Shadow AI: Why Indian Firms Must 'Fight AI with AI' On average 10 % of an enterprise's 66 GenAI applications are classified as high-risk, Palo Alto Networks report

By Entrepreneur Staff

You're reading Entrepreneur India, an international franchise of Entrepreneur Media.

Freepik

As generative AI (GenAI) adoption accelerates across India and the Asia-Pacific region, organisations are increasingly caught between the promise of innovation and the peril of growing security threats. A recent report by Palo Alto Networks "State of Generative AI 2025", highlights that on average 10 per cent of an enterprise's 66 GenAI applications are classified as high-risk.

In India, the top three most-used GenAI applications by volume were Grammarly (32.56 per cent), Microsoft Power Apps (19.98 per cent)), and Microsoft Copilot (16.37 per cent). While these tools are enabling a new wave of productivity, the report warns that unsanctioned use and poor oversight have significantly widened the cybersecurity attack surface.

"Organisations must balance innovation with strong governance, adopting security architectures that account for AI's unique risks from shadow AI and data leakage to the more complex threats posed by agentic AI models," said Tom Scully, Director and Principal Architect for Government and Critical Industries, Asia Pacific & Japan, at Palo Alto Networks.

One of the most alarming concerns is the rise of "Shadow AI" — the unauthorised or unsanctioned use of GenAI tools by employees. These tools, often outside the purview of IT and security teams, create blind spots in data visibility and increase the likelihood of breaches.

Amit Jaju, Senior Managing Director at Ankura Consulting, noted that the global cybersecurity community ranks shadow AI among the top five emerging risks, assigning it a severity rating of 7.8 out of 10. "With 36 per cent of employees using unapproved AI tools and nearly half of organisations unable to fully secure them, industries face critical threats such as data leaks like Samsung's source code incident or unauthorised processing of personal data," he warned.

He further emphasised that sectors like financial services and healthcare are especially vulnerable due to stringent regulatory mandates such as India's Digital Personal Data Protection (DPDP) Act and the EU's AI Act.

Fight AI with AI

India's ambition to lead the global AI race is clearly reflected in its 2025 Union Budget, which earmarks INR 500 crore to set up a Centre of Excellence in AI for education. But even as policy and investment pave the way forward, the digital threat landscape is also shifting rapidly. Cyber attackers are increasingly turning to AI to launch faster, more targeted, and more complex cyberattacks.

In this new reality, the only effective way to counter AI-fuelled threats is with AI-powered defences. "It's like hacking, you have ethical and unethical versions. Similarly, AI can be used for both good and bad. The tech itself is not the problem," said Tushar Dhawan, Partner at Plus91Labs.

Swapna Bapat, Vice President & Managing Director, India and SAARC at Palo Alto Networks, added, "India is one of GenAI's biggest adopters. In a country where work happens in multiple languages and at massive scale, it's no surprise that writing, coding, and conversational AI are leading use cases. But the pace of adoption has outstripped governance. Many organisations don't realise how deeply GenAI is already embedded in their workflows. The priority now isn't whether to use these tools, but how to secure them without slowing people down."

Entrepreneur Staff

Entrepreneur Staff

Editor

For more than 30 years, Entrepreneur has set the course for success for millions of entrepreneurs and small business owners. We'll teach you the secrets of the winners and give you exactly what you need to lay the groundwork for success.
Business Ideas

70 Small Business Ideas to Start in 2025

We put together a list of the best, most profitable small business ideas for entrepreneurs to pursue in 2025.

Growing a Business

Why Storytelling (Not Selling) Is Your Most Powerful Branding Tool

A thought leader is a sum of their stories. Learn why sharing your unique thoughts, feelings and perspectives can help you stand apart from other experts in your field.

Money & Finance

Small Business Credit Is Tightening — Here's How to Prepare for What's Ahead

With credit conditions shifting, SMBs must stay flexible to secure funding

Growing a Business

How I Built a Multi-Unit Franchise Operation Without Leaving My Day Job

How I ran a top-performing franchise while traveling as a full-time speaker — using smart systems, strong leadership and a lot of trust.

Marketing

4 Keyword Mistakes That Are Killing Your SEO — and What to Do Instead

Adapt your SEO strategy now to stay ahead of AI and algorithm changes reshaping search.

Living

I Take 75 Business Trips a Year — These 10 Tips Save Me Time, Money and Sanity

If you travel for work, these are the time-saving, stress-reducing, money-smart tips I rely on after 75 business trips a year.