AppSec · 125 giorni fa
Il fallimento del controllo non è un modello canaglia. Sono i dipendenti che concedono a strumenti AI personali l’accesso a messaggi interni, dati HR e documenti riservati mentre i leader credono che la policy sia chiara. Una volta che quell’accesso viene concesso dall’utente, i dati sensibili possono uscire attraverso un workflow dall’aspetto affidabile invece che tramite un evento di malware.
4 fonti che coprono questa storia
Shadow AI: The Hidden Risk Expanding Across the Enterprise
Learn about the shadow AI attack surface, how it is expanding, and how you can protect and govern it from threats.
Enterprise data is creeping its way into shadow AI tools
Executives and employees are clashing over usage policies as AI security concerns rise, an Okta report found.
5 Steps to Managing Shadow AI Tools Without Slowing Down Employees
Shadow AI adoption grows as 69% of organizations detect unauthorized AI tools, increasing unseen corporate data exposure risks.
Turns out the C-suite loves shadow AI - Help Net Security
Workplace shadow AI use is rising as senior leaders bypass approved tools despite security and privacy concerns.
Part of the PlainSec briefing for 2026-05-29