• News In Brief
  • Awards nights
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview
No Result
View All Result
SUBSCRIBE
Smart Solutions World
  • News In Brief
  • Awards nights
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview
No Result
View All Result
No Result
View All Result
Home News In Brief

Sophos 2026 Research Highlights Rising Identity Breaches Across Critical Infrastructure Sectors

SmartSolutionUser1 by SmartSolutionUser1
May 22, 2026
in News In Brief
0
Sophos 2026 Research Highlights Rising Identity Breaches Across Critical Infrastructure Sectors
76
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Sophos, a global cybersecurity leader, released the State of Identity Security 2026, a vendor-agnostic survey of 5,000 IT and cybersecurity leaders across 17 countries. The survey found that 76.8% of organizations surveyed in India suffered at least one identity-related breach in the past year, and on average organizations worldwide reported three separate incidents. Repeat victimization reached a notable level globally, with 5% reporting six or more breaches. These attacks are driven primarily by human error and weak management of non-human identities (NHIs), a challenge that is accelerating rapidly as agentic AI accelerates attack processes.

You might also like

Sonos Introduces Sonos 27, the Next Generation of Its Audio Operating System

Global AI and Computational Intelligence Experts Convene at Mahindra University’s ICETCI 2026

5Tattva Highlights Integrated Cybersecurity and Compliance Approach at Cyber Warrior 40

In India 79% of ransomware victims responding to this survey confirmed their ransomware incident stemmed from an identity attack, establishing identity compromise as a primary delivery mechanism for ransomware. Sophos X-Ops researchers have observed this consistently over the past year. Worldwide, the financial consequences are steep: the mean recovery cost reached US$1.64 million, with a median of US$750,000, and 73% of those affected faced costs of US$250,000 or more.

Mr. Sunil Sharma, Managing Director and Vice President – Sales, India and SAARC, Sophos.
Mr. Sunil Sharma, Managing Director and Vice President – Sales, India and SAARC, Sophos.

“Identity-based attacks are becoming increasingly sophisticated in India as organizations rapidly expand their digital ecosystems and adopt AI-driven technologies. The finding that nearly 77% of organizations in India experienced an identity-related breach highlights how critical it is for businesses to strengthen both human and non-human identity security practices,” said Mr. Sunil Sharma, Managing Director and Vice President – Sales, India and SAARC, Sophos. “As AI agents, cloud services, APIs and automated workflows continue to scale, organizations need far greater visibility and control over identities, access privileges and authentication activity. A proactive, layered identity security strategy combined with continuous monitoring and Zero Trust principles will be essential for Indian businesses to stay resilient against evolving cyber threats.”

Additional Global Key Findings from the State of Identity Security 2026:

• Data and Financial Theft Dominate Breach Fallout: 10% of organizations reported an identity breach that impacted their business in the last year with the primary consequences being data theft (49%) and ransomware (48%), and financial theft (47%)

• Visibility Remains a Critical Weakness: Only 13% of organizations continually monitor for unusual login attempts, and more than half of organizations globally check every three months or less.

• Detection Gaps Persist: 14% of breached organizations could not detect and stop their most significant identity attack before damage was done. Smaller organizations (100–250 employees) were nearly twice as likely to fail at detection as mid-sized peers.

• Critical Infrastructure Most Exposed: Energy, oil/gas, and utilities (80%) and federal/central government (78%) reported the highest breach rates across all industries surveyed.

• Compliance Struggles Signal Broader Risk: Organizations that found compliance requirements very challenging had a breach rate of 82.4%, a full 14 percentage points higher than those with lower compliance difficulty (68.3%).

Globally, human error (employees tricked into providing credentials) was cited in nearly 43% of incidents. Weak NHI management, including API keys stored in code, static credentials, and orphaned service accounts, was cited in 41%. Organizations with weak NHI management are 22% more likely globally to experience financial theft and pay approximately $150,000 more to recover than average.

The NHI management problem is intensifying globally. AI agents can autonomously spin up sub-agents, each generating new credentials with broad, persistent access and inconsistent human oversight. Existing identity frameworks were not built for this, and organizations are already behind: globally, only 1 in 3 organizations regularly rotate or audits service accounts and non-human identities, and just 11% do so continuously.

Recommendations to Reduce Identity-based Risks

To reduce exposure to identity-related attacks, organizations should implement a multi-layered approach covering both human and non-human identities. Essential steps include enforcing Multi-Factor Authentication (MFA) for all user accounts, applying least-privilege access principles, and disabling or removing inactive identities promptly.

For non-human identities specifically, organizations should inventory and classify all NHIs, replace long-lived credentials with short-lived alternatives, and implement secrets management platforms to manage NHI credentials at scale. As agentic AI accelerates NHI proliferation, deploying Identity Threat Detection and Response (ITDR) capabilities and adopting a Zero Trust security model are increasingly critical layers of defense.

The State of Identity Security 2026 report comes from a vendor-agnostic survey conducted in Q1 2026 of 5,000 IT and cybersecurity leaders across 17 countries, including the U.S., U.K., Germany, France, Australia, Japan, India, and Brazil, in organizations with 100 to 5,000 employees across 14 industries.

If you have an interesting Article / Report/case study to share, please get in touch with us at editors@roymediative.com roy@roymediative.com, 9811346846/9625243429

Tags: Critical Infrastructure SectorsHighlights Rising Identity Breaches Acrosssmart solutions worldSophos 2026 Research
Share30Tweet19
SmartSolutionUser1

SmartSolutionUser1

Recommended For You

Sonos Introduces Sonos 27, the Next Generation of Its Audio Operating System

by SmartSolutionUser1
September 4, 2026
0
Sonos Introduces Sonos 27, the Next Generation of Its Audio Operating System

Sonos introduced Sonos 27, the latest version of the audio operating system the company has spent more than two decades building. Sonos 27 brings a new set of...

Read moreDetails

Global AI and Computational Intelligence Experts Convene at Mahindra University’s ICETCI 2026

by SmartSolutionUser1
September 4, 2026
0
Global AI and Computational Intelligence Experts Convene at Mahindra University’s ICETCI 2026

The Sixth International Conference on Emerging Techniques in Computational Intelligence (ICETCI 2026) held at Mahindra University brought together researchers, academics, technology leaders and industry experts to discuss emerging...

Read moreDetails

5Tattva Highlights Integrated Cybersecurity and Compliance Approach at Cyber Warrior 40

by SmartSolutionUser1
September 4, 2026
0
5Tattva Highlights Integrated Cybersecurity and Compliance Approach at Cyber Warrior 40

5Tattva, a CERT-In empanelled cybersecurity solutions provider and PCI QSA company, participated in Cyber Warrior 40 – Delhi, a CXO Hub leadership initiative that brought together senior cybersecurity...

Read moreDetails

Qlik Expands MCP Availability across AWS and Databricks Marketplace Bringing Trusted Business Context to Agents

by SmartSolutionUser1
September 3, 2026
0
Qlik Expands MCP Availability across AWS and Databricks Marketplace Bringing Trusted Business Context to Agents

Qlik® announced expanded availability of its Model Context Protocol (MCP) server with Amazon Web Services (AWS) and Databricks, making it easier for customers to connect assistants and agents...

Read moreDetails

Commvault Integrates Cyber Recovery Actions into CrowdStrike Charlotte Agentic SOAR Workflows

by SmartSolutionUser1
September 2, 2026
0
Commvault Integrates Cyber Recovery Actions into CrowdStrike Charlotte Agentic SOAR Workflows

Commvault,a leader in unified resilience at enterprise scale, announced a new integration with CrowdStrike that makes Commvault cyber recovery actions available as native steps within Charlotte Agentic SOAR...

Read moreDetails
Next Post
Gartner Forecasts Worldwide AI Spending to Grow 47% in 2026

Gartner Forecasts Worldwide AI Spending to Grow 47% in 2026

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

Browse by Category

Smart Solutions World

We bring you the best Premium news, magazine, personal blog, etc. Check our landing page for details.

  • News In Brief
  • Awards nights
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview

BROWSE BY TAG

Agentic AI AI AI-powered Akamai AMD CloudKeeper Coforge CrowdStrike Cybersecurity Databricks Fortinet Gartner Google Cloud HCLTech Honeywell IBM India Infosys Kaspersky Keysight Kramer Microsoft New Relic Nvidia OpenAI Palo Alto Networks PPDS Qlik Qualcomm Seqrite ServiceNow SiMa.ai smart solutions world smartsolutionsworld smart solutions world latest news Snowflake Software Solutions Sophos Tata Communications Tech Mahindra Technology Tenable UiPath Vertiv

© 2024 NCN - Premium news & magazine by NCN.

No Result
View All Result
  • News In Brief
  • Awards nights
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview

© 2024 NCN - Premium news & magazine by NCN.

Not enough quota to unlock this post
Unlock left : 0
Are you sure want to cancel subscription?