Navigating Shadow AI in the Enterprise, Verizon's SECOND 2026 report, and the news - Ankita Gupta - ESW #464

Navigating Shadow AI in the Enterprise, Verizon's SECOND 2026 report, and the news - Ankita Gupta - ESW #464

Author: Security Weekly Productions June 22, 2026 Duration: 1:37:53

Interview with Ankita Gupta, CEO of Akto

How to Navigate Shadow AI Risk in the enterprise

This week, we discuss AI governance in the enterprise, starting with the nuts and bolts of how to discover and understand shadow AI. Following that, we dive into what security and tech leaders should do next with this information: apply guardrails? Limit vendor options?

Ankita has a wealth of experience and anecdotes to share here, from years of working with customers and seeing all the unexpected things that happen with AI in today's workplace.

Segment Resources:

This segment is sponsored by Akto. Visit https://securityweekly.com/akto to secure your AI agents before attackers do.

Topic Segment: Verizon's Breach Impact Study

The same team that delivers the DBIR every year gave us a bonus, based on over 70,000 insurance claims!

Some of my favorite insights:

  • Cost of breaches, broken out by SMB, mid-sized enterprise, and large
  • The claim amount as a percentage of the company's revenue
  • Losses broken down by loss TYPE

This data validates something I think everyone in cyber needs to understand: cyber events are rarely business-ending events. Every cybersecurity professional and vendor, frustrated by companies "not taking security seriously enough" now have data explaining why: breaches don't hurt as much as you thought they did. Maybe you think they should hurt more? Push for regulation/fines/etc.

With that said, the report also shows breach costs increasing significantly over the past 6 years and the quantity of incidents shooting up. Specifically, the median impact has almost doubled.

Security failures aren't getting any cheaper.

Weekly Enterprise News

Finally, in the enterprise security news,

  1. A $100M seed round!
  2. Accenture acquires 3 security vendors
  3. Some thoughts on the government takedown of Fable and Mythos
  4. One of the craziest security mistakes I've ever seen, in the software FIFA uses to manage World Cup streams!
  5. A Critical Copilot vulnerability
  6. 75,000 Fortinet Firewalls get compromised
  7. Remediation is broken
  8. Using guardrails to evade detection

All that and more, on this episode of Enterprise Security Weekly.

Show Notes: https://securityweekly.com/esw-464


Hosted by Adrian Sanabria, Enterprise Security Weekly (Video) is a deep dive into the complex world of protecting large organizations. This isn't just a headline recap; it's a practical, analyst-level discussion for security professionals who need to understand the "why" behind the news. Each episode from Security Weekly Productions brings together a seasoned panel including co-hosts like Katie Teitler-Santullo, Ayman Elsawah, Jason Wood, Jackie McGuire, and Sean Metcalf to dissect emerging threats, architectural shifts, and the tools that promise to help. You'll hear candid evaluations as they put security vendors and their claims under the microscope, separating hype from genuine utility. The conversation revolves around actionable intelligence and strategic trends that empower defenders to build more resilient environments. Tuning into this podcast provides a consistent, informed perspective that cuts through the noise of the daily alert cycle, offering clarity and context that's often hard to find. It’s a video format that adds a layer of connection and detail to these technical discussions, making complex topics more accessible. If your work involves making critical decisions about enterprise security posture, this series serves as a vital resource for staying informed and ahead of the curve.
Author: Language: English Episodes: 50

Enterprise Security Weekly (Video)
Podcast Episodes
Why are cybersecurity predictions so bad? - ESW #440 [not-audio_url] [/not-audio_url]

Duration: 1:29:41
For our first episode of the new year, we thought it would be appropriate to dig into some cybersecurity predictions. First, we cover the very nature of predictions and why they're often so bad. To understand this, we ge…