New report indicates 89% surge in AI-driven cyber attacks across APAC

by

Rei Fortes

-

2 months ago

New report indicates 89% surge in AI-driven cyber attacks

Singapore – The latest 2026 global threat report from CrowdStrike revealed a sharp acceleration in cyber threat activity across Asia Pacific, driven by the rapid adoption of artificial intelligence by both criminal and state-linked adversaries.

The report highlights an 89% rise of year-on-year AI-enabled attacks with the average eCrime breakout time falling to 29 minutes, representing a 65% increase in speed compared with 2024. The fastest recorded breakout took just 27 seconds, while in one case data exfiltration began within four minutes of compromise.

The report mentioned how the APAC region is a central focus of state-linked operations, particularly from China- and DPRK-aligned groups. China-nexus activity increased 38% globally, with multiple campaigns heavily targeting organisations in Australia, India, Indonesia, the Philippines and across Southeast Asia. Logistics saw an 85% rise in targeting, alongside notable increases in telecommunications and financial services.

Meanwhile, 40% of vulnerabilities exploited by China-linked actors involved internet-facing edge devices, such as VPNs and firewalls, while 67% of exploited flaws provided immediate remote code execution. The report notes that newly disclosed vulnerabilities were frequently weaponised within days, narrowing the window for patching and mitigation.

“Breakout time is the clearest signal of how intrusion has changed. Adversaries are moving from initial access to lateral movement in minutes,” Adam Meyers, head of counter adversary operations at CrowdStrike, commented. 

“AI is compressing the time between intent and execution while turning enterprise AI systems into targets. Security teams must operate faster than the adversary to win.”

Additionally, DPRK-linked activity also intensified, with incident volume rising by more than 130% in 2025. One operation attributed to PRESSURE CHOLLIMA resulted in the theft of cryptocurrency valued at approximately $1.46b, marking the largest publicly reported cryptocurrency heist to date. Several DPRK-aligned groups were also observed conducting supply chain attacks and targeting software developers to enable downstream compromise.

Across the region, cloud-conscious intrusions also rose 37%, including a 266% increase among state-nexus actors. Valid account abuse accounted for 35% of cloud incidents, underlining the growing importance of identity-based attacks. The majority of detections— 82%—were malware-free, reflecting a shift towards interactive intrusions in which attackers use legitimate credentials and trusted tools to blend into normal business activity.

The findings indicate that organisations in APAC face a threat environment defined by speed, automation and the exploitation of trusted systems. 

As AI becomes embedded across enterprise operations, it is simultaneously expanding the attack surface and accelerating adversary tradecraft, compressing response times for defenders across the region.

Recognise the innovators redefining commerce at the Retail & E-commerce Excellence Awards Asia Pacific 2026! Taking place this December 2026, we celebrate the region’s most impactful retail strategies, standout e-commerce experiences, and forward-thinking leaders—submit your entries today!
Honour the women shaping the future of marketing and technology at the Empowered Women Awards 2026! This December 2026, we celebrate inspiring leaders, changemakers, and rising voices driving impact across the industry—submit your entries today!
Share

RECENT ARTICLES

Singtel Singapore launches AI programme to support SME digital transformation
ASEAN Foundation launches regional programme to counter online scams in Southeast Asia
Circles, OpenAI advance AI-driven telecom platform with concierge launch
SUNRATE gains Malaysia licence to expand payments operations
Toku launches Makimoto AI platform focused on Asia-Pacific data rules 
Ellipse 3

RELATED ARTICLES

Proofpoint taps Concentrix to expand APAC cybersecurity collaboration for enterprises, SMBs
Data protection, recovery capabilities needed to strengthen cyber resilience in Philippines
Delinea strengthens APAC leadership with senior appointments to drive regional expansion
Ellipse 3

FEATURED ARTICLES

Cybersecurity beyond technicalities: Building trust and credibility in times of crisis
Todd Schweitzer Brankas’ CEO on significance of open finance to the future of banking
Osome’s new CEO Eugenio Ferrante on building momentum to strengthen fintech solutions for entrepreneurs, startups

Subscribe to UpTech Media Newsletter