4 Sources
[1]
Mobile phishing attacks are now outperforming email scams
AI-driven hackers exploit vulnerabilities faster than companies secure their systems * AI-powered hackers now exploit software flaws faster than companies can patch systems * Mobile phishing scams now outperform traditional email attacks across corporate environments worldwide * Unauthorized AI
[2]
Verizon Report Warns of AI-Fueled Social Engineering Surge | PYMNTS.com
By completing this form, you agree to receive marketing communications from PYMNTS and to the sharing of your information with our sponsor, if applicable, in accordance with our Privacy Policy and Terms and Conditions. That is one of the central findings in Verizon's 2026 Data Breach
[3]
AI-Driven Cyberattacks Make Software Flaws Top Breach Trigger, Verizon Survey Warns
Verizon's latest breach report shows AI-powered cyberattacks have made vulnerability exploitation the leading cause of data breaches, overtaking stolen credentials as attackers automate reconnaissance, phishing and malware deployment at unprecedented speed. Software vulnerability exploitation has
[4]
AI-related data breaches surpass stolen credentials in cyber incidents, Verizon report says
WASHINGTON, May 19 (Reuters) - AI-detected vulnerabilities surpassed incidents of stolen credentials in data breaches last year, according to an annual report from Verizon relating to industry security incidents. Verizon said in a review of more than 31,000 incidents that 31% of all breaches
Share
Copy Link
For the first time in nearly two decades, exploitation of software vulnerabilities has overtaken stolen credentials as the primary way hackers breach corporate networks. Verizon's 2026 Data Breach Investigations Report reveals that AI-powered hackers now exploit flaws in 31% of all breaches, while mobile phishing attacks achieve 40% higher success rates than traditional email scams.
The exploitation of software vulnerabilities has emerged as the dominant threat vector in corporate cybersecurity, accounting for 31% of all confirmed data breaches according to Verizon's 2026 Data Breach Investigations Report
1
. This marks the first time in nearly two decades that vulnerability exploitation has overtaken stolen credentials, which have dropped to just 13% of reported incidents1
. The Verizon Data Breach Report analyzed over 31,000 security incidents across 145 countries, revealing a fundamental shift in how threat actors gain initial access to corporate systems2
.
Source: Analytics Insight
AI-powered hackers are leveraging artificial intelligence to accelerate the discovery and weaponization of known software flaws, dramatically shrinking the window available for defenders to patch their systems from months to mere hours
1
. Verizon warned that AI is being used by threat actors across different stages of attacks, including targeting, initial access, vulnerability research, malware deployment and other tooling2
. In the median case, threat actors researched or used AI assistance in 15 documented techniques, while some used it across 40 or 50 techniques2
. Despite this growing risk, only 26% of critical vulnerabilities were fully remediated throughout 2025, with the median time organizations took to apply patches jumping to 43 days1
.Mobile devices have become a more dangerous attack vector than email, with phishing simulations showing that text messages and voice calls achieve 40% higher click rates than traditional email phishing
1
. Phone-centric tactics, including voice and text-message attacks, are becoming more effective as attackers increasingly target mobile-centric communication channels where users are less suspicious2
. The human element was still involved in 62% of all breaches, while AI-fueled social engineering represented 16% of all breaches2
.
Source: TechRadar
Ransomware was present in nearly half of all breaches at 48%, up from 44% the previous year, though 69% of victims refused to pay
1
. Supply chain attacks have also grown substantially, with third-party involvement in breaches increasing by 60% year-over-year, reaching 48% of total breaches1
2
.Related Stories
Nearly half of all employees, or 45%, now use AI tools at work, representing a significant increase from just 15% the previous year
1
. However, 67% of these workers access generative AI platforms through unauthorized personal accounts rather than approved corporate channels, creating what experts call "Shadow AI"1
. This has become the third most common cause of non-malicious data leakage, putting company secrets at significant risk of unintended exposure.
Source: PYMNTS
Verizon's report argues that AI is, for now, mostly making familiar attacks faster, cheaper and more scalable, with less than 2.5% involving less common techniques
2
. "AI's primary impact is currently operational: automating and scaling techniques defenders already know how to detect, not yet unlocking these novel or rare attack surfaces," the report states2
. Verizon chief information security officer Nasrin Rezai emphasized the need to fight AI with AI, incorporating these tools into software development life cycles, testing processes and cyber defense processes at unprecedented scale4
. The report does not cover data from Mythos, a new AI model announced on April 7 as part of Anthropic's "Project Glasswing," which has raised widespread cybersecurity concerns due to its high-level coding skills and ability to identify vulnerabilities4
.Summarized by
Navi
[3]
27 Feb 2025•Technology

12 May 2026•Technology

02 Sept 2026•Technology

1
Policy and Regulation

2
Technology

3
Technology
