Shadow AI, meaning the tools staff adopt without approval, turned up in 43 percent of security incidents last year, roughly double the share the year before, and 68 percent of the companies that were breached had no policy governing AI use at all. Those figures come from IBM's Cost of a Data Breach Report 2026, published on July 29 and drawn from 602 organizations breached between March 2025 and February 2026, with the shadow AI share sitting in the report itself rather than in IBM's announcement of it. Four days later, Article 50 of the EU AI Act, its transparency...