Your perspective is correct. We call them shadow developers, but it's a massive issue and security threat. The more tools Microsoft adds to their AI admin center (and put behind that ridicilous Agent365 DLC license) the more we see just how big of an issue it has become. People are using their personal credit cards to buy AI tools and use them wildly irresponsible.
In the big threat picture a vibe coded web tool that's not on the internet and runs in total isolation on it's own management group on the "this might get hacked" tenant in Azure is nothing though. I'd worry more about all that OT which was compromised from the factory which sits around in the energy sector. Especially because it's very easy to draw you a risk analysis that will tell you that unless you're running a Nuclear Powerplant then it makes no financial sense to secure your stuff. The audits are so rare and the consequences so low that it's cheaper to just pay the fine (if you ever get one).
Most actual security happens when someone on the ground decides that it's just too stupid that something clearly labeled "DO NOT PUT ON THE INTERNET" was put directly on the internet.