N
News
AI-Driven Breaches Cost US$1M More. Is Your Security Moving Fast Enough?
What happens when attackers automate the work while defenders still investigate at queue speed? IBM has put a price on that imbalance: AI-driven breaches cost US$1 million more.
The IBM Cost of a Data Breach Report 2026 found that the global average reached a record US$4.99 million, up 12% in a year. In Australia, the average breach has reached US$2.96 million.
The report's other numbers make for uncomfortable reading:
More than one in four malicious breaches were AI-driven, a 56% increase from the previous year.
Deepfake impersonation accounted for 45% of AI-driven attacks, followed by AI-enabled malware at 19% and AI-generated phishing or other communications at 17%.
Security teams using AI and automation extensively saved US$1.93 million on average and identified and contained breaches 65 days faster than organisations using none.
Shadow AI was involved in 43% of security incidents affecting an organisation's AI environment.
For Australian business leaders and security teams, the concern is speed: attacks have accelerated while many investigations still depend on fragmented tools, manual triage and a queue.
The Bill Rises When Response Slows
Detection and escalation, together with lost business, accounted for 63% of the global average breach cost. These are the costs that grow when a threat is difficult to find, takes too long to understand or interrupts the organisation while the response team works out what happened.
The average breach took 247 days to identify and contain, up from 241 days the year before. Breaches lasting longer than 200 days cost US$5.65 million on average, compared with US$4.32 million for shorter incidents.
An alert can arrive in seconds. Understanding whether it matters takes context: which identity was involved, what system was touched, what data was available and whether the behaviour belongs there. When those answers sit across separate tools and teams, investigation time becomes breach cost.
The report also gives people their due. Internal IT and security teams identified and contained breaches in 209 days on average. Managed security service providers did so in 230 days. Both were faster than the global average. Automation helps, but someone still has to make the call.
AI Risk Sits Around the Model Too
More than 20% of organisations in IBM's study reported a breach targeting AI models or applications. Much of the exposure sat in the surrounding systems: compromised application programming interfaces, applications or plug-ins accounted for 27%, as did cloud misconfigurations affecting AI workloads.
An approved AI platform can still expose information through everything connected to it. Employees use unapproved tools. Developers connect assistants to source code and credentials. Custom applications and agents receive access to business systems. Each connection adds another identity, permission and data path to account for.
A useful AI security picture answers five questions:
Which tools, assistants, applications and agents are in use?
What information can they access or send elsewhere?
Which identities and permissions sit behind them?
Can unsafe prompts, responses or automated actions be identified and controlled?
Can an incident be traced across identity, endpoint, network, cloud and data systems?
Shadow AI is already part of the environment. Treating it as a future governance problem leaves today's security team protecting systems it may not know exist.
Faster Defence Needs Connected Operations
Aussie organisations are adopting AI across everyday work, which calls for connected visibility, governance and response. The operating model is fairly plain.
AI Use Is Visible and Governed
Mature organisations maintain a current view of approved and unapproved AI tools, developer assistants, custom applications, agents and Model Context Protocol (MCP) servers. Policies reflect the user, tool, data and action, rather than relying on a static list of permitted platforms.
Data and Access Are Kept Narrow
Sensitive information is classified, unnecessary access is removed, and human and non-human identities receive only the permissions they need. Prompt, response and agent activity can be reviewed when something falls outside policy.
Detection Leads Somewhere
Identity, endpoint, network, cloud and application signals feed an operating model where analysts can connect the evidence and act. The useful measure is the time from a meaningful signal to a defensible decision.
Recovery Is Planned Before It Is Needed
Only 42% of organisations in IBM's study had fully recovered from their breach. Recovery means more than containing an attacker. Operations need to return to normal, compliance obligations need to be met, and customer and employee trust needs to be rebuilt. That work is easier when ownership and decision paths are settled before an incident.

Defenders Need the Same Speed
IBM's report leaves a useful tension: the same technology helping attackers move faster is helping prepared defenders contain breaches sooner and at lower cost. The advantage comes from knowing where AI is operating, controlling what it can reach and having people accountable when something goes wrong.
That is where Prompt Security and the Lumara SecOps Cloud work together. Prompt Security brings workplace AI into view and under policy across employees, developers, applications and agents. Lumara gives Australian analysts the wider security context to investigate unusual behaviour and respond around the clock.
For Aussie organisations, the first question is fairly simple: can the security team name the AI tools and agents in use, the data they can access and the response path if one is compromised? Any uncertainty in those answers marks the first gap to close.
Do you know what your team is sharing with AI, or how much access those tools already have? Find out with our FREE AI Exposure Check

