avalw
TECH · CA

Data Breach Costs Reach a Record 4.99 Million Dollars as Cyber Threats Grow More Expensive

Noah Mitchell Noah Mitchell noahmitchell.avalw.com · 4.8k reads Respect0 Save Share Read only
READS699live count PUBLISHED5 Sept2026 READING TIME3 min521 words LANGUAGEEnglish
AI CITATIONS? Gathering data

A closely watched annual report finds the global average cost of a data breach rose to a record 4.99 million dollars in 2026, up 12 percent, with the United States averaging 11.5 million and ransomware still widespread.

The cost of a serious data breach has climbed to its highest level ever recorded, according to a closely watched annual report. For businesses around the world, the findings are a stark reminder that cyber attacks are becoming more damaging and more expensive.

The report, produced each year by the technology company IBM, examines breaches across many industries and countries. This year's edition points to a landscape in which new technologies are reshaping both how attacks happen and how much they end up costing.

A record average cost

Data centres and cloud systems hold vast amounts of information, making them prime targets for costly cyber attacks.
Data centres and cloud systems hold vast amounts of information, making them prime targets for costly cyber attacks.

The headline figure is striking. In 2026, the global average cost of a data breach reached 4.99 million dollars, an increase of 12 percent compared with the previous year, and the highest total in the twenty one editions of the report.

That steady climb reflects a broader trend. As organisations store more data and rely on more connected systems, the potential damage from a single breach continues to grow, putting pressure on budgets and reputations alike.

The United States leads the losses

The burden is far from evenly spread. In the United States, the average cost of a breach reached 11.5 million dollars, more than double the global figure and sharply higher than the previous record set just a year earlier.

Several factors help explain the gap, including higher regulatory penalties, larger legal costs and the sheer scale of many American companies. Whatever the causes, the numbers show just how costly a single lapse in security can become.

A costly new factor

One of the report's clearest messages concerns the role of artificial intelligence. Breaches that involved such technology averaged around 6 million dollars, roughly one million dollars more than the overall average across all of the incidents studied.

These attacks are also becoming more common. Around one in four malicious breaches studied were carried out with the help of artificial intelligence, a rise of 56 percent compared with the year before, according to the report.

Weak points in new systems

The report also highlights where organisations are most exposed. Compromised interfaces, applications or plug-ins were behind 27 percent of these breaches, while cloud misconfigurations affecting new workloads accounted for a further 27 percent.

A lack of basic safeguards made matters worse. According to the findings, a large majority of firms breached through these new systems, reported at 92 percent, had not put proper access controls in place to protect them.

Ransomware remains a threat

Alongside these newer risks, familiar threats have not gone away. Ransomware, in which criminals lock up data and demand payment, was involved in 39 percent of the breaches studied, up from 34 percent the year before.

The persistence of ransomware shows that older methods remain highly profitable for attackers. For many organisations, defending against these campaigns is now a routine and costly part of doing business every day.

What organisations can do

Experts stress that the picture is not hopeless. Strong access controls, careful configuration of new systems and regular monitoring can all reduce both the likelihood and the cost of a serious breach when one eventually occurs.

As threats continue to evolve, preparation is likely to matter more than ever. The report suggests that companies which invest early in security tend to spend far less recovering when an attack finally arrives at their door.

3 responses
Lucas Taylor1 week ago

data breach: explained clearly and well.

4
Jack Johnson1 week ago

Learned a lot about data breach here.

2
Emily Miller1 week ago

True.

0
Noah Mitchell
Follow this desk
Noah Mitchell
Create a free account to follow Noah Mitchell. New stories land in your feed, and you can save any of them to your own reading lists.
Your library & lists →
Noah Mitchell
WRITTEN BY THE AUTHOR
Noah Mitchell 2026-09-05 · 3 min read · 699 reads
View profile →
VERIFY THIS STORY
ASK AI
Noah Mitchell Keep following Noah MitchellHer next filing reaches you the moment it publishes, on her own subdomain.
Up next
More
Statistics Search Become a creator Alliances About Terms Privacy