• About
  • Subscribe
  • Contact
Friday, May 22, 2026
  • Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
FutureCISO
No Result
View All Result
Home Technology Data Protection

71% of organisations hit by identity breaches

by FutureCISO Editors
May 22, 2026
71% of organisations hit by identity breaches

Photo by Kaique Rocha from Pexels: https://www.pexels.com/photo/person-taking-a-photo-using-iphone-36675/

Share on FacebookShare on Twitter

The State of Identity Security 2026 report warns that identity compromise remains the dominant route for cyberattacks and ransomware.

The study found that 71% of organisations suffered at least one identity-related breach in the past year, with respondents reporting three separate incidents on average. Repeat victimisation is also rising, with 5% of organisations reporting six or more identity breaches.

What were the consequences of this identity breach for your organization? Base: organization could not stop the security breach. n=510
(all breaches), n=207 (breaches involving NHIs)

Source: State of Identity Security 2026, Sophos

Sophos attributes most attacks to a combination of human error and poor management of non-human identities (NHIs)—including service accounts, API keys and other machine-to-machine credentials. The problem is intensifying as agentic AI accelerates attack workflows, potentially granting or scaling privileges faster than security teams can track and revoke access.

A critical finding links identity attacks to ransomware outcomes. Two thirds of ransomware victims (67%) responding to the survey said their ransomware incident stemmed from an identity attack, reinforcing identity compromise as a primary ransomware delivery mechanism.

The financial impact is substantial: the report cites a mean recovery cost of $1.64 million and a median of $750,000, with 73% of affected organisations facing costs of $250,000 or more.

“Identity has become the primary attack surface in modern cybersecurity, and this data shows most organizations are losing ground,” said Ross McKerchar, chief information security officer at Sophos.

He added that the non-human identity problem is “particularly urgent”, warning that AI agents are being granted privileges faster than security teams can monitor them.

Related:  APAC's firms expose customers to email risks

Beyond headline breach rates, the report highlights ongoing operational weaknesses. Only 24% of organisations continually monitor for unusual login attempts, while more than half check no more often than every three months. Detection gaps persist: 14% of breached organisations were unable to detect and stop their most significant identity attack before damage occurred.

Sophos also notes that compliance difficulty correlates with higher breach rates, and that energy, oil/gas and utilities (80%) as well as federal/central government (78%) recorded the highest breach exposure across surveyed sectors.

To reduce identity-based risks, Sophos recommends a multi-layered approach: enforce MFA for all users, apply least-privilege access, rapidly remove inactive identities, and harden NHI estates through inventory and classification, short-lived credentials, secrets management, identity threat detection and response (ITDR), and Zero Trust controls.

Tags: identity securityidentity threat detection and responsenon-human identity securityransomwareSophos

FutureCISO Editors

No Result
View All Result

Recent Posts

  • 71% of organisations hit by identity breaches
  • ANZ organisations scale Agentic AI—but guardrails lag behind
  • AI and PhaaS turn inbox attacks into identity breaches
  • Consent-aware clean rooms move from collection to activation
  • AI confidence rising, but cyber insurance and response plans lag

Categories

  • AI and Machine Learning
  • Artificial Intelligence
  • Blogs
  • CHRO
  • CISO
  • CISO strategies
  • Cloud, Platforms and Ecosystems
  • Cloud, Virtualization, Operating Environments and Middleware
  • Compliance and Governance
  • Compliance and Governance
  • Compliance and Governance|People
  • Compliance and Governance|Technology
  • Computer, Storage, Networks, Connectivity
  • Culture and Behaviour
  • Culture and Behaviour|People
  • Cyber risk management
  • Cyber risk management
  • Cyberattacks and data breaches
  • Cybersecurity careers
  • Cybersecurity careers
  • Cybersecurity operations
  • Cybersecurity operations
  • Data Protection
  • Data Protection
  • Endpoint Security
  • Future Workplace
  • FutureCISO
  • Governance, Risk and Compliance
  • Governance, Standards and Regulations
  • HR, education and Training
  • Incident Response
  • IT-OT integration
  • Network Security
  • Operations
  • People
  • Process
  • Remote work
  • Resources
  • Risk Management
  • Risk Management
  • Security
  • Tactics and Strategies
  • Technology
  • Training and awarenes
  • Videos
  • Vulnerabilities and threats
  • Vulnerabilities and threats
  • Webcasts/Podcasts
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

[wpli_login_link]

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
  • Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl