Full Report
New data from the 2026 Thales Data Threat Report Manufacturing Edition identified that AI (artificial intelligence) has become... The post Thales 2026 Data Threat Report finds manufacturers face AI and cloud security risks as data visibility, encryption gaps persist appeared first on Industrial Cyber.
Analysis Summary
# Industry News: Thales 2026 Report Highlights AI and Cloud Vulnerabilities in Manufacturing
## Summary
The 2026 Thales Data Threat Report (Manufacturing Edition) reveals that the rapid evolution of AI has become a primary security concern, with 67% of manufacturers citing AI ecosystem changes as a top risk. Despite increased investment in AI-specific security tools, manufacturers are struggling with foundational data hygiene, including significant gaps in data visibility and cloud encryption.
## Key Details
- **Date:** September 24, 2026
- **Companies Involved:** Thales (Lead Researcher), Automotive and General Manufacturing sectors
- **Category:** Market Analysis / Industry Report
## The Story
Thales' latest research paints a picture of a manufacturing sector caught between adopting cutting-edge technologies and failing to master security basics. While 83% of manufacturers have purchased new tools specifically to combat AI-related threats—driven largely by the 61% who have already experienced deepfake attacks—the industry suffers from chronic "tool sprawl." The average manufacturer manages five or more data protection tools and key management systems, yet only 31% claim to have complete knowledge of where their data is stored.
The report also highlights a dangerous lag in cloud security. Less than half of sensitive data stored in the cloud is encrypted, and only 8% of manufacturers have encrypted the vast majority (75%+) of their sensitive cloud assets. As the sector moves toward "machine-speed" operations, credential theft (reported by 57%) and the threat of future quantum-driven encryption compromise have become urgent board-level concerns.
## Business Impact
### For the Companies Involved (Thales)
- Positions Thales as a thought leader in the intersection of Industrial IoT (IIoT), AI security, and Post-Quantum Cryptography (PQC).
- Validates the need for Thales’ integrated data protection and key management platforms to solve the "tool sprawl" identified in the report.
### For Competitors
- Competitors in the DSPM (Data Security Posture Management) and IAM (Identity & Access Management) space see a clear market opportunity in manufacturing, where credential theft and lack of data visibility are rampant.
### For Customers (Manufacturers)
- **Financial & Reputational Risk:** A majority of firms reported reputational damage from AI-fueled attacks.
- **Operational Complexity:** Increased overhead due to managing redundant security tools without achieving comprehensive data visibility.
### For the Market
- Shift in budget allocation toward AI defense and Post-Quantum Cryptographic prototyping (currently 61% of the market).
- Increased pressure on cloud service providers to offer more seamless, default encryption for industrial clients.
## Technical Implications
- **Encryption Gap:** The low encryption rates in the cloud suggest a technical friction point between data usability for AI analytics and security protocols.
- **Identity Crisis:** Credential theft is the primary vector for cloud breaches, suggesting that MFA (Multi-Factor Authentication) implementation is either bypassed or insufficient for modern industrial environments.
- **PQC Readiness:** A significant move toward evaluating post-quantum cryptographic algorithms to stay ahead of "harvest now, decrypt later" threats.
## Strategic Analysis
- **Market Positioning:** Manufacturing remains a "laggard" in basic data hygiene (encryption/visibility) compared to the general market, despite being a high-value target for state actors and cybercriminals.
- **Competitive Advantage:** Firms that can consolidate their security stack (reducing tool sprawl) while implementing automated data discovery will achieve higher resilience.
- **Challenges:** Human error remains the top root cause of breaches (34% in general manufacturing), indicating that technical tools alone cannot solve the sector’s security woes.
## Industry Reactions
- **Analyst Opinions:** The consensus highlights a paradox: manufacturers are worried about futuristic threats (Quantum, AI) while failing to protect current cloud repositories with basic encryption.
- **Market Response:** Likely increase in demand for "Agentic AI" security blueprints and zero-trust architectures for 5G/LTE industrial environments.
## Future Outlook
- **Predictions:** Expect a surge in supply chain attacks targeting the automotive sector, where 48% of respondents already report increased prompt injection and disclosure risks.
- **What to watch for:** A consolidation of the security market as manufacturers look to replace their "5-7 disparate tools" with unified platforms that offer native AI protection.
## For Security Professionals
Practitioners must prioritize **Data Discovery and Classification** above new AI tool acquisition. Without knowing where data resides (currently only 31% visibility), new AI security tools will be ineffective. Additionally, there is an immediate need to audit cloud encryption policies and rotate secrets more aggressively to combat the 57% rise in credential theft.