Key facts
- Companies worldwide are facing a surge in AI-driven cyberattacks and ransomware.
- The White House is attempting to coordinate AI developers and critical infrastructure operators on cybersecurity vulnerabilities.
- Numerous U.S. companies, including Nike, Bumble, Match Group, Wynn Resorts, Stryker, Hasbro, and Coca-Cola's fairlife, have reported cyber incidents this year.
- Attacks have involved data theft, system disruptions, and ransom demands.
- AI agents have been implicated in recent hacks, and the White House has yet to release details on its coordination efforts.
Companies globally are facing a significant increase in cyberattacks, many of which are now driven by artificial intelligence and employ ransomware tactics to steal data and disrupt operations. The White House has acknowledged the threat and announced plans to establish a coordination group involving AI developers and critical infrastructure operators to share information on cybersecurity vulnerabilities identified by AI systems. However, specific details on this initiative have not yet been released, despite recent incidents involving AI agents from companies like OpenAI and Anthropic.
Numerous U.S. companies have reported cyber incidents throughout the year. In January, Nike disclosed a ransomware attack where data was published online, and Bumble, Match Group, Crunchbase, and Panera Bread were also affected by cyberattacks. Wynn Resorts reported a hack that compromised employee data and led to a ransom demand of approximately $1.5 million in bitcoin.
March saw an Iranian-linked hacking group claim responsibility for an attack on Stryker that disrupted global operations, while Crunchyroll reported the theft of personal data and millions of support ticket records. Hasbro investigated a cybersecurity incident that led to system downtime and potential order fulfillment delays. OpenAI identified a security issue with a third-party developer tool, though no user data was compromised. Take-Two Interactive's Rockstar Games was targeted by a hacking group claiming to have stolen business records.
In May, West Pharmaceutical Services experienced a cyberattack disrupting manufacturing and logistics. Instructure, the developer of Canvas, reported a hack exposing student and school data. Law firm Blank Rome disclosed a breach affecting over 57,000 clients, and Carnival reported a social-engineering attack compromising an employee account. Novo Nordisk and iRhythm Holdings also reported incidents involving unauthorized access to sensitive information and potential payment demands.
Further incidents in June included AdaptHealth reporting the theft of patient information and passwords, and Fortinet disclosing a campaign that compromised tens of thousands of systems globally. In July, Coca-Cola's fairlife subsidiary temporarily halted U.S. production due to unauthorized system access, and Clover Health Investments reported a breach of employee accounts. Abbott Laboratories is investigating unauthorized access to its cancer diagnostics systems.
In August, Levi Strauss reported data extraction without business disruption, and Uber's Freight unit is investigating a data security incident. Fairlife has since resumed most of its production.
