The 2025 Generative AI Cloud and Threat Report, released by Netskope Threat Labs, unveils a staggering 30-fold increase in data sent to genAI apps by enterprise users over the past year. A broader analysis found that 75% of enterprise users are accessing applications with genAI features, creating a larger issue for security teams to address: the unintentional insider threat. This trend underscores the urgent need for advanced data security capabilities to regain governance, visibility, and control over genAI usage within organizations. The integration of AI-fueled security measures will be crucial in keeping pace with the rapidly changing threat landscape and ensuring the safe and responsible use of genAI technologies in the enterprise environment. Ray Canzanese, Director of Netskope Threat Labs, notes, “Our latest data shows genAI is no longer a niche technology; it’s everywhere”. While many organizations are attempting to mitigate risks by implementing “block first and ask questions later” policies, security leaders are urged to pursue safe enablement strategies as employees seek efficiency and productivity benefits from these tools. In a startling revelation, a new report indicates that three out of four enterprise users are uploading data to generative AI (genAI) applications, including sensitive information such as passwords and keys. While this move reduces the risks of unwanted data exposure to third-party cloud apps, it introduces new data security risks related to supply chains, data leakage, and improper data output handling. The report reveals that 72% of enterprise users are accessing genAI apps through personal accounts for work-related purposes. The report also reveals a significant shift in genAI infrastructure, with the number of organizations running genAI locally increasing from less than 1% to 54% over the past year. As the AI landscape continues to evolve, organizations must remain vigilant and proactive in their approach to data security. Key steps include assessing the genAI landscape within the organization, bolstering genAI app controls, and inventorying local controls for organizations running genAI infrastructure locally. Netskope had visibility into 317 genAI apps, including popular platforms like ChatGPT, Google Gemini, and GitHub Copilot.
This Cyber News was published on cybersecuritynews.com. Publication date: Wed, 26 Mar 2025 14:35:17 +0000