4 Sources
[1]
Employees regularly paste company secrets into ChatGPT
Employees could be opening up to OpenAI in ways that put sensitive data at risk. According to a study by security biz LayerX, a large number of corporate users paste Personally Identifiable Information (PII) or Payment Card Industry (PCI) numbers right into ChatGPT, even if they're using the bot
[2]
New Research: AI Is Already the #1 Data Exfiltration Channel in the Enterprise
For years, security leaders have treated artificial intelligence as an "emerging" technology, something to keep an eye on but not yet mission-critical. A new Enterprise AI and SaaS Data Security Report by AI & Browser Security company LayerX proves just how outdated that mindset has become. Far
[3]
Employees are unknowingly leaking company secrets through ChatGPT, new report warns
A disturbing new report finds ChatGPT and Copilot are already the biggest source of workplace data leaks -- here's what we know As more companies adopt generative AI like ChatGPT, Microsoft Copilot and Claude to improve productivity and workflow, they are discovering these tools are exposing
[4]
Watch out - your workers might be pasting company secrets into ChatGPT
Enterprises face major blind spots in data leakage and compliance due to unmonitored GenAI use, experts say ChatGPT and other Generative Artificial Intelligence (GenAI) tools are transforming what "risk of Shadow IT" means, new research has found, as employees are becoming a little too open - and
Share
Copy Link
Recent studies reveal that employees are inadvertently leaking sensitive company information through generative AI tools, particularly ChatGPT, posing significant security and compliance risks for enterprises.
Generative AI tools, particularly ChatGPT, have emerged as the leading channel for corporate data exfiltration, surpassing traditional security concerns like shadow IT and unmanaged file sharing. Recent studies by LayerX and Cyera have shed light on this growing issue, revealing alarming trends in enterprise AI usage and its associated risks
1
2
.
Source: TechRadar
According to LayerX's Enterprise AI and SaaS Data Security Report 2025, approximately 45% of enterprise employees now use generative AI tools, with ChatGPT dominating the landscape at over 90% usage
1
4
. This rapid adoption has outpaced governance measures, resulting in 67% of AI usage occurring through unmanaged personal accounts2
.The most concerning finding is the prevalence of sensitive data being shared with AI tools. The study reveals that 77% of AI users have been copying and pasting data into their chatbot queries, with 22% of these operations including Personally Identifiable Information (PII) or Payment Card Industry (PCI) data
1
. Additionally, about 40% of file uploads to generative AI sites contain PII/PCI data, with 39% of these uploads coming from non-corporate accounts2
.
Source: The Register
Related Stories
Traditional data loss prevention tools are ill-equipped to handle this new threat vector. Copy-paste actions within chat windows bypass conventional security measures, appearing as normal web traffic even when they contain confidential information
3
. This creates a significant blind spot for enterprise security teams.
Source: Tom's Guide
The findings underscore the urgent need for enterprises to adapt their security strategies. Recommendations include:
1
.2
.3
.As AI tools become increasingly integrated into enterprise workflows, addressing these security challenges is crucial to prevent data breaches and maintain regulatory compliance.
Summarized by
Navi
[1]
28 Feb 2025•Technology

30 Mar 2026•Technology

22 Aug 2025•Technology

1
Science and Research

2
Policy and Regulation

3
Technology