Accelerated AI-driven cyber attacks expose identity weaknesses across APAC enterprises

by

Rei Fortes

-

1 hour ago

Accelerated AI-driven cyber attacks expose identity weaknesses across APAC enterprises

Singapore – Cybersecurity investigations across the Asia Pacific region are increasingly shaped by faster, AI-enabled intrusions and weaknesses in identity controls, according to the recent 2026 report by Palo Alto Networks Unit 42.

Drawing on more than 750 incident response cases worldwide in 2025, the report indicates that organisations in APAC are confronting the same structural pressures seen globally: compressed attack timelines, expanding digital estates and fragmented identity management. 

The findings suggest that threat actors are exploiting these conditions to accelerate compromise and extend their reach across cloud, SaaS, and on-premises environments.

The report further cited that the fastest incidents progressed from initial access to data exfiltration in just over an hour, marking a significant reduction in response windows compared with the previous year. Automation and AI are being used to streamline reconnaissance, refine phishing campaigns and scale malware deployment. 

For enterprises across the region, where digital transformation and cloud adoption continue at pace, the shrinking gap between intrusion and impact presents operational challenges for security teams.

“Enterprise complexity has become the adversary’s greatest advantage. This risk is compounded as attackers increasingly target credentials, utilising autonomous AI agents to bridge human and machine identities for independent action,” Sam Rubin, SVP of unit 42 consulting & threat intelligence at Palo Alto Networks, said. 

“To mitigate these threats, organisations must reduce complexity and move to a unified platform approach that relentlessly eliminates implicit trust.”

Additionally, the report highlighted how identity-related exposure remains a dominant factor. In nearly nine in ten investigations reviewed, shortcomings linked to credentials or access governance played a meaningful role. Most initial footholds were connected to identity-based techniques such as credential misuse or social engineering, rather than direct exploitation of software flaws. 

The report also showcased widespread over-privileging in cloud environments, increasing the likelihood that a single compromised account can escalate into a broader breach affecting regional operations.

Meanwhile, complexity across multiple attack surfaces further compounds the risk. A large majority of incidents involved activity spanning at least two environments, including endpoints, cloud infrastructure and SaaS platforms. This interconnectedness is particularly relevant in APAC markets, where organisations often rely on a mix of global cloud providers, regional data centres and third-party integrations to support cross-border operations. 

The study also identified a marked rise in incidents involving SaaS ecosystems and trusted integrations. Cases in which SaaS data played a role have grown sharply over the past three years, reflecting heavier reliance on APIs and automated workflows. 

Across the cases reviewed, most breaches were linked not to novel exploits but to preventable gaps in visibility, inconsistent control implementation and excessive implicit trust between systems and identities. 

For APAC organisations balancing rapid growth with regulatory and operational complexity, the findings underline the importance of consolidating oversight across identity, cloud and SaaS estates, and of reducing unnecessary access privileges before attackers are able to exploit them.

Celebrate the creativity and brilliance of advertising at the Advertising Awards Asia Pacific 2026! Happening on July 2026, we’ll be honouring the region’s most trailblazing advertising campaigns and visionary leaders— submit your entries today!
The Content Marketing Awards Asia Pacific 2026 by MARKETECH APAC is calling on brands, agencies, and tech innovators leading the next wave of storytelling innovation. Happening this July 2026 — show the region your brilliance and submit your entries today!
Share

RECENT ARTICLES

Singtel Group, Sierra to advance AI-driven customer engagement in Singapore 
Accelerated AI-driven cyber attacks expose identity weaknesses across APAC enterprises
Singtel, Ericsson collaborate to enhance 5G Advanced in Singapore 
Trusting Social, Welcome Bank roll out digital eKYC with eSignature solutions in Philippines
Indosat Ooredoo Hutchison opens Cisco-powered Security Command Centre in Jakarta
Ellipse 3

RELATED ARTICLES

Anomali taps ABP Securite to expand intelligence-driven cybersecurity in Asia Pacific
New report indicates 89% surge in AI-driven cyber attacks
New report warns of accelerating digital and AI-driven threats across APAC
Ellipse 3

FEATURED ARTICLES

Cybersecurity beyond technicalities: Building trust and credibility in times of crisis
Todd Schweitzer Brankas’ CEO on significance of open finance to the future of banking
Osome’s new CEO Eugenio Ferrante on building momentum to strengthen fintech solutions for entrepreneurs, startups

Subscribe to UpTech Media Newsletter