Accelerated AI-driven cyber attacks expose identity weaknesses across APAC enterprises

by

Rei Fortes

-

2 months ago

Accelerated AI-driven cyber attacks expose identity weaknesses across APAC enterprises

Singapore – Cybersecurity investigations across the Asia Pacific region are increasingly shaped by faster, AI-enabled intrusions and weaknesses in identity controls, according to the recent 2026 report by Palo Alto Networks Unit 42.

Drawing on more than 750 incident response cases worldwide in 2025, the report indicates that organisations in APAC are confronting the same structural pressures seen globally: compressed attack timelines, expanding digital estates and fragmented identity management. 

The findings suggest that threat actors are exploiting these conditions to accelerate compromise and extend their reach across cloud, SaaS, and on-premises environments.

The report further cited that the fastest incidents progressed from initial access to data exfiltration in just over an hour, marking a significant reduction in response windows compared with the previous year. Automation and AI are being used to streamline reconnaissance, refine phishing campaigns and scale malware deployment. 

For enterprises across the region, where digital transformation and cloud adoption continue at pace, the shrinking gap between intrusion and impact presents operational challenges for security teams.

“Enterprise complexity has become the adversary’s greatest advantage. This risk is compounded as attackers increasingly target credentials, utilising autonomous AI agents to bridge human and machine identities for independent action,” Sam Rubin, SVP of unit 42 consulting & threat intelligence at Palo Alto Networks, said. 

“To mitigate these threats, organisations must reduce complexity and move to a unified platform approach that relentlessly eliminates implicit trust.”

Additionally, the report highlighted how identity-related exposure remains a dominant factor. In nearly nine in ten investigations reviewed, shortcomings linked to credentials or access governance played a meaningful role. Most initial footholds were connected to identity-based techniques such as credential misuse or social engineering, rather than direct exploitation of software flaws. 

The report also showcased widespread over-privileging in cloud environments, increasing the likelihood that a single compromised account can escalate into a broader breach affecting regional operations.

Meanwhile, complexity across multiple attack surfaces further compounds the risk. A large majority of incidents involved activity spanning at least two environments, including endpoints, cloud infrastructure and SaaS platforms. This interconnectedness is particularly relevant in APAC markets, where organisations often rely on a mix of global cloud providers, regional data centres and third-party integrations to support cross-border operations. 

The study also identified a marked rise in incidents involving SaaS ecosystems and trusted integrations. Cases in which SaaS data played a role have grown sharply over the past three years, reflecting heavier reliance on APIs and automated workflows. 

Across the cases reviewed, most breaches were linked not to novel exploits but to preventable gaps in visibility, inconsistent control implementation and excessive implicit trust between systems and identities. 

For APAC organisations balancing rapid growth with regulatory and operational complexity, the findings underline the importance of consolidating oversight across identity, cloud and SaaS estates, and of reducing unnecessary access privileges before attackers are able to exploit them.

Recognise the innovators redefining commerce at the Retail & E-commerce Excellence Awards Asia Pacific 2026! Taking place this December 2026, we celebrate the region’s most impactful retail strategies, standout e-commerce experiences, and forward-thinking leaders—submit your entries today!
Honour the women shaping the future of marketing and technology at the Empowered Women Awards 2026! This December 2026, we celebrate inspiring leaders, changemakers, and rising voices driving impact across the industry—submit your entries today!
Share

RECENT ARTICLES

HDBank taps London Stock Exchange to broaden global funding routes for Vietnamese firms
Paymentology enters Australian market to support evolving fintech, digital payments landscape
AEON360, Google Cloud collaborate on AI ecosystem to enhance retail experiences in Southeast Asia
Sumsub taps Go Digital Philippines to strengthen digital trust, AI governance across ASEAN
ITSEC Asia launches IntelliBron Aman Enterprise to expand mobile cybersecurity across Indonesia
Ellipse 3

RELATED ARTICLES

Anomali taps ABP Securite to expand intelligence-driven cybersecurity in Asia Pacific
New report indicates 89% surge in AI-driven cyber attacks
New report warns of accelerating digital and AI-driven threats across APAC
Ellipse 3

FEATURED ARTICLES

Cybersecurity beyond technicalities: Building trust and credibility in times of crisis
Todd Schweitzer Brankas’ CEO on significance of open finance to the future of banking
Osome’s new CEO Eugenio Ferrante on building momentum to strengthen fintech solutions for entrepreneurs, startups

Subscribe to UpTech Media Newsletter