AI Inferences to Drive Most Privacy Incidents by 2029
Gartner report warns most privacy incidents by 2029 will stem from AI-generated inferences about individuals rather than direct data exposure.
New Delhi, July 31 — Most privacy incidents will arise from AI-generated inferences about individuals by 2029, rather than from the direct exposure of personally identifiable information, according to a report released on Friday.
The analysis from Gartner, Inc. states that advances in generative AI and machine learning now enable attackers to extract sensitive attributes—such as health conditions or behavioural patterns—from seemingly innocuous, anonymised or aggregated data. As organisations reduce the volume of personal data they store in response to regulatory and cost pressures, threat actors’ access to AI tools allows them to conduct inference-based attacks.
“There is a fundamental shift underway from data exposure to insight exposure,” said Bart Willemsen, VP Analyst at Gartner. “Organisations have historically focused on protecting raw personal data, but AI can now reconstruct deeply personal insights without ever breaching traditional data controls. Privacy risks are increasingly emerging from what AI algorithms infer about individuals rather than what data is directly exposed.”