惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Apple Machine Learning Research
Apple Machine Learning Research
M
MIT News - Artificial intelligence
罗磊的独立博客
博客园 - 【当耐特】
A
About on SuperTechFans
Last Week in AI
Last Week in AI
雷峰网
雷峰网
IT之家
IT之家
aimingoo的专栏
aimingoo的专栏
H
Hackread – Cybersecurity News, Data Breaches, AI and More
博客园_首页
博客园 - 叶小钗
Microsoft Azure Blog
Microsoft Azure Blog
博客园 - Franky
J
Java Code Geeks
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
D
Docker
Engineering at Meta
Engineering at Meta
B
Blog RSS Feed
The Cloudflare Blog
大猫的无限游戏
大猫的无限游戏
阮一峰的网络日志
阮一峰的网络日志
S
SegmentFault 最新的问题
Recent Announcements
Recent Announcements

Cybersecurity Dive - Latest News

Dozens of Red Hat npm packages targeted in supply chain attack Turning tension into collaboration: How CIOs and CISOs can lead together Anthropic shares Mythos with 150 more organizations, including critical infrastructure operators Without strong governance, companies put credit ratings at risk in AI era CISA adds critical Palo Alto Networks firewall flaw to KEV as company, researchers warn of exploitation How Canva scaled to 260+M users while elevating security and productivity Top 4 data security best practices for the AI-enabled enterprise CISA urges security teams to check for software development compromises How CISOs can manage sovereign-cloud security risks IBM’s new $5B initiative will help enterprises rapidly patch open-source vulnerabilities Enterprise data is creeping its way into shadow AI tools Coordinated operation takes down Glassworm botnet Leading AI models are more vulnerable to malicious prompts than vendors claim Iranian government, not hacktivist group, breached LA Metro system, security firm says FBI warns about PhaaS platform used to access Microsoft 365 environments Iran-linked hackers target key US, allied sectors with sophisticated spear-phishing messages New York regulator calls for additional cyber mitigation amid heightened threat environment CISA asks cybersecurity community to alert it to vulnerability exploitation Grafana Labs links GitHub environment breach to TanStack npm supply chain attack 7-Eleven hit by data breach Microsoft disrupts cybercrime operation that hid behind legitimate software Compromised coding tool helped hackers breach thousands of GitHub repositories Telecom sector launches its own private ISAC Patch bypass allows hackers to exploit prior flaw in SonicWall SSL-VPN Grafana Labs says hacker gained access to codebase through leaked token How a government contest launched a revolution in AI-based bug hunting Attackers exploit critical flaw in Cisco Catalyst SD-WAN Controller MSPs need AI to fight AI-fueled cyberthreats: Guardz More money is going to physical security, but it’s often CISOs that oversee it: EY Frontier AI models reap rapid discovery of security vulnerabilities
AI is transforming enterprise data risk. Here’s how secur...
Microsoft · 2026-06-22 · via Cybersecurity Dive - Latest News

Generative AI is rewriting the rules of enterprise productivity — and the rules of enterprise risk. As AI tools move from pilot programs into core workflows, security teams face a question that wasn't on most roadmaps two years ago: How do you enable AI-powered innovation while helping protect sensitive data in the process?

A report from Microsoft offers a detailed look at how the industry is answering that question. The 2026 Microsoft Data Security Index — a Microsoft-produced global research report — draws on responses from more than 1,700 security leaders worldwide to identify the priorities separating organizations that are getting ahead of AI risk from those still playing catch-up.

Three imperatives emerged in the report.

Imperative 1: Break down the silos

For many security teams, one of the biggest obstacles to effective data governance isn't a lack of tools — it's too many of them. Security leaders in the report cited poor integration, lack of a unified view across environments and fragmented dashboards as their top barriers to visibility and control. With AI accelerating the volume and velocity of data flows, those blind spots are growing harder to ignore.

“We’re trying to use fewer vendors. If we need 15 tools, we’d rather not manage 15 vendor solutions. We’d prefer to get that down to five, with each vendor handling three tools.”

— Global information security director, hospitality and travel industry

According to the report, surveyed organizations are responding by consolidating onto unified platforms that provide continuous oversight across cloud, SaaS and on-premises environments. More than 80% of surveyed organizations are now implementing or developing Data Security Posture Management (DSPM) strategies — a discipline that helps teams discover, classify and protect sensitive data at scale. Microsoft Purview provides this capability, integrating data discovery, classification and protection in a single platform built to keep pace with AI-powered data environments.

Imperative 2: Build AI-specific controls — now

Generative AI tools are already changing the shape of security incidents. According to the report, 32% of surveyed organizations have experienced data security incidents involving generative AI tools. The response has been swift: nearly half (47%) of surveyed security leaders are now implementing generative AI-specific controls, up 8 percentage points from the prior year.

The goal isn’t to block AI adoption — it’s to help ensure both unsanctioned and sanctioned AI tools are used responsibly. That means monitoring how data is accessed and shared in AI-powered workflows and enforcing guardrails that help reduce unauthorized exposure without throttling productivity.

Microsoft Purview Data Loss Prevention and Microsoft Defender for Cloud Apps help organizations identify, investigate and respond to risky AI behaviors — flagging policy violations, anomalous usage patterns and unsafe outputs as they emerge.

Imperative 3: Use AI to defend against AI-era threats

Perhaps the most significant shift in the report: surveyed organizations aren’t treating AI only as a risk to manage. They’re deploying it as a security asset. 82% of surveyed organizations now have plans to embed generative AI into their data security operations — up from 64% just one year ago.

From discovering sensitive data and detecting critical risks to investigating and triaging incidents, as well as refining policies, generative AI is being deployed for both proactive and reactive use cases at scale. The report explores how AI is changing the day-to-day operations across security teams, including the emergence of AI-assisted automation and agents.

“Our generative AI systems are constantly observing, learning and making recommendations for modifications with far more data than would be possible with any kind of manual or quasi-manual process.”

— Director of IT, energy industry

Microsoft Security Copilot, embedded across Microsoft Sentinel, Microsoft Purview, Microsoft Entra and Microsoft Defender, puts this capability into practice — automating threat detection, helping to accelerate incident investigations and helping security teams stay ahead of an evolving threat landscape without sacrificing human oversight.

What comes next

As organizations confront the challenges of data security in the age of AI, the 2026 Data Security Index report offers three clear imperatives: unifying data security, increasing generative AI oversight and using AI solutions to improve data security effectiveness.

Download the full 2026 Microsoft Data Security Index — a Microsoft-produced global research report — for global trend data, regional breakdowns, detailed metrics and actionable guidance on building a security-first approach to AI.