Watch out – your workers might be pasting company secrets into ChatGPT

  • GenAI tools like ChatGPT are redefining Shadow IT risks in corporate environments, report finds
  • Employees pasted PII/PCI into GenAI tools, mostly from unmanaged personal accounts
  • Enterprises face major blind spots in data leakage and compliance due to unmonitored GenAI use, experts say

ChatGPT and other Generative Artificial Intelligence (GenAI) tools are transforming what “risk of Shadow IT” means, new research has found, as employees are becoming a little too open – and many have even provided the tool with Personally Identifiable Information (PII) or Payment Card Industry (PCI) numbers willingly.

Shadow IT is the practice of using programs and apps in a business environment that weren’t approved or otherwise vetted by the IT security department. Employees often use apps they’re not allowed to because it’s easy and convenient – things like web-based image-to-pdf converters, WhatsApp, personal cloud storage solutions like Dropbox, and similar.

But research from LayerX claims this is opening up companies to all sorts of cyber-risks, from introducing malware and ransomware to corporate infrastructure, to leaking sensitive data via unprotected cloud storage, or uploading classified documents to shady services.

Pasting secrets

The company’s latest Enterprise AI and SaaS Data Security Report 2025 found almost half (45%) of enterprise employees are now using generative AI in one form or another.

Of those, more than three-quarters (77%) have been copying and pasting data into the tool, and almost a quarter (22%) have done the same with PII/PCI.

“With 82 percent of pastes coming from unmanaged personal accounts, enterprises have little to no visibility into what data is being shared, creating a massive blind spot for data leakage and compliance risks,” the report says.

Furthermore, roughly two in five files uploaded to generative AI sites also contain this type of information, while 39% of these uploads came from non-corporate accounts.

ChatGPT is by far the most popular GenAI tool, with more than 90% of employees using it. The vast majority (around 83%) use just one tool. Other notable mentions include Gemini (15%), Claude (5%), and Copilot (around 3%).

Via The Register

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

You might also like

Read more @ TechRadar

Latest posts

Ports-a-plenty, a zen garden creator and other new indie games worth checking out

Welcome to our latest roundup of what's going on in the indie game space. This week saw the arrival of some fairly high-profile ports,...

Payment resilience: a business priority in a cashless world

In today’s digital-first economy, the recent spate of IT outages across the UK reveals that payment disruptions have become a serious and ever-present threat...

What are you waiting for? The Argos Black Friday sale already features record-low prices on TVs, appliances, toys, and more

We're still a few weeks away from the big day itself, but that hasn't stopped Argos from launching a huge Black Friday sale this...

Lioness season 3: everything we know so far about the hit Paramount+ show’s return

Lioness season 3: key information- Renewed in August- Production officially began in October- No release date yet- Main cast expected to return- Ian Bohen...

No wonder it got hit – report claims password for the Louvre’s video surveillance system was…“LOUVRE”

Louvre criticized for running deprecated software and using weak passwords2017 report warned of an impending serious attackLess than half of the rooms are covered...

Way too complex: why modern tech stacks need observability

Software failures are inevitable. But they should never become disasters that wreak nationwide havoc.Whether a failure escalates into a major disruption or is immediately...

VDI, SaaS, and DaaS uncovered: what businesses need to know

Since the early 1990s, the way applications and data are delivered has been constantly shifting.Today, IT management faces more choice, and more complexity, than...

I took the awesome Dwarf III smart telescope on vacation and captured some of my favorite space photos ever

DwarfLab Dwarf III: Two-minute reviewThe Dwarflabs Dwarf III smart telescope is a mini marvel. My first astrophotography set-up 10 years ago weighed more than...

Black Friday comes early: Samsung’s flagship 2TB 990 Pro SSD is ideal for demanding creative work – and priced at just £154

Black Friday 2025 is fast approaching, and Samsung’s top-tier storage upgrade is already on sale. The Samsung 990 Pro 2TB NVMe M.2 SSD has...

Topping’s new DAC, headphone amp and preamp just toppled a few key players to sit with the top of the class

Topping DX5 II: Two-minute reviewThe DX5 II is the product that Chinese specialist Topping hopes is going to force its name into the ‘affordable...