IBM Xforce: Are Your Enterprise AI Tools Secure?

IBM XForce Threat Intelligence Report reveals that AI is not only accelerating cyber threats, but criminals are exploiting flaws in enterprises' AI tools

IBM Xforce: Are Your Enterprise AI Tools Secure?

TL;DR

  • AI is accelerating cyber threats and being weaponized by threat actors.
  • AI-enabled tools allow attackers to identify and exploit vulnerabilities in public-facing applications at high speed.
  • There was a 44% rise in attacks beginning with exploitation of basic vulnerabilities, often due to missing authentication controls.
  • AI platforms are becoming viable targets for credential theft, with over 300,000 ChatGPT credentials exposed.
  • Compromised AI credentials can lead to manipulated outputs, data exfiltration, and injection of malicious prompts.
  • AI lowers barriers to entry for cybercrime, contributing to a 49% increase in active ransomware and extortion groups.
  • AI is used to analyze large datasets and adapt attack paths dynamically.
  • AI-generated assets make it harder to distinguish legitimate users from impersonation attempts.
  • Supply chain and third-party compromises are significant risks for AI systems due to complex dependency chains.
  • Vulnerability exploitation was the leading trigger for incidents in 2025, accounting for 40% of observed attacks.
  • Core issues like credential hygiene and software configuration remain the primary causes of breaches.
  • Manufacturing industries were the most targeted sector for the fifth consecutive year (28% of incidents).
  • North America was the most attacked region overall.
  • Organizations must reinforce basic security controls, embrace proactive threat hunting, and prioritize identity protection.