Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
ai-enabled-threat-activityai-platform-securitycritical-infrastructure-threatcloud-service-vulnerability

AI-Driven Threats and Security Risks in Enterprise Environments

Updated 3mo agoFirst seen Dec 8, 20255 sources

The rapid integration of artificial intelligence into enterprise environments is fundamentally reshaping the cybersecurity landscape, introducing new risks and operational challenges. Analyst firm Gartner has advised organizations to block the use of AI-powered browsers, such as Perplexity’s Comet and OpenAI’s ChatGPT Atlas, due to concerns that default settings prioritize user experience over security, potentially exposing sensitive data to cloud-based AI backends. Cloudflare has reported blocking over 416 billion AI bot scraping requests in five months, highlighting the scale at which AI-driven automation is targeting web content and raising concerns about the sustainability of current internet business models. Meanwhile, security leaders are increasing budgets and focusing on cloud and data security, but many still feel unprepared to address the evolving threat landscape, as AI accelerates both attack and defense capabilities.

Industry reports and expert commentary emphasize that attackers are leveraging AI and automation to industrialize cybercrime, enabling faster, more scalable, and more sophisticated attacks. The Fortinet Cyberthreat Predictions Report for 2026 notes that AI-powered agents are automating key stages of the attack chain, from credential theft to lateral movement and data monetization, while the proliferation of non-human identities (machine-to-machine interactions) is becoming a critical security concern. As organizations face mounting pressure to defend at machine speed, the need for robust identity management, automated threat intelligence, and board-level prioritization of cyber resilience is more urgent than ever, especially for critical infrastructure sectors where the consequences of a breach can be catastrophic.

Share:
AI-Driven Threats and Security Risks in Enterprise Environments
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

5 events from the most recent confirmed update back to the earliest known activity.

5 EVENTS
Dec 8, 20257mo ago

Wiz benchmark study finds rising security spend is not reducing risk

Wiz published a benchmark study showing that many CISOs are increasing cybersecurity budgets but still do not feel safer as cloud adoption, AI risk, and tool sprawl complicate defense. The study identified automation, visibility, and better tool integration as top priorities for the coming year.

Fortinet publishes 2026 cyberthreat predictions report

FortiGuard Labs released Fortinet’s 2026 Cyberthreat Predictions Report, warning that AI, automation, and specialized criminal supply chains are accelerating cybercrime and shrinking time from breach to impact to minutes. The report called for machine-speed defense and stronger management of non-human identities.

Gartner recommends organizations block agentic AI browsers

Gartner warned that AI-enabled browsers such as Perplexity Comet and OpenAI ChatGPT Atlas create significant security risks, including data exposure, credential loss, and harmful autonomous actions. It advised most organizations to block these browsers unless they complete strong risk assessments and apply mitigations.

Dec 5, 20257mo ago

Cloudflare says it blocked 416 billion AI bot requests in five months

By December 2025, Cloudflare CEO Matthew Prince said the company had fended off more than 416 billion AI bot scrape requests since the July rollout of its default blocking policy. He framed the volume as evidence of a major shift in the internet’s business model driven by AI scraping.

Jul 1, 20251y ago

Cloudflare launches default AI crawler blocking initiative

In July 2025, Cloudflare implemented its Content Independence Day initiative, blocking AI crawlers by default unless they pay for access. The move was aimed at limiting large-scale AI scraping of website content and changing how publishers control access to their data.

LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

23 LINKEDOpen in app
Malware
1 linked
Organizations
22 linked
OpenaiGartnerPerplexityAnthropicMicrosoft CorporationAmazonNational Cyber Security CentreAmazon Web ServicesMITREJaguar Land RoverCloudflareInterpolFortinetCrowdStrikeHarrodsNational Institute of Standards and TechnologyWizCrime StoppersOxford MartinGoogleMarks & SpencerCo-op
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.

AI-Driven Threats and Security Risks in Enterprise Environments | Mallory