blancco.com Growing Risks from ROT Data in Cybersecurity
Article Content
- •58% of enterprises faced data breaches in the last year, with significant ROT data risks.
- •Only 21% of enterprise data is classified, complicating data protection efforts.
- •Physical destruction of devices remains common, but certified data sanitization is recommended.
Recent reports indicate that ROT (Redundant, Obsolete, and Trivial) data is becoming a significant security risk for enterprises. A 2026 study revealed that 58% of organizations experienced a data breach in the past year, with 32% of those breaches attributed to stolen or misplaced devices containing sensitive information. The lack of data classification is alarming, with only 21% of enterprise data being categorized, making effective data protection challenging. Furthermore, physical destruction of devices is still a common practice, with 43% of mobile devices and 35% of laptops destroyed to secure data, despite being inefficient. Organizations are urged to adopt certified data sanitization methods to mitigate risks associated with ROT data. The findings highlight the need for better alignment of data management policies with actual organizational practices.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Common questions
What is ROT data?
How can organizations mitigate ROT data risks?
What percentage of data is classified in enterprises?
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…