All NewsEducationTV
Equities & FundsCrypto & Digital AssetsAI & TechnologyBusiness & CorporateUS Politics & PolicyGeopolitics & Global RiskMacro, Rates & FXCommodities & EnergyEuropean Politics & MarketsAsia-PacificReal Estate & Property
Story archiveAll categories
← All Stories

US Companies Face Surge in AI-Driven Cyberattacks

Created at 27 Jul · 12:31 PM1 source↑ Market-relevant
IN SHORT

US companies are experiencing a significant increase in AI-driven cyberattacks and ransomware incidents. These attacks are stealing sensitive data and disrupting operations, prompting government and corporate responses to enhance cybersecurity measures.

✉Newsletter

PiQ Daily

Pick your topics. Get only what matters, on your cadence.

Key Numbers

1.4 terabytesdata published by ransomware group from Nike
about $1.5 millionbitcoin ransom demand for Wynn Resorts hack
8 millionCrunchyroll support ticket records stolen
6.8 millionunique email addresses exposed from Crunchyroll
nearly 80 millionRockstar Games business records claimed stolen
9,000institutions affected by Instructure/Canvas hack
57,554clients' personal information exposed from Blank Rome
75,000systems compromised in Fortinet campaign

Who's Involved

White House
launching a coordination group for AI cybersecurity
Nike
affected by ransomware attack and data publication
Bumble
hit by cyberattacks in January
Match Group
hit by cyberattacks in January
Crunchbase
hit by cyberattacks in January
Panera Bread
disclosed a cyber incident
Wynn Resorts
experienced a hack involving employee data
Stryker
disrupted by an Iranian-linked hacking group
Crunchyroll
suffered a data breach of personal information
Hasbro
investigating a cybersecurity incident
OpenAI
identified a security issue with a third-party tool
Take-Two Interactive
reported data theft affecting Rockstar Games
West Pharmaceutical Services
disrupted by a cyberattack involving data theft
Instructure/Canvas
experienced a hack exposing student and school data
Blank Rome
law firm affected by a cybercriminal group
Carnival
reported a social-engineering attack
Novo Nordisk
experienced unauthorized access to IT systems
iRhythm Holdings
suffered data theft via social-engineering attack
AdaptHealth
compromised by a threat actor via a contractor
Fortinet
firewall and VPN devices targeted in hacking campaign
Coca-Cola Co
subsidiary fairlife suspended production due to cyber incident
Clover Health Investments
experienced unauthorized access to employee accounts
Abbott Laboratories
investigating unauthorized access to internal systems
US Companies Face Surge in AI-Driven Cyberattacks

↳ Why This Matters

The increasing sophistication and frequency of AI-driven cyberattacks pose a significant threat to businesses, potentially leading to data breaches, operational disruptions, and financial losses. The coordinated response from the White House and companies highlights the growing concern over cybersecurity in the age of advanced AI.

Key facts

  • Companies globally are experiencing a surge in AI-driven cyberattacks and ransomware.
  • The White House is establishing a coordination group to address AI-identified cybersecurity vulnerabilities.
  • Numerous US companies, including Nike, Bumble, Match Group, Wynn Resorts, Stryker, Hasbro, and Coca-Cola's fairlife, have reported cyber incidents this year.
  • Attacks have involved data theft, system disruptions, ransomware demands, and exposure of sensitive personal and patient information.
  • Some companies have taken systems offline or experienced production delays as a result of these incidents.

Companies worldwide are facing an escalating wave of AI-driven cyberattacks and ransomware incidents that are stealing sensitive data and disrupting business operations. In response, the White House has initiated a coordination group comprising AI developers and critical infrastructure operators to enhance information sharing on cybersecurity vulnerabilities and to coordinate responses.

This year has seen numerous U.S. companies report or be affected by cyber incidents. In January, Nike disclosed that a ransomware group published 1.4 terabytes of its data. The same month, Bumble, Match Group, and Crunchbase were reportedly hit by cyberattacks, while Panera Bread notified authorities of an incident involving contact information.

February saw Wynn Resorts report a hack that obtained employee data, with attackers demanding approximately $1.5 million in bitcoin. In March, Stryker experienced disruptions to its global operations, including order processing and manufacturing, following a cyberattack claimed by an Iranian-linked group. Crunchyroll reported that hackers stole personal data and millions of support ticket records. Hasbro investigated unauthorized access to its network, leading to system outages and potential order fulfillment delays.

OpenAI identified a security issue related to a third-party developer tool but stated no user data was compromised. Take-Two Interactive's Rockstar Games claimed hackers stole business records by exploiting a third-party breach. West Pharmaceutical Services faced disruptions to manufacturing and logistics due to a cyberattack involving data theft. Instructure, the developer of Canvas, reported a hack that exposed data from thousands of educational institutions.

In May, law firm Blank Rome disclosed that a cybercriminal group exposed personal information of over 57,000 clients. Carnival reported a social-engineering attack compromised an employee account, exposing personal details. Novo Nordisk stated unauthorized actors copied information from its internal IT systems, including limited clinical trial patient data. iRhythm Holdings and AdaptHealth also reported data theft and system compromises resulting from social-engineering attacks on third-party applications or contractors.

In June, researchers revealed a large-scale campaign targeting Fortinet devices compromised about 75,000 systems globally. Coca-Cola's subsidiary fairlife temporarily suspended U.S. production due to unauthorized system access, though most operations have since resumed. Clover Health Investments and Abbott Laboratories are investigating incidents involving unauthorized access to employee accounts and internal systems, respectively, with both expecting minimal operational impact.

Frequently asked questions

The White House is launching a coordination group to bring together AI developers and critical infrastructure operators to share information on cybersecurity vulnerabilities and coordinate responses.

Companies such as Nike, Bumble, Match Group, Crunchbase, Panera Bread, Wynn Resorts, Stryker, Crunchyroll, Hasbro, OpenAI, Take-Two Interactive, West Pharmaceutical Services, Instructure/Canvas, Blank Rome, Carnival, Novo Nordisk, iRhythm Holdings, AdaptHealth, Fortinet, Coca-Cola's fairlife, Clover Health Investments, and Abbott Laboratories have reported incidents.

Companies are facing ransomware attacks, data theft, system lockups, unauthorized access to networks and systems, and social-engineering attacks.

The attacks have led to the publication of sensitive data, disruption of operations, manufacturing and logistics delays, and potential exposure of customer and patient information.

What Happens Next

01The White House coordination group will share information on AI-identified cybersecurity vulnerabilities.
02The coordination group will work to align responses to identified threats.
03Companies will continue to investigate and report cyber incidents as they occur.

Get the newsletter.

Pick the topics you actually care about. We'll email when there's news worth your time, on the cadence you choose. Cancel any time from your account.

Cadence
CME Headlines
  • Is AI Making Inflation Better or Worse?
    22 Jul · 3:26 PM

How It Developed

Companies worldwide are facing a rise in AI-driven cyberattacks and ransomware.
The White House is forming a coordination group with AI developers and critical infrastructure operators.
Nike reported a ransomware group published 1.4 terabytes of its data in January.
Bumble, Match Group, Crunchbase, and Panera Bread experienced cyberattacks in January.
Wynn Resorts disclosed a hack involving employee data and a ransom demand of approximately $1.5 million in bitcoin.
An Iranian-linked hacking group claimed responsibility for a cyberattack on Stryker in March, disrupting operations.
Crunchyroll reported hackers stole personal data and millions of support ticket records.
Hasbro investigated a cybersecurity incident involving unauthorized network access, causing system outages.

Sources

T1
Factbox-US companies face rise in cyber attacksReuters

Related Stories

Nvidia forms 37-member AI security alliance without OpenAI, Anthropic or Google
27 Jul · 1:31 PM
China Accuses US of AI Hegemonism, Threatens Countermeasures
27 Jul · 12:20 PM
Nvidia forms AI security alliance after OpenAI hack on Hugging Face
26 Jul · 4:56 PM
Nvidia in talks for $250B data center financing for OpenAI
26 Jul · 11:41 PM
AI Incident Recalls Sci-Fi Fears of Rogue Systems
26 Jul · 4:21 PM