Human Error Remains the Leading Cause of Cyber Losses in 2026
A recent report reveals that human error continues to be the primary catalyst for cyber losses, overshadowing the threats posed by artificial intelligence. With 85% of cyber losses attributed to human mistakes in the first half of 2026, organizations must prioritize cybersecurity training and awareness.

The cyber landscape is constantly evolving, yet one constant remains: human error is the leading cause of cyber losses. A recent report from cyber insurer Resilience reveals that over **85%** of incurred cyber losses in the first half of 2026 stemmed from attacks exploiting human mistakes. This statistic is both alarming and revealing, underscoring the need for organizations to bolster their cybersecurity measures, particularly around employee training and awareness. While the threat posed by artificial intelligence (AI) in cyberattacks is on the rise, it is human error that continues to dominate the cyber loss landscape.
As businesses increasingly rely on digital infrastructure, the risk of cyberattacks grows. The Resilience report highlights that the primary forms of attack exploiting human error include **phishing**, **social engineering**, and **transfer fraud**. The implications of these findings are significant for IT departments, business leaders, and cyber insurers alike, emphasizing the critical role of human behavior in the ongoing battle against cybercrime.
Understanding the Current Cyber Threat Landscape
In the world of cybersecurity, human error has long been recognized as a vulnerability. The Resilience report categorizes the origins of cyber losses into various types, ranging from social engineering to vendor vulnerabilities. Despite the rise of sophisticated AI-driven cyber threats, the report indicates that human error remains a more pressing concern.
The Rise of AI in Cybersecurity
AI is not merely a passive observer in this arena; it has become a powerful tool that cybercriminals leverage to enhance their attacks. The report notes a **56%** increase in AI-driven cyberattacks compared to the previous year, with the average cost of a breach soaring to approximately **$4.99 million**. This adds a new layer of complexity to cybersecurity as AI can create highly convincing phishing emails or even voice deepfakes to manipulate individuals into compromising situations.
- More than **85%** of cyber losses in 2026 were due to human error.
- The cost of an average data breach has risen to **$4.99 million**.
- AI-driven attacks have increased by **56%** year-over-year.
- Ransomware accounts for **73%** of incurred losses, despite being less frequent.

The Financial Impact of Cyber Losses
The financial ramifications of cyberattacks are staggering. Ransomware, while constituting only **5.8%** of total claims, is responsible for a disproportionate **73%** of incurred losses. This highlights the severity of the threat, as ransomware attacks can paralyze business operations. However, it appears that organizations are becoming more adept at managing these threats, as the average claim severity decreased from **$784,000** in the first half of 2025 to **$470,000** in 2026. This decline is attributed to a decrease in high-value extortion demands, suggesting that businesses are implementing better cybersecurity practices.
Shifting Trends in Ransomware Tactics
Interestingly, the nature of ransomware attacks is evolving. Previously, attackers focused on encrypting systems and demanding payment for decryption keys. Now, an increasing number of attacks involve data suppression, where hackers steal sensitive information and threaten to release it unless a ransom is paid. This shift indicates a need for organizations to enhance their data protection strategies, focusing not only on encryption but also on safeguarding sensitive information.

Addressing Vendor-Related Cyber Risks
In addition to human error, vendor-related losses have shown a notable decline, dropping to just **2.3%** of incurred losses compared to **33.5%** in the first half of 2025. This may suggest that organizations are becoming more vigilant about vetting their vendors and ensuring that third-party relationships do not expose them to unnecessary risks. However, industry experts caution that this does not mean vendor-related threats have disappeared entirely. Companies must remain proactive in managing their vendor relationships and ensuring robust cybersecurity measures are in place.
The Importance of Employee Training and Awareness
The findings of the Resilience report underscore the necessity of continuous employee training and cybersecurity awareness initiatives. Organizations must invest in comprehensive training programs that educate employees about the various forms of cyber threats, particularly those related to phishing and social engineering. This training should not be a one-time event but rather an ongoing process that adapts to the ever-changing cyber landscape.
Best Practices for Cybersecurity Training
To effectively mitigate the risks associated with human error, businesses should consider implementing the following best practices:
- Conduct regular phishing simulations to test employee awareness.
- Provide training on recognizing social engineering tactics and scams.
- Encourage a culture of reporting suspicious activity without fear of reprisal.
- Implement clear protocols for verifying unusual requests for sensitive information.

Key Takeaways
- Human error is responsible for **over 85%** of cyber losses in 2026.
- AI-driven cyberattacks are on the rise, increasing by **56%** since last year.
- The average cost of a data breach has reached **$4.99 million**.
- Ransomware accounts for a significant portion of financial losses, despite being less frequent.
- Ongoing employee training is essential to reduce the risk of cyberattacks.
Frequently Asked Questions
What types of cyberattacks are most common today?
The most common types of cyberattacks today include phishing, social engineering, and ransomware. Phishing attacks often involve deceptive emails that trick individuals into revealing sensitive information, while social engineering exploits the psychological manipulation of individuals to gain unauthorized access to systems or data. Ransomware attacks, although less frequent, can lead to significant financial losses when attackers encrypt systems and demand payment for decryption.
How can businesses protect themselves from cyber losses?
Businesses can protect themselves from cyber losses by implementing robust cybersecurity measures, including regular employee training, strong password policies, and multi-factor authentication. Additionally, organizations should establish clear protocols for verifying requests for sensitive information and ensure that data backups are conducted regularly and stored securely. By fostering a culture of cybersecurity awareness among employees, companies can significantly reduce their risk of falling victim to cyberattacks.
What role does AI play in cyberattacks?
AI plays a dual role in the realm of cybersecurity. While it can be used by cybercriminals to enhance their attack strategies—such as creating convincing phishing emails or voice deepfakes—it can also be employed by organizations to bolster their defenses. AI-driven cybersecurity solutions can help detect unusual patterns of behavior, identify potential threats, and respond to incidents more swiftly. However, the increasing sophistication of AI in the hands of attackers poses a growing challenge for cybersecurity professionals.
Why is employee training crucial in preventing cyberattacks?
Employee training is crucial in preventing cyberattacks because human error remains the primary cause of many breaches. By equipping employees with the knowledge to recognize and respond to potential threats, organizations can mitigate the risks associated with cybercrime. Continuous training programs that keep employees informed about the latest threats and best practices can empower them to act as the first line of defense against cyberattacks, ultimately protecting the organization’s sensitive data and financial assets.
Comments
Employers Holdings Achieves Stabilization Amid Premium Pullback in Q2 2026
Employers Holdings reports a modest improvement in its loss ratio and significant strategic shifts in its underwriting practices, focusing on small businesses and profitability in Q2 2026.

Related articles
Popular in Business Insurance
- Surging War-Risk Insurance Rates in the Strait of Hormuz: What It Means for Shipping
- Ross & Yerger Insurance Faces Class Action Over Data Breach Allegations
- Indiana Court Ruling: Insurers Can Deny Fire Claims Without Proving Harm
- WTW's Strategic AI Investment: A Game Changer for Insurance Brokerage
- How AI is Transforming Excess and Surplus Lines Underwriting






