by controlled media, opinion leaders, and ordinary users. The piece warns that AI’s tireless ability to generate thousands of contradictory articles in real time could overwhelm any possibility of discerning truth, especially during elections. Societal consequences include rising atomization, declining trust in institutions, lower voter turnout, and reduced economic investment due to uncertainty. The author concludes that humanity currently lacks an effective countermeasure and may need to pass through a period of extreme information pollution before developing new norms of personal responsibility and verification.
Anthropic Reports User's Violent Threats to Police After Conversation with Claude AI
Anthropic's security systems flagged messages from a Florida woman who used the Claude AI chatbot to express intent to carry out a shooting at the Lee County Sheriff's Office. The 30-year-old Carly Michelle Heller also stated that she had acquired a weapon, prompting the company to escalate the conversation for human review. After verification, Anthropic notified law enforcement, leading to her identification and quiet arrest at her home. Sheriff Carmine Marceno noted that Heller had been treating Claude as a personal diary rather than a secure private space. She now faces a second-degree felony charge under Florida law, with the court set to determine her guilt. The case underscores how AI platforms monitor for specific threats involving concrete targets and weapon acquisition, resulting in direct police involvement.
AI Reshapes Cybersecurity Jobs: Automation of Routine Tasks, Rising Demand for Architects and AI Defenders
The cognitive revolution driven by AI technologies is transforming the information security job market rather than eliminating it. Routine tasks such as alert triage, log analysis, and basic vulnerability prioritization are increasingly handled by language models and autonomous agents, shifting human roles toward setting boundaries, validating hypotheses, and assuming legal and financial responsibility. Surveys from ISC2 and analyses by Gartner highlight growing needs for senior architects, AppSec engineers, DevSecOps specialists, and experts protecting AI systems themselves. DARPA's AIxCC competition demonstrated both the promise and limitations of autonomous patching, with 37-45% of generated fixes containing hidden semantic errors. Russian market data from Positive Technologies and SuperJob shows 24-26% growth in vacancies focused on experienced professionals amid import substitution pressures. The profession is moving from mechanical execution to designing reliable architectures and overseeing automated defense loops through 2030.
Integrating LLM Assistant with Wazuh SIEM Enables Natural Language Queries and Alert Analysis
Wazuh collects security events effectively but requires knowledge of query languages and hundreds of index fields to extract answers. Selectel engineers have published a detailed guide on connecting an LLM-powered assistant to Wazuh 4.14.7 using OpenSearch plugins. The integration adds a chat window, Query Assist in Discover, and an Explain Document button that interprets alerts and vulnerabilities. The solution works with any OpenAI-compatible model and takes roughly two hours to configure, including plugin compilation. It leverages ml-commons for agent orchestration and PPLTool for translating natural language into executable Piped Processing Language queries. The article provides step-by-step instructions for Docker and package-based deployments while highlighting configuration requirements and limitations.