Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
The AI paradox in cybersecurity
Addressing Asia Pacific’s rising insider threats
Drata Expands Global Footprint, Bringing AI-Powered Trust Management t...
Kyoto University Engineering Ph.D. Team Realizes Achievement Transform...
LLMs found highly vulnerable to data poisoning from just 250 malicious...
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      The AI paradox in cybersecurity

      The AI paradox in cybersecurity

      Wednesday, October 15, 2025, 11:24 AM Asia/Singapore | Features
    • Featured

      Addressing Asia Pacific’s rising insider threats

      Addressing Asia Pacific’s rising insider threats

      Wednesday, October 15, 2025, 10:18 AM Asia/Singapore | Features
    • Featured

      Unified Zero Trust is vital to plug IAM gaps and exploitable risks

      Unified Zero Trust is vital to plug IAM gaps and exploitable risks

      Tuesday, October 14, 2025, 11:58 AM Asia/Singapore | Features, Opinions
  • Opinions
  • Tips
  • Whitepapers
  • Awards 2025
  • Directory
  • E-Learning

Select Page

Features

Addressing Asia Pacific’s rising insider threats

By Victor Ng | Wednesday, October 15, 2025, 10:18 AM Asia/Singapore

Addressing Asia Pacific’s rising insider threats

Recent research findings from Exabeam reveal that insider threats have overtaken external attacks as the top concern.

According to the research, the Asia Pacific and Japan (APJ) region is especially vulnerable, with 69% of respondents expecting insider threats to grow in the next 12 months. 53% of APJ respondents view insiders, whether malicious or compromised, as a greater risk than external actors.

As insider threats accelerate, how can APJ security leaders bridge the gap and effectively defend against sophisticated, AI-powered insider threats? We find out from Steve Wilson, Chief AI and Product Officer, Exabeam.

Exabeam’s recent research finds that insider threats have overtaken external attacks as the top concern among APJ organizations. What are the likely reasons for this growing concern?

Wilson: Over the past year, three in five (60%) APJ organizations have seen a measurable rise in insider incidents, according to Exabeam’s recent research. About half of the respondents (53%) now view insiders, whether malicious or compromised, as a greater risk than external actors.

AI is accelerating this shift. Particularly, Generative AI (GenAI) is a major driver of insider threats, as it makes attacks faster, stealthier, and more difficult to detect. The increase in insider threats is also driven by a combination of human and operational factors, including third-party dependencies and the use of unapproved AI tools, which create new opportunities for misuse.

APJ stands out globally in insider risk awareness, with 69% of organizations expecting insider threats to grow over the next 12 months, reflecting heightened awareness of identity-driven attacks.

How has AI changed the game for insider threats?

Wilson: AI has fundamentally changed the way insider threats operate. Today, insiders aren’t just people anymore. They are AI agents logging in with valid credentials, spoofing trusted voices, and making moves at machine speed. The question isn’t just who has access — it’s whether you can spot when that access is being abused.

In APJ, three in four (75%) respondents report that AI is making insider attacks more effective. The most concerning threat vectors include AI-enhanced phishing and social engineering, privilege misuse or unauthorized access, and data exfiltration. GenAI adds another dimension, as unapproved use by employees can create a dual-risk scenario where the same tools intended to boost productivity can be repurposed for malicious activity.

The convergence of insider access and AI capabilities is producing threats that evade traditional controls, highlighting their limitations and reinforcing the need for more advanced detection approaches.

Why are most insider threat programs missing the mark on threat detection today? Where is the gap?

Wilson: Most insider threat programs in APJ are still playing catch-up to a hybrid threat landscape that has already outpaced them.

An earlier research from Exabeam points to a critical gap: organizations remain reliant on reactive tools —  such as endpoint detection and response (EDR) and data loss prevention (DLP) — that provide visibility but fail to deliver the contextual behavioral intelligence needed for early detection of emerging threats. Less than half of APJ organizations (37%) use user and entity behavior analytics (UEBA), the foundational capability required to baseline normal activity and identify the subtle anomalies that signal an insider attack.

On the other hand, governance and operational readiness of AI tools are still lagging, even though 94% of APJ organizations are using some form of AI in their insider threat toolkit. More than half of executives (55%) globally believe AI tools are fully deployed, but managers and analysts say many are still in pilot or evaluation stages.

Compounding the challenge, security teams face persistent barriers: privacy resistance, fragmented tools, and difficulty interpreting user intent remain major blind spots in the face of complex insider threats.

What are some actionable steps that APJ security leaders can take to bridge the gap to better defend against insider threats?

Wilson: Security leaders in APJ need to move beyond surface-level defenses to bridge the insider threat gap. Therefore, behavioral analytics must become the foundation.

By adopting capabilities like UEBA, organizations can establish dynamic baselines of normal activity for every user and activity across various network entities. This tool empowers teams to detect unusual access patterns or data transfers by authorized users, shifting insider threat detection from reactive to proactive defense.

In an era of AI-driven threats, chasing individual alerts at scale is simply unsustainable. Security teams need a holistic view, integrating data from across their stack and deploying AI to correlate, classify, and elevate only the most critical signals. This context improves accuracy, freeing analysts from repetitive, manual tasks so they can focus on high-value investigations

Finally, strategy must meet operational reality; closing the perception gap between leadership and front-line analysts is critical. Involving analysts early in tool deployment and prioritizing measurable outcomes ensures technology investments deliver as intended. This alignment builds resilience, trust, and a security operation designed to outpace modern insider threats.

Share:

PreviousDrata Expands Global Footprint, Bringing AI-Powered Trust Management to the Asia-Pacific Region
NextThe AI paradox in cybersecurity

Related Posts

International cybersecurity rankings: Are they useful?

International cybersecurity rankings: Are they useful?

Monday, March 9, 2020

Can AI-enhanced blockchain solve financial security woes?

Can AI-enhanced blockchain solve financial security woes?

Tuesday, April 5, 2022

Vulnerabilities in legacy systems aggravate cybersecurity challenges

Vulnerabilities in legacy systems aggravate cybersecurity challenges

Thursday, August 18, 2022

Celebrating Valentine’s Day amid the pandemic: from roses to romance-baiting

Celebrating Valentine’s Day amid the pandemic: from roses to romance-baiting

Tuesday, February 16, 2021

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
previous arrow
next arrow

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • 2024 Insider Threat Report: Trends, Challenges, and Solutions

    2024 Insider Threat Report: Trends, Challenges, and Solutions

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    The future of cybersecurity is a perfect storm: AI-driven attacks, cloud expansion, and the convergence …Download Whitepaper
  • Data Management in the Age of Cloud and AI

    Data Management in the Age of Cloud and AI

    In today’s Asia Pacific business environment, organizations are leaning on hybrid multi-cloud infrastructures and advanced …Download Whitepaper
  • Mitigating Ransomware Risks with GRC Automation

    Mitigating Ransomware Risks with GRC Automation

    In today’s landscape, ransomware attacks pose significant threats to organizations of all sizes, with increasing …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • HOSTWAY gains 73% operational efficiency for private cloud operations  

    HOSTWAY gains 73% operational efficiency for private cloud operations  

    With NetApp storage solutions, the Korean managed cloud service provider offers a lean, intelligent architecture, …Read more
  • CISOs can navigate emerging risks from autonomous AI with a new security framework

    CISOs can navigate emerging risks from autonomous AI with a new security framework

    See how security leaders can adopt layered strategies addressing intent, governance, and oversight to manage …Read more
  • MoneyMe strengthens fraud prevention and credit decisioning

    MoneyMe strengthens fraud prevention and credit decisioning

    Australian fintech strengthens risk management with SEON to scale lending operations securely and efficiently.Read more
  • PT Kereta Api Indonesia announces nationwide email and communication overhaul

    PT Kereta Api Indonesia announces nationwide email and communication overhaul

    The state railway operator’s upgraded email system improves privacy, operational reliability, and regulatory alignment for …Read more

Bottom sidebar

  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2025 CybersecAsia All Rights Reserved.