Skip to content
City PM
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Opinion
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Opinion
Wednesday 11 June 2025 7:07 am  |  Updated:  Wednesday 11 June 2025 12:28 pm

Darktrace: Most firms dangerously exposed to AI cyber threats

By: Saskia Koopman

Tech Reporter

Add as a preferred source on Google
AI and security
AI security

As artificial intelligence rapidly reshapes the cyber security landscape, many businesses remain dangerously under-prepared, missing foundational practices while rushing to adopt AI tools.

At London Tech Week on Tuesday, top industry and government voices in the space warned that without getting the basics right, even the most advanced AI solutions won’t be enough.

This announcement follows a string of cyber crime hitting UK retail, with homegrown giants like M&S and Harrods being hit with damaging data breaches.

While attackers are leveraging AI to automate phishing, accelerate intrusion, and generate convincing malware, many organisations still haven’t implemented fundamental controls like user access management or system segmentation.

This disconnect, leaders from Darktrace, the National Cyber Security Centre and the government argued, could turn AI from a promising shield into a dangerous false sense of security.

“One of those basics is user access management, especially for privileged users”, said Tim Bazalgette, Darktrace’s chief AI officer.

“Attackers shouldn’t be able to become system administrators just because someone clicked on a phishing link.”

Legacy tech and weak cyber planning

Part of the problem, the panel suggested, lies in outdated infrastructure and a reluctance to invest in long-term resilience.

Legacy systems continue to be exploited, and even organisations that survive attacks often revert to short-term thinking.

“So many organisations, after a cyber attack, go back to investing in flashy tools rather than the culture change and resilience needed,” said Bazalgette.

“We never really saw the investment in foundational upgrades – and that’s a problem.”

Despite increased awareness of cyber risk, boards are often still ill-equipped to evaluate AI-driven security tools, and procurement decisions are made based on hype rather than substance.

Read more

‘Act now’: AI models capable of attacks on governments months away, Five Eyes warn

GettyImages 158774123 showcases a relevant business meeting scene, highlighting diverse professionals engaged in discussion.

“It’s hard to defend against the next big thing when every cybersecurity company has A slapped on the box,” said Bazalgette. “How do you distinguish what will actually give you the edge?”

Can AI be misleading?

AI can be a powerful multiplier, the panel repeated, but only if deployed with care and in context.

What’s more, a few speakers cautioned against over-reliance on general-purpose AI models such as those designed for chat or search to make high-stakes cyber security decisions.

“General AI models can be confidently wrong,” Bazalgette added. “We’ve seen examples in other sectors, like aerospace, where chat-based models convinced engineers they were mistaken, when they weren’t. That’s dangerous.”

Instead, businesses need domain-specific AI trained on relevant data and scenarios. It’s also essential that these systems are transparent and interpretable.

“Responsible AI in security means interpretability” said Bazalgette “We need tools that explain what they’re doing and why, so our experts can trust them and intervene if needed”.

“AI is not a silver bullet”

Feryal Clark MP echoed the call for smarter, more grounded deployment of AI in cyber defence, emphasising that while AI has huge potential, its value depends entirely on how well organisations integrate it with people and processes.

“AI is exciting, but it must be seen as part of a lifecycle approach,” she said. “If I were buying new windows and doors for my house, I’d want to know they fit properly, and no one else has a key. The same should apply when we’re thinking about securing our systems.”

She also stressed that cybersecurity investment needs to match the sophistication of the threat – and the economic stakes involved.

“We’ve got a flourishing cyber security sector in the UK. Businesses should partner with targeted AI innovators who understand the space,not just adopt generic tools because they’re popular.”

Ultimately, the panel’s consensus urged that AI is only going to aggravate cyber threats, but that without strong foundations, deep domain expertise, and the humility to question the tools being deployed,UK businesses may be solving the wrong problem.

“You can’t solve cybersecurity with a single AI model,” Bazalgette added. “But you can’t start without the domain experts either. You need both”, he said, comparing to a firm’s need of a variety of employees.

Read more

Gambit Cyber Launches Vizier AI – An Autonomous Security Intelligence Workspace for Continuous Exposure Management

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech
  • Business

People & Organisations

  • AI
  • Cyber
  • Darktrace
  • London Tech Week
  • Marks and Spencer

Trending Articles

  • The best wine to take to a picnic in the sun

  • Could Burnham be the answer to free-to-air sport for all?

  • Two solicitors linked to Post Office scandal charged with misconduct

  • Ares Management flagship private credit fund slammed with withdrawal requests

  • Yokohama F Marinos: City Football Group offloads second club in space of six months

More from City PM

  • ‘Act now’: AI models capable of attacks on governments months away, Five Eyes warn

    Tech
    GettyImages 158774123 showcases a relevant business meeting scene, highlighting diverse professionals engaged in discussion.
  • Gambit Cyber Launches Vizier AI – An Autonomous Security Intelligence Workspace for Continuous Exposure Management

    Business Wire
  • Trump to reject UK plea over Anthropic ban as AI ‘kill switch’ fears grow

    Tech
    Getty Images logo on a modern office building exterior, symbolizing global influence in media and stock photography industry
  • Trump ban on AI access to foreign users forces Anthropic to suspend models

    Tech
    Donald Trump has threatened to sue the BBC for $1bn
  • UK defence chief: Adopt AI or lose future wars

    Tech
    UK defence strategy meeting, officials discussing military advancements and security measures in a conference room setting
  • Andrew Bailey warns on AI: ‘Everybody is currently priced to be a winner’

    Tech
    Bank of England Governor Andrew Bailey said cited several indicators that the labour market was softening.
  • Jaguar Land Rover eyes cost-cutting and wealthy buyers in cyber attack recovery

    Retail
    JLR logo prominently displayed in an automotive business setting, highlighting the companys brand presence and identity
  • Neo4j Acquires GraphAware to Launch Intelligence Analysis Alternative to Palantir Gotham

    Business Wire

City PM — European politics, business and analysis.

Europe

  • Germany
  • France
  • Europe
  • UK & Ireland

Topics

  • Business
  • Markets
  • AI
  • Technology
  • Opinion
  • Energy

More

  • Politics
  • Economics
  • Fintech
  • Legal
  • Sport
  • Life

Company

  • About City PM
  • Contact
  • Terms of Use
  • Privacy Policy
  • Cookie Policy
© 2026 City PM. All rights reserved.
About · Contact · Terms · Privacy