© Copyright Acquisition International 2026 - All Rights Reserved.

Article Image - One in Three Enterprise Devices Lack Encryption as Shadow AI Runs Wild 
Posted 1st October 2025

One in Three Enterprise Devices Lack Encryption as Shadow AI Runs Wild 

Over one in three (35)% of enterprise PCs are not encrypted, despite standard security policies, amid millions of visits to generative AI platforms such as DeepSeek, often without formal approval or monitoring. 

Mouse Scroll AnimationScroll to keep reading

Let us help promote your business to a wider following.

One in Three Enterprise Devices Lack Encryption as Shadow AI Runs Wild 
Cybersecurity and business data management concept, Businessman security encryption on tablets secure internet access for personal big data

Over one in three (35)% of enterprise PCs are not encrypted, despite standard security policies, amid millions of visits to generative AI platforms such as DeepSeek, often without formal approval or monitoring. 

Without encryption, sensitive data on these devices is at greater risk of being exposed via these unsanctioned tools. This surge in Shadow AI activity heightens the risk of data leakage, governance failures, and serious compliance breaches for IT leaders. 

The findings were revealed in Absolute Security’s Cyber Resilience Risk Index 2025, analysing 15 million enterprise PCs for gaps in endpoint protection, device compliance and AI readiness.By assessing key metrics, the analysis pinpointed the primary barriers to achieving Extreme Resilience, having full visibility into the inherent risks in every layer of security architecture, and proposed actionable strategies to address these gaps. 

While a survey of 500 U.S.-based CISOs from Absolute Security, via independent polling agency Censuswide, found that 44% of security leaders are not aware of how widely generative AI tools are in use across their organization, or what information users are uploading onto these. 

As a result, 44% have stopped using AI due to fears of a cyber breach. 

Christy Wyatt, CEO of Absolute Security, commented: “The explosion of shadow AI use, combined with a third of devices lacking encryption, highlights a worrying gap between innovation and protection. As an industry, we spend so much time preparing for the next big attack, many enterprises are not meeting even basic security standards that can drastically boost resilience— like encryption, patch hygiene, visibility, and risk remediation. The stakes have never been higher. True cyber resilience means not just preventing breaches, but ensuring your digital operations can endure, adapt, and recover from any kind of cyberattack or incident.”  

For the complete Cyber Resilience Risk Index 2025 report visit: https://www.absolute.com/resources/research-reports/resilience-risk-index-2025 

Further findings from the Cyber Resilience Risk Index 2025

  • Enterprise Devices Are Missing Encryption: With 26% of devices being unaccounted for and 18% storing sensitive data, organizations are practically inviting data breaches creating dangerous blind spots for CISOs — increasing the risk of data loss, theft, and compliance violations. 
  • Security Tools Aren’t Holding the Line: Even with Endpoint Protection Platforms (EPP) and network access controls in place, security tools fail to stay compliant 22% of the time—leaving critical systems exposed nearly a quarter of the time— heightening the risk of ransomware, breaches, and operational instability. This shows minimal improvement from last year’s resilience index report, where Endpoint Protection Platforms (EPP) and network access security applications on managed PCs failed to operate effectively 24% of the time. 
  • Patching Delays Create Extended Risk Windows: Vulnerabilities in Windows 10 and 11 take nearly two months to patch. This prolonged delay offers a predictable and exploitable window for threat actors — especially in industries that rely on outdated infrastructure or manual patching processes. This shows a slight improvement from last year’s findings, where sectors like Education and Government faced patching delays of 119 and 82 days. However, the current 56-day delay still presents a considerable vulnerability window that leaves systems open to attack. It remains critical for organizations to streamline patching processes, as even minor delays continue to expose systems to potential threats. 

Categories: News, Technology


You Might Also Like
Read Full PostRead - Eye Icon
Cloud-Based Management Systems Designed to Inspire and Empower
Innovation
07/08/2024Cloud-Based Management Systems Designed to Inspire and Empower

Enabling organisations through its suite of pioneering management systems, IQMS Australasia, offers a highly refreshing approach when it comes to management solutions.

Read Full PostRead - Eye Icon
Choosing the Right Location for Your Law Firm
News
26/09/2022Choosing the Right Location for Your Law Firm

While you may choose to work from home due to financial constraints, it may not be a viable option in the long term since you need to meet with clients. You should set up an office for your law firm right from the start. Sharing office space may also reduce th

Read Full PostRead - Eye Icon
Country Style Cooking Announces Shareholder Approval of Merger Agreement
Legal
20/04/2016Country Style Cooking Announces Shareholder Approval of Merger Agreement

Country Style Cooking Restaurant Chain Co Ltd, a quick service restaurant chain in China, announced at an extraordinary general meeting today, the Company's proposal to authorise and approve the previously announced agreement and plan of a merger dated Decembe

Read Full PostRead - Eye Icon
Cyber Crime Targeting Law & Education
Innovation
02/10/2019Cyber Crime Targeting Law & Education

Cyber crime is proving to be the biggest threat for the majority of businesses in the modern era, with legal firms proving to be the most at-risk, according to CySure CEO Joe Collinwood. So, how can businesses, legal or not, help ensure their cyber security is

Read Full PostRead - Eye Icon
What are Collective Investment Schemes
News
03/11/2023What are Collective Investment Schemes

What are collective investment schemes? Collective investment schemes, popularly known as CISs, are collective investments in which a group of individual investors pool their money together and invest as one unit. It is like a pot in which different investors

Read Full PostRead - Eye Icon
Understanding The Different Types of FHA Loans In 2022
Finance
08/09/2022Understanding The Different Types of FHA Loans In 2022

Most people looking to buy a house in the near future will also have to review the market for suitable loans.

Read Full PostRead - Eye Icon
Nicolin Assogba: A Multifaceted Legal Masterclass in Benin and Beyond
Legal
08/12/2025Nicolin Assogba: A Multifaceted Legal Masterclass in Benin and Beyond

For almost ten years now, Nicolin Assogba has been a partner lawyer at D2A Société Civile Professionnelle d’Avocats (SCPA D2A), a Benin-based law firm located in Cotonou, the country’s largest city.

Read Full PostRead - Eye Icon
New Approach Needed to Tackle Mental Ill-Health at Work, Says OECD
Strategy
05/03/2015New Approach Needed to Tackle Mental Ill-Health at Work, Says OECD

Health and employment services should intervene earlier, involve key stakeholders and ensure they work together in order to help people with mental-health issues find work and stay in a job.

Read Full PostRead - Eye Icon
Injuries in the Fitness Industry: A Growing Business Risk
Legal
29/01/2026Injuries in the Fitness Industry: A Growing Business Risk

As the fitness and wellness sector continues to scale, businesses are increasingly exposed to risks that extend beyond equipment costs and membership retention. One of the most significant and often underestimated threats is the rise of overtraining-related in



Our Trusted Brands

Acquisition International is a flagship brand of AI Global Media. AI Global Media is a B2B enterprise and are committed to creating engaging content allowing businesses to market their services to a larger global audience. We have a number of unique brands, each of which serves a specific industry or region. Each brand covers the latest news in its sector and publishes a digital magazine and newsletter which is read by a global audience.

Arrow