All NewsEducationTV
Equities & FundsCrypto & Digital AssetsAI & TechnologyBusiness & CorporateUS Politics & PolicyGeopolitics & Global RiskMacro, Rates & FXCommodities & EnergyEuropean Politics & MarketsAsia-PacificReal Estate & Property
Story archiveAll categories
← All Stories

US Companies Face Rising Tide of AI-Driven Cyberattacks

Created at 7 Aug · 11:54 AM1 source↑ Market-relevant
IN SHORT

US companies are experiencing a significant increase in cyberattacks, including ransomware, often driven by AI. These attacks target sensitive data and disrupt operations, prompting government coordination efforts and investigations into numerous incidents.

✉Newsletter

PiQ Daily

Pick your topics. Get only what matters, on your cadence.

Key Numbers

1.4 terabytesdata published by ransomware group from Nike
about $1.5 millionbitcoin ransom demanded from Wynn Resorts
8 millionsupport ticket records stolen from Crunchyroll
6.8 millionunique email addresses exposed from Crunchyroll
nearly 80 millionRockstar Games business records stolen
nearly 9,000institutions affected by Instructure/Canvas hack
57,554clients' personal information exposed from Blank Rome
about 75,000systems compromised in Fortinet hacking campaign

Who's Involved

White House
launching coordination for AI developers and critical infrastructure operators on cybersecurity
Nike
reported data theft by ransomware group
Bumble
hit by cyberattacks in January
Match Group
hit by cyberattacks in January
Crunchbase
hit by cyberattacks in January
Panera Bread
disclosed incident involving contact information
Wynn Resorts
reported hack obtaining employee data and ransom demand
Stryker
disrupted by cyberattack claimed by Iranian-linked group
Crunchyroll
reported theft of personal data and support ticket records
Hasbro
investigating cybersecurity incident impacting network access
OpenAI
identified security issue after third-party tool execution
Take-Two Interactive
reported Rockstar Games data breach
West Pharmaceutical Services
disrupted by cyberattack involving data theft
Instructure
developer of Canvas, experienced hack exposing student and school data
Blank Rome
law firm affected by cybercriminal group tricking an attorney
Carnival
reported social-engineering attack compromising employee account
Novo Nordisk
reported unauthorized actors copied information from internal systems
iRhythm Holdings
reported threat actor obtained sensitive data
AdaptHealth
reported threat actor stole patient information after compromising contractor account
Fortinet
targeted in large-scale hacking campaign affecting thousands of systems
Coca-Cola Co
subsidiary fairlife suspended production due to cyberattack
Clover Health Investments
health insurer investigating breach via social engineering
Abbott Laboratories
investigating unauthorized access to internal systems
Levi Strauss
reported corporate information extraction by third party
Google
reviewed data on ransom-seeking hackers targeting businesses
Reuters
reported on cyberattacks and ransom-seeking hackers
US Companies Face Rising Tide of AI-Driven Cyberattacks

↳ Why This Matters

The escalating frequency and sophistication of cyberattacks, particularly those driven by AI, pose significant risks to U.S. companies, potentially leading to data breaches, operational disruptions, financial losses, and reputational damage. These incidents underscore the critical need for enhanced cybersecurity measures and effective coordination between government and industry.

Key facts

  • Companies globally are facing an increasing number of AI-driven cyberattacks and ransomware incidents.
  • The White House is coordinating efforts between AI developers and critical infrastructure operators to share cybersecurity vulnerability information.
  • Numerous U.S. companies, including Nike, Bumble, Match Group, Wynn Resorts, Stryker, Hasbro, and Coca-Cola's fairlife, have reported cyber incidents this year.
  • Attacks have resulted in data theft, disruption of operations, and demands for ransom.
  • Some companies have taken systems offline and are investigating breaches, while others report no material impact on operations.

Companies across the United States are increasingly falling victim to sophisticated cyberattacks, including ransomware and data theft, often amplified by artificial intelligence. The White House has acknowledged the growing threat and stated it is coordinating efforts between AI developers and critical infrastructure operators to share information on cybersecurity vulnerabilities, though specific details have yet to be released.

Numerous U.S. companies have reported significant cyber incidents throughout the year. In January, Nike disclosed that a ransomware group published 1.4 terabytes of its data. Bumble, Match Group, Crunchbase, and Panera Bread also experienced cyberattacks, with Panera Bread notifying authorities about an incident involving contact information. Wynn Resorts reported a hack that compromised employee data and led to a ransom demand of approximately $1.5 million in bitcoin.

Further incidents include an attack on medical device maker Stryker in February, claimed by an Iranian-linked group, which disrupted global operations. In March, Crunchyroll reported the theft of personal data and millions of support ticket records, while toymaker Hasbro investigated unauthorized network access that caused system disruptions. Rockstar Games, a subsidiary of Take-Two Interactive, confirmed a breach involving stolen business records due to a third-party exploit.

In May, West Pharmaceutical Services experienced a cyberattack that disrupted manufacturing and logistics. Instructure, the developer of the Canvas learning management system, reported a hack exposing student and school data from thousands of institutions. Law firm Blank Rome disclosed a breach affecting client information, and cruise operator Carnival reported a social-engineering attack that compromised an employee account.

More recent incidents include Novo Nordisk reporting unauthorized access to internal systems containing limited clinical trial patient data, and iRhythm Holdings and AdaptHealth reporting data theft through social-engineering attacks. Researchers also identified a large-scale campaign targeting Fortinet devices, impacting thousands of systems globally. Coca-Cola's subsidiary fairlife temporarily halted U.S. production due to unauthorized system access. Health insurer Clover Health Investments and healthcare firm Abbott Laboratories are investigating breaches, while denim maker Levi Strauss reported corporate information extraction without operational disruption.

Frequently asked questions

The White House announced a coordination initiative for AI developers and critical infrastructure operators to share information on cybersecurity vulnerabilities identified by AI systems.

Numerous companies have reported incidents, including Nike, Bumble, Match Group, Crunchbase, Panera Bread, Wynn Resorts, Stryker, Crunchyroll, Hasbro, Take-Two Interactive (Rockstar Games), West Pharmaceutical Services, Instructure, Blank Rome, Carnival, Novo Nordisk, iRhythm Holdings, AdaptHealth, Fortinet, Coca-Cola (fairlife), Clover Health Investments, Abbott Laboratories, and Levi Strauss.

Attacks have targeted sensitive corporate data, employee information, customer contact details, subscription service records, business records, student and school data, client information, clinical trial patient data, proprietary information, patient health information, and insurance billing passwords.

Impacts include data theft, disruption of operations (manufacturing, logistics, order fulfillment), system lockups, and ransom demands. Some companies report no material impact on operations or financial results.

What Happens Next

01The White House is expected to release further details on its AI and cybersecurity coordination initiative.
02Companies affected by cyber incidents will continue investigations and implement remediation measures.
03The cybersecurity landscape will likely see ongoing evolution with the increasing use of AI in both attack and defense strategies.

Get the newsletter.

Pick the topics you actually care about. We'll email when there's news worth your time, on the cadence you choose. Cancel any time from your account.

Cadence

How It Developed

Companies worldwide are facing a surge in AI-driven cyberattacks and ransomware.
The White House announced a coordination initiative for AI developers and critical infrastructure operators to share cybersecurity vulnerability information.
Nike reported a ransomware group published 1.4 terabytes of its data in January.
Bumble, Match Group, Crunchbase, and Panera Bread experienced cyberattacks in late January.
Wynn Resorts reported a hack that obtained employee data, with attackers demanding a ransom equivalent to $1.5 million in bitcoin.
An Iranian-linked hacking group claimed responsibility for an attack on Stryker that disrupted global operations.
Crunchyroll reported hackers stole personal data and millions of support ticket records.
Hasbro investigated a cybersecurity incident involving unauthorized network access, causing system disruptions.

Sources

T1
Factbox-US companies face rise in cyber attacksReuters

Related Stories

Explainer: Who is liable when AI goes rogue? Lawyers see new risks
7 Aug · 10:09 AM
China's Kimi K3 AI model escapes security sandbox to find test answers
7 Aug · 8:39 AM
Retailers leverage AI for traffic but aim to retain customer data
7 Aug · 10:10 AM
Google: Hackers use phone calls to extort financial firms
6 Aug · 7:51 PM
China's Zbtlink suspends router sales over backdoor vulnerability
6 Aug · 6:23 PM