Industry NewsHIGH

AI Risks Shift Cyber Insurance Costs and Coverage Policies

CSCSO Online
McDonald'scyber insuranceAI securitydata breachParadox.ai
🎯

Basically, companies using AI are seeing changes in their cyber insurance costs and rules due to new risks.

Quick Summary

McDonald's faced a major AI security flaw that endangered 64 million applicants' data. As AI use grows, companies are seeing changes in cyber insurance costs and coverage. Insurers are tightening policies and raising premiums, making it crucial for businesses to enhance their security measures.

What Happened

In July 2025, McDonald's faced a serious security issue with its AI-powered hiring platform, McHire. This system, created by Paradox.ai, had a rookie-level security flaw: it accepted the username and password "123456" and didn't use multi-factor authentication?. This vulnerability put the personal data of around 64 million applicants at risk. Thankfully, security researchers Ian Carroll and Sam Curry discovered the flaw and alerted McDonald's before any damage occurred.

As organizations rush to adopt AI tools, many are doing so without proper security audits?. According to an IBM report, the speed of AI adoption is outpacing the development of AI security and governance. Last year, 13% of organizations reported breaches involving AI, while 8% were unsure if their AI systems had been compromised. This rapid deployment without adequate oversight is raising alarms across the cybersecurity landscape.

Why Should You Care

You might think AI is just a fancy tool, but it can also be a double-edged sword. Imagine giving your car keys to someone without checking if they can drive. That's what companies are doing with AI. Your personal data is at risk when organizations fail to secure their AI systems properly. If a breach occurs, it could lead to identity theft or financial loss for millions.

Moreover, the implications extend beyond just individual data. Companies face rising insurance costs and stricter coverage policies. Insurers are tightening their belts, raising premiums, and adding exclusions? for AI-related incidents. This could mean higher costs for businesses, which may eventually trickle down to consumers like you.

What's Being Done

In response to these emerging risks, cyber insurers are rethinking how they assess risk. Many are moving away from basic questionnaires and are now requiring evidence of active security controls. According to a recent report, 77% of insurers now demand formal reviews by security teams before issuing or renewing policies. This shift aims to ensure that organizations are not just compliant on paper but are genuinely protecting their systems.

Here’s what affected companies should do right now:

  • Conduct a thorough audit of AI systems to identify vulnerabilities?.
  • Implement robust security measures, including multi-factor authentication?.
  • Stay informed about changes in cyber insurance? policies and adjust coverage accordingly.

Experts are closely monitoring how insurers will adapt their policies as AI continues to evolve and become more integrated into business operations. The landscape is changing rapidly, and companies must keep pace to avoid costly repercussions.

💡 Tap dotted terms for explanations

🔒 Pro insight: Insurers are shifting towards continuous risk assessment models, reflecting the evolving threat landscape posed by AI technologies.

Original article from

CSO Online

Read Full Article

Related Pings

MEDIUMIndustry News

Friday Squid Blogging: Increased Squid Population in the Falklands

Friday Squid Blogging: Increased Squid Population in the Falklands

Schneier on Security·
MEDIUMIndustry News

Cybersecurity Challenges for Nonprofits: A Call to Action

Cybersecurity issues are hitting nonprofits hard. With limited resources, these organizations struggle to protect themselves. Experts urge the industry to provide support and solutions to keep good causes safe.

Dark Reading·
MEDIUMIndustry News

SOC Unification: Five Key Strategies for Security Leaders

A new white paper reveals five strategies for SOC unification using AI. Security leaders must adapt to increasing alert volumes and complexity. Embracing collaboration and modern technologies is crucial for effective incident response.

SC Media·
HIGHIndustry News

Stryker's Operations Hit Hard by Cyberattack Disruption

Stryker's manufacturing and shipping are disrupted after a cyberattack. Healthcare providers relying on their products face delays. The incident highlights the urgent need for improved cybersecurity in the medtech industry.

Cybersecurity Dive·
LOWIndustry News

Expert Engineers Share Insights on Fortinet's NSE 8 Standard

BCI's seven NSE 8 certified engineers reveal how they apply Fortinet's top certification. Their insights highlight the importance of expert-level skills in tackling real-world cybersecurity challenges. As threats evolve, having certified professionals is crucial for effective defense.

Fortinet Threat Research·
LOWIndustry News

Join Fortinet at RSAC 2026 for Cybersecurity Insights!

Fortinet invites you to RSAC 2026 for four days of cybersecurity insights. Join industry leaders at booth #N5762 to learn about the latest security strategies. This is a must-attend event for anyone serious about cybersecurity!

Fortinet Threat Research·