IBM report warns UK firms over rising supply chain breach risks and Artificial Intelligence security gaps

A new IBM report exposes a surge in costly supply chain breaches and highlights how poor Artificial Intelligence governance is leaving UK organisations dangerously exposed.

An IBM report for 2025, conducted by the Ponemon Institute, has identified supply chain breaches as the most financially damaging cyber threat facing UK organisations. According to the study, third-party and supply chain compromises now cost UK businesses an average of £241,620 per incident and take an industry-leading 267 days to resolve, outpacing even insider attacks. AJ Thompson, Chief Commercial Officer of IT consultancy Northdoor, points to a disconnect: while organisations ramp up investment in perimeter security, too many neglect the vulnerabilities posed by suppliers and external partners.

The report also reveals a worrying lack of alignment between rapid Artificial Intelligence adoption and the implementation of effective cybersecurity controls. Although companies deploying Artificial Intelligence and automation in their security operations cut global breach costs by nearly £900,000 and shortened breach lifecycles by 80 days, UK adoption remains low. Just 31% of businesses have introduced significant Artificial Intelligence-powered automation, and shadow Artificial Intelligence—unsanctioned tools used by staff—now accounts for 20% of all breaches, often exploiting ungoverned access. Critically, 97% of Artificial Intelligence-related security incidents hit organisations without proper access controls, and 11% of those surveyed could not determine the role Artificial Intelligence played in their breaches.

Speed in detecting and containing threats remains the most important cost driver. Breaches detected and contained within 200 days cost UK organisations £2.84 million on average, compared with £3.74 million for slower responses. Sector analysis shows financial services in the UK face the highest individual breach costs (£5.74 million), followed by technology and services sectors. Thompson contends that the real issue is not lack of expertise within internal IT teams, but under-resourcing. He urges organisations to enlist external consultancies to shore up supply chain security and bring Artificial Intelligence deployments under robust governance, citing the expanding threat landscape and increasingly complex digital ecosystems.

66

Impact Score

Industry 5.0 shifts focus to human centric value and sustainability

Industry 5.0 reframes industrial transformation around collaboration between humans and machines, emphasizing growth, resilience, and sustainability over narrow efficiency gains. Many organizations still underinvest in human centric and sustainable use cases despite evidence that they create higher value.

Best artificial intelligence video generators for every creator

Leading artificial intelligence video tools like Sora, Veo 3, Adobe Firefly, Runway and Midjourney target different needs, from free social clips to commercially safe productions, but all come with legal and ethical tradeoffs. Choosing the right platform means balancing price, creative control, output quality and how each service handles your data and copyrights.

UK mps open inquiry into artificial intelligence and edtech in education

UK mps have launched a cross party inquiry into how artificial intelligence and education technology are reshaping learning across early years, schools, colleges and universities, and how government should balance innovation with safeguards. The education committee will examine opportunities to improve teaching and workload alongside risks around inequality, privacy, safeguarding and assessment.

Contact Us

Got questions? Use the form to contact us.

Contact Form

Clicking next sends a verification code to your email. After verifying, you can enter your message.