Survey: 60 Percent of Organizations Using AI in IT Infrastructure

Netwrix, a cybersecurity provider focused on data and identity threats, today announced the release of its annual global 2025 Cybersecurity Trends Report based on a global survey of 2,150 IT and security professionals from 121 countries. It reveals that 60% of organizations are already using artificial intelligence (AI) in their IT infrastructure and 30% are considering implementing AI.

Research shows that AI has impacted organizations’ security posture. 37% of respondents say that new AI-driven threats forced them to adjust their security approach, 30% report the emergence of a new attack surface due to the use of AI by their business users, and 29% struggle with compliance since auditors require proof of data security and privacy in AI-based systems.

“Today’s AI-driven business processes are vulnerable to a host of new threats that security teams must be prepared for,” says Jeff Warren, Chief Product Officer at Netwrix. “The data shows a rise in security incidents that are identity-driven and infrastructure-focused. Indeed, identity-driven attacks are likely to dominate even more, with crafty new ways to bypass MFA, abuse of machine-to-machine identities like service accounts and tokens, AI-powered deepfake voice and video phishing, and even synthetic identity creation at scale.”

“AI workloads trained on proprietary enterprise data represents intellectual property and are attractive targets for cybercriminals,” says Dirk Schrader, VP of Security Research at Netwrix. “It is important to secure data across the entire AI lifecycle, from ingestion to model training to monitoring API endpoints for any signs of prompt injection, abuse or model leakage. Finally, security teams should apply Zero Trust principles in the world of AI: assume every interaction with the AI system, internal or external, could be malicious, and enforce strict authentication, least privilege access and continuous monitoring.”

In this year’s survey, we investigated incidents that demanded a dedicated response from security teams, rather than those that were automatically detected and remediated. Based on this definition, 51% of respondents confirmed experiencing a security incident in the past 12 months. The number of organizations reporting no impact from security incidents is shrinking rapidly, from 45% in 2023 to just 36% in 2025. 75% of respondents reported financial damage due to attacks — a significant increase from 60% in 2024. The number of organizations estimating their damage at $200,000 or more nearly doubled, from 7% to 13%.

“Direct breach costs are well understood, but more subtle costs include intellectual property loss, product development delays, and reputational damage, which are all hard to quantify but can be devastating, especially if innovation is essential to the business model,” added Warren. “Breaches damage brand trust, and customer churn often peaks when the time comes to renew the contract — well after the immediate crisis seems resolved.”

For more information about the most common types of security incidents, organizational IT priorities, cyber insurance trends and more, download the report here.

Featured

  • Security Today Announces 2025 CyberSecured Award Winners

    Security Today is pleased to announce the 2025 CyberSecured Awards winners. Sixteen companies are being recognized this year for their network products and other cybersecurity initiatives that secure our world today. Read Now

  • Empowering and Securing a Mobile Workforce

    What happens when technology lets you work anywhere – but exposes you to security threats everywhere? This is the reality of modern work. No longer tethered to desks, work happens everywhere – in the office, from home, on the road, and in countless locations in between. Read Now

  • TSA Introduces New $45 Fee Option for Travelers Without REAL ID Starting February 1

    The Transportation Security Administration (TSA) announced today that it will refer all passengers who do not present an acceptable form of ID and still want to fly an option to pay a $45 fee to use a modernized alternative identity verification system, TSA Confirm.ID, to establish identity at security checkpoints beginning on February 1, 2026. Read Now

  • The Evolution of IP Camera Intelligence

    As the 30th anniversary of the IP camera approaches in 2026, it is worth reflecting on how far we have come. The first network camera, launched in 1996, delivered one frame every 17 seconds—not impressive by today’s standards, but groundbreaking at the time. It did something that no analog system could: transmit video over a standard IP network. Read Now

  • From Surveillance to Intelligence

    Years ago, it would have been significantly more expensive to run an analytic like that — requiring a custom-built solution with burdensome infrastructure demands — but modern edge devices have made it accessible to everyone. It also saves time, which is a critical factor if a missing child is involved. Video compression technology has played a critical role as well. Over the years, significant advancements have been made in video coding standards — including H.263, MPEG formats, and H.264—alongside compression optimization technologies developed by IP video manufacturers to improve efficiency without sacrificing quality. The open-source AV1 codec developed by the Alliance for Open Media—a consortium including Google, Netflix, Microsoft, Amazon and others — is already the preferred decoder for cloud-based applications, and is quickly becoming the standard for video compression of all types. Read Now

New Products

  • Luma x20

    Luma x20

    Snap One has announced its popular Luma x20 family of surveillance products now offers even greater security and privacy for home and business owners across the globe by giving them full control over integrators’ system access to view live and recorded video. According to Snap One Product Manager Derek Webb, the new “customer handoff” feature provides enhanced user control after initial installation, allowing the owners to have total privacy while also making it easy to reinstate integrator access when maintenance or assistance is required. This new feature is now available to all Luma x20 users globally. “The Luma x20 family of surveillance solutions provides excellent image and audio capture, and with the new customer handoff feature, it now offers absolute privacy for camera feeds and recordings,” Webb said. “With notifications and integrator access controlled through the powerful OvrC remote system management platform, it’s easy for integrators to give their clients full control of their footage and then to get temporary access from the client for any troubleshooting needs.”

  • QCS7230 System-on-Chip (SoC)

    QCS7230 System-on-Chip (SoC)

    The latest Qualcomm® Vision Intelligence Platform offers next-generation smart camera IoT solutions to improve safety and security across enterprises, cities and spaces. The Vision Intelligence Platform was expanded in March 2022 with the introduction of the QCS7230 System-on-Chip (SoC), which delivers superior artificial intelligence (AI) inferencing at the edge.

  • Camden CV-7600 High Security Card Readers

    Camden CV-7600 High Security Card Readers

    Camden Door Controls has relaunched its CV-7600 card readers in response to growing market demand for a more secure alternative to standard proximity credentials that can be easily cloned. CV-7600 readers support MIFARE DESFire EV1 & EV2 encryption technology credentials, making them virtually clone-proof and highly secure.