2 Sources
[1]
India's average cost of data breach now highest in the world: IBM report - The Economic Times
A recent IBM report reveals that the average cost of data breaches in India surged to Rs 22 crore in 2025, a 13% increase from the previous year. Phishing remains the primary attack vector, while AI security governance lags behind widespread adoption. The research sector experienced the highest
[2]
India Faces Record-Breaking Data Breach Cost of INR 220 Million in 2025: IBM
This year's results show that organizations are bypassing security and governance for AI in favor of do-it-now AI adoption. Globally, ungoverned systems are more likely to be breached, and more costly when they are. "India's accelerating AI adoption brings immense opportunity, but it's also
Share
Copy Link
IBM's latest report reveals India's average data breach cost has risen to Rs 22 crore, the highest globally. The study highlights the growing cybersecurity challenges and the urgent need for AI governance in organizations.
A recent report by IBM has revealed that India now faces the highest average cost of data breaches globally, with expenses soaring to Rs 22 crore (approximately $2.67 million) in 2025. This marks a significant 13% increase from the previous year's figure of Rs 19.5 crore
1
.
Source: DT
The research sector in India bore the brunt of these data breaches, with average costs reaching Rs 28.9 crore. Close behind were the transportation industry at Rs 28.8 crore and the industrial sector at Rs 26.4 crore
1
. This sectoral breakdown highlights the varying degrees of vulnerability and financial impact across different industries.Phishing remains the top attack vector, accounting for 18% of incidents. Third-party vendor and supply chain compromises follow closely at 17%, while vulnerability exploitations make up 13% of the breaches
1
. These statistics underscore the diverse nature of cyber threats facing organizations.
Source: ET
Despite the widespread adoption of Artificial Intelligence (AI) in business operations, the report highlights a significant gap in AI security governance. Nearly 60% of breached organizations either lack an AI governance policy or are still in the process of developing one
1
. This trend suggests that organizations are prioritizing rapid AI implementation over security considerations.Viswanath Ramaswamy, Vice President of Technology at IBM India and South Asia, emphasized the strategic vulnerability created by this oversight. He stated, "The absence of access controls and AI governance tools is not just a technical oversight; it's a strategic vulnerability"
2
. Ramaswamy further stressed the need for Chief Information Security Officers (CISOs) to act decisively, embedding trust, transparency, and governance into AI systems by design.Related Stories
On a positive note, the average breach lifecycle in India, which includes the time to identify, contain, and restore services after a breach, has decreased from 15 days to 263 days in 2025
1
. This reduction suggests improvements in incident response capabilities among Indian organizations.The IBM report, which has been conducted for the last two decades and has investigated nearly 6,500 data breaches, provides valuable insights into global cybersecurity trends. The findings indicate that ungoverned AI systems are more likely to be breached and incur higher costs when compromised
2
.Summarized by
Navi
03 Aug 2026•Technology
31 Jul 2024

31 Jul 2025•Technology

1
Technology

2
Technology

3
Policy and Regulation
