All NewsEducationTVBrokers
Equities & FundsCrypto & Digital AssetsAI & TechnologyBusiness & CorporateUS Politics & PolicyGeopolitics & Global RiskMacro, Rates & FXCommodities & EnergyEuropean Politics & MarketsAsia-PacificReal Estate & Property
All NewsHome
← Back to AI & Technology

US Companies Grapple With Surge in AI-Driven Cyberattacks

Created at 4 Sep · 10:11 AM1 source↑ Market-relevant
IN SHORT

US companies are facing an increasing number of AI-driven cyberattacks and ransomware incidents. These attacks are stealing sensitive data and disrupting operations, prompting government and corporate responses to enhance cybersecurity measures.

Key Numbers

1.4 terabytesdata published in Nike ransomware attack
about $1.5 millionbitcoin ransom demand for Wynn Resorts hack
8 millionCrunchyroll support ticket records stolen
6.8 millionunique email addresses exposed from Crunchyroll
nearly 80 millionRockstar Games business records stolen
nearly 9,000institutions affected by Instructure/Canvas hack
57,554Blank Rome clients' personal information exposed
about 75,000systems compromised in Fortinet hacking campaign

Who's Involved

White House
launching coordination group for AI developers and critical infrastructure operators on cybersecurity
Nike
affected by ransomware attack with data theft
Bumble
hit by cyberattacks
Match Group
hit by cyberattacks
Crunchbase
hit by cyberattacks
Panera Bread
disclosed incident involving contact information
Wynn Resorts
experienced hack demanding bitcoin ransom
Stryker
disrupted by cyberattack claimed by Iranian-linked group
Crunchyroll
reported theft of personal data and support ticket records
Hasbro
investigating cybersecurity incident with network access
OpenAI
identified security issue with third-party developer tool
Take-Two Interactive
reported theft of Rockstar Games business records
West Pharmaceutical Services
disrupted by cyberattack involving data theft and system lockups
Instructure/Canvas
disrupted by hack exposing student and school data
Blank Rome
law firm affected by data exposure impacting clients
Carnival
experienced social-engineering attack compromising employee account
Novo Nordisk
reported copying of information from internal IT systems
iRhythm Holdings
reported threat actor obtained sensitive data
AdaptHealth
stated threat actor stole patient information and passwords
Fortinet
targeted in large-scale hacking campaign compromising systems
Coca-Cola Co
subsidiary fairlife suspended production due to cyberattack
Clover Health Investments
reported hacker accessed employee accounts
Abbott Laboratories
investigating unauthorized access to internal systems
Levi Strauss
reported unauthorized third party accessed systems and extracted information
Uber
Uber Freight unit investigating data security incident
US Companies Grapple With Surge in AI-Driven Cyberattacks

↳ Why This Matters

The escalating frequency and sophistication of AI-driven cyberattacks pose a significant threat to U.S. companies, potentially leading to data breaches, operational disruptions, and financial losses, necessitating enhanced cybersecurity measures and government-industry collaboration.

Key facts

  • Companies globally are facing a surge in AI-driven cyberattacks and ransomware.
  • The White House is coordinating AI developers and critical infrastructure operators on cybersecurity vulnerabilities.
  • Numerous US companies, including Nike, Bumble, Match Group, Wynn Resorts, Stryker, Hasbro, and Coca-Cola's fairlife, have reported cyber incidents this year.
  • Attacks have involved data theft, system disruptions, and ransom demands.
  • Some companies have taken systems offline or suspended operations due to these incidents.

Companies worldwide are facing a significant increase in AI-driven cyberattacks and ransomware incidents that compromise sensitive data and disrupt operations. In response, the White House announced in July the formation of a coordination group involving AI developers and critical infrastructure operators to share information on cybersecurity vulnerabilities identified by AI systems, though specific details have yet to be released.

Numerous U.S. companies have reported cyber incidents throughout the year. In January, Nike disclosed a ransomware attack where a group claimed to have published 1.4 terabytes of data. Bumble, Match Group, and Crunchbase were also hit by cyberattacks, while Panera Bread notified authorities of an incident involving contact information. Wynn Resorts reported a hack that obtained employee data, with attackers demanding approximately $1.5 million in bitcoin.

In March, Stryker experienced a cyberattack claimed by an Iranian-linked group that disrupted its global operations, and Crunchyroll reported the theft of personal data and millions of support ticket records. Hasbro investigated a cybersecurity incident that led to unauthorized network access and system outages, warning of potential order fulfillment delays. OpenAI identified a security issue stemming from a third-party developer tool but found no evidence of compromised user data. Take-Two Interactive's Rockstar Games reported the theft of nearly 80 million business records.

May saw several incidents, including West Pharmaceutical Services facing a cyberattack that disrupted manufacturing and logistics, and Instructure/Canvas reporting a hack that exposed student and school data from thousands of institutions. The law firm Blank Rome disclosed a data exposure affecting over 57,000 clients, and Carnival experienced a social-engineering attack that compromised an employee account. Novo Nordisk reported unauthorized actors copied information from its internal IT systems, including limited clinical trial patient data.

Further incidents in June included iRhythm Holdings reporting the theft of sensitive data and AdaptHealth stating patient information and passwords were stolen after a third-party contractor's account was compromised. Researchers noted a large-scale hacking campaign targeting Fortinet devices compromised approximately 75,000 systems globally. In July, Coca-Cola's subsidiary fairlife temporarily suspended U.S. production due to unauthorized system access, and Clover Health Investments reported a hacker accessed employee accounts. Abbott Laboratories is investigating unauthorized access to internal systems in its cancer diagnostics business. In August, Levi Strauss reported unauthorized access and extraction of corporate information, and Uber's Freight unit is investigating a data security incident.

Frequently asked questions

The White House announced the formation of a coordination group for AI developers and critical infrastructure operators to share information on cybersecurity vulnerabilities identified by AI systems.

Numerous companies including Nike, Bumble, Match Group, Crunchbase, Panera Bread, Wynn Resorts, Stryker, Crunchyroll, Hasbro, OpenAI, Take-Two Interactive, West Pharmaceutical Services, Instructure/Canvas, Blank Rome, Carnival, Novo Nordisk, iRhythm Holdings, AdaptHealth, Fortinet, Coca-Cola's fairlife, Clover Health Investments, Abbott Laboratories, Levi Strauss, and Uber have reported cyber incidents.

Incidents include ransomware attacks, data theft, unauthorized access to systems, disruption of operations, and demands for ransom payments.

What Happens Next

01The White House is expected to release further details on its AI developer and critical infrastructure coordination group.
02Companies are expected to continue enhancing their cybersecurity defenses against evolving threats.
CME Headlines
  • Risk Management and Monitoring Notice: Multi-Factor Authentication Updates - September 12
    3 Sep · 5:00 AM

How It Developed

Companies worldwide are experiencing a rise in AI-driven cyberattacks and ransomware.
The White House announced a coordination group for AI developers and critical infrastructure operators to share cybersecurity vulnerability information.
Nike reported a ransomware attack where 1.4 terabytes of data were published.
Bumble, Match Group, and Crunchbase were hit by cyberattacks, while Panera Bread disclosed an incident involving contact information.
Wynn Resorts reported a hack that obtained employee data, with attackers demanding a ransom in bitcoin.
Stryker experienced a cyberattack claimed by an Iranian-linked group that disrupted operations.
Crunchyroll reported the theft of personal data and millions of support ticket records.
Hasbro investigated a cybersecurity incident involving unauthorized network access, causing system outages and potential order fulfillment delays.

Sources

T1
Factbox-US companies face rise in cyber attacksReuters

Related Stories

OpenAI agents hijacked German website in undisclosed AI breakout
4 Sep · 10:06 AM
OpenAI's GPT-6 Astra Raises Safety Concerns Over Reduced Visibility
3 Sep · 6:05 PM
ByteDance Secures $29.6 Billion Loan for AI Initiatives
4 Sep · 11:22 AM
AI Data Center Boom Fuels U.S. Natural Gas Power Plant Expansion
4 Sep · 1:16 AM
BASF sues Apple over alleged patent infringement in face authentication
3 Sep · 7:28 PM