New report indicates 89% surge in AI-driven cyber attacks across APAC

by

Rei Fortes

-

2 days ago

New report indicates 89% surge in AI-driven cyber attacks

Singapore – The latest 2026 global threat report from CrowdStrike revealed a sharp acceleration in cyber threat activity across Asia Pacific, driven by the rapid adoption of artificial intelligence by both criminal and state-linked adversaries.

The report highlights an 89% rise of year-on-year AI-enabled attacks with the average eCrime breakout time falling to 29 minutes, representing a 65% increase in speed compared with 2024. The fastest recorded breakout took just 27 seconds, while in one case data exfiltration began within four minutes of compromise.

The report mentioned how the APAC region is a central focus of state-linked operations, particularly from China- and DPRK-aligned groups. China-nexus activity increased 38% globally, with multiple campaigns heavily targeting organisations in Australia, India, Indonesia, the Philippines and across Southeast Asia. Logistics saw an 85% rise in targeting, alongside notable increases in telecommunications and financial services.

Meanwhile, 40% of vulnerabilities exploited by China-linked actors involved internet-facing edge devices, such as VPNs and firewalls, while 67% of exploited flaws provided immediate remote code execution. The report notes that newly disclosed vulnerabilities were frequently weaponised within days, narrowing the window for patching and mitigation.

“Breakout time is the clearest signal of how intrusion has changed. Adversaries are moving from initial access to lateral movement in minutes,” Adam Meyers, head of counter adversary operations at CrowdStrike, commented. 

“AI is compressing the time between intent and execution while turning enterprise AI systems into targets. Security teams must operate faster than the adversary to win.”

Additionally, DPRK-linked activity also intensified, with incident volume rising by more than 130% in 2025. One operation attributed to PRESSURE CHOLLIMA resulted in the theft of cryptocurrency valued at approximately $1.46b, marking the largest publicly reported cryptocurrency heist to date. Several DPRK-aligned groups were also observed conducting supply chain attacks and targeting software developers to enable downstream compromise.

Across the region, cloud-conscious intrusions also rose 37%, including a 266% increase among state-nexus actors. Valid account abuse accounted for 35% of cloud incidents, underlining the growing importance of identity-based attacks. The majority of detections— 82%—were malware-free, reflecting a shift towards interactive intrusions in which attackers use legitimate credentials and trusted tools to blend into normal business activity.

The findings indicate that organisations in APAC face a threat environment defined by speed, automation and the exploitation of trusted systems. 

As AI becomes embedded across enterprise operations, it is simultaneously expanding the attack surface and accelerating adversary tradecraft, compressing response times for defenders across the region.

Celebrate the creativity and brilliance of advertising at the Advertising Awards Asia Pacific 2026! Happening on April 2026, we’ll be honouring the region’s most trailblazing advertising campaigns and visionary leaders— submit your entries today!
The Content Marketing Awards Asia Pacific 2026 by MARKETECH APAC is calling on brands, agencies, and tech innovators leading the next wave of storytelling innovation. Happening this May 2026 — show the region your brilliance and submit your entries today!
Share

RECENT ARTICLES

Microsoft releases new advisory after reports of Copilot summarising confidential emails
Microsoft, OpenAI reaffirm partnership terms amid new AI investments
New report indicates 89% surge in AI-driven cyber attacks across APAC
Japan Fair Trade Commission raids Microsoft Japan over suspected antitrust breaches
Telkomsel, Circles introduce SaaS platform to modernise Indonesian telco systems
Ellipse 3

RELATED ARTICLES

Proofpoint taps Concentrix to expand APAC cybersecurity collaboration for enterprises, SMBs
Data protection, recovery capabilities needed to strengthen cyber resilience in Philippines
Delinea strengthens APAC leadership with senior appointments to drive regional expansion
Ellipse 3

FEATURED ARTICLES

Cybersecurity beyond technicalities: Building trust and credibility in times of crisis
Todd Schweitzer Brankas’ CEO on significance of open finance to the future of banking
Osome’s new CEO Eugenio Ferrante on building momentum to strengthen fintech solutions for entrepreneurs, startups

Subscribe to UpTech Media Newsletter