Shadow AI Use Surges to 45 Percent Among Employees
Enterprise security risks are rising as employees increasingly adopt unapproved artificial intelligence tools without IT oversight to improve workplace efficiency.
The adoption of unapproved artificial intelligence tools, known as shadow AI, has emerged as a significant security and regulatory risk for enterprises. Data from Verizon indicates that employee AI use jumped from 15% to 45% in a single year, making it the third most common non-malicious insider action according to the 2026 Data Breach Investigations Report.
Research from Lenovo further highlights the scale of the trend, finding that over 70% of employees use AI weekly, with up to one-third operating without IT oversight. This behavior is most prevalent among middle management and team leads who prioritize efficiency over formal procurement and data governance. Many of these employees rely on outdated policies from 2022 or 2023 that do not account for modern, employee-discovered tools.
This trend has created a consent gap where sensitive customer data is processed through unvetted tools, exposing companies to potential regulatory consequences. The risk is compounded by a lack of corporate communication; Gallup, Inc. found that only 22% of employees report that their company has shared a formal AI plan or strategy.