Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
Android spyware campaign exploits AI platform and accessibility servic...
Emerging third-party cyber risks via agentic AI
Fraud Syndicates Now Operate Like Businesses: VIDA Urges Malaysian CIS...
Baseus Security Brings Kickstarter Success X1 Pro Smart AI Dual-Tracki...
SECOM Singapore Receives Frost & Sullivan’s 2025 Singapore C...
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      Emerging third-party cyber risks via agentic AI

      Emerging third-party cyber risks via agentic AI

      Tuesday, February 3, 2026, 10:22 AM Asia/Singapore | Features
    • Featured

      Rethinking customer identity for financial cybersecurity

      Rethinking customer identity for financial cybersecurity

      Tuesday, January 27, 2026, 4:13 PM Asia/Singapore | Features
    • Featured

      How AI is supercharging state-sponsored threat actors in Asia Pacific

      How AI is supercharging state-sponsored threat actors in Asia Pacific

      Wednesday, January 14, 2026, 4:06 PM Asia/Singapore | Features
  • Opinions
  • Tips
  • Whitepapers
  • Awards 2025
  • Directory
  • E-Learning

Select Page

Features

Addressing Asia Pacific’s rising insider threats

By Victor Ng | Wednesday, October 15, 2025, 10:18 AM Asia/Singapore

Addressing Asia Pacific’s rising insider threats

Recent research findings from Exabeam reveal that insider threats have overtaken external attacks as the top concern.

According to the research, the Asia Pacific and Japan (APJ) region is especially vulnerable, with 69% of respondents expecting insider threats to grow in the next 12 months. 53% of APJ respondents view insiders, whether malicious or compromised, as a greater risk than external actors.

As insider threats accelerate, how can APJ security leaders bridge the gap and effectively defend against sophisticated, AI-powered insider threats? We find out from Steve Wilson, Chief AI and Product Officer, Exabeam.

Exabeam’s recent research finds that insider threats have overtaken external attacks as the top concern among APJ organizations. What are the likely reasons for this growing concern?

Wilson: Over the past year, three in five (60%) APJ organizations have seen a measurable rise in insider incidents, according to Exabeam’s recent research. About half of the respondents (53%) now view insiders, whether malicious or compromised, as a greater risk than external actors.

AI is accelerating this shift. Particularly, Generative AI (GenAI) is a major driver of insider threats, as it makes attacks faster, stealthier, and more difficult to detect. The increase in insider threats is also driven by a combination of human and operational factors, including third-party dependencies and the use of unapproved AI tools, which create new opportunities for misuse.

APJ stands out globally in insider risk awareness, with 69% of organizations expecting insider threats to grow over the next 12 months, reflecting heightened awareness of identity-driven attacks.

How has AI changed the game for insider threats?

Wilson: AI has fundamentally changed the way insider threats operate. Today, insiders aren’t just people anymore. They are AI agents logging in with valid credentials, spoofing trusted voices, and making moves at machine speed. The question isn’t just who has access — it’s whether you can spot when that access is being abused.

In APJ, three in four (75%) respondents report that AI is making insider attacks more effective. The most concerning threat vectors include AI-enhanced phishing and social engineering, privilege misuse or unauthorized access, and data exfiltration. GenAI adds another dimension, as unapproved use by employees can create a dual-risk scenario where the same tools intended to boost productivity can be repurposed for malicious activity.

The convergence of insider access and AI capabilities is producing threats that evade traditional controls, highlighting their limitations and reinforcing the need for more advanced detection approaches.

Why are most insider threat programs missing the mark on threat detection today? Where is the gap?

Wilson: Most insider threat programs in APJ are still playing catch-up to a hybrid threat landscape that has already outpaced them.

An earlier research from Exabeam points to a critical gap: organizations remain reliant on reactive tools —  such as endpoint detection and response (EDR) and data loss prevention (DLP) — that provide visibility but fail to deliver the contextual behavioral intelligence needed for early detection of emerging threats. Less than half of APJ organizations (37%) use user and entity behavior analytics (UEBA), the foundational capability required to baseline normal activity and identify the subtle anomalies that signal an insider attack.

On the other hand, governance and operational readiness of AI tools are still lagging, even though 94% of APJ organizations are using some form of AI in their insider threat toolkit. More than half of executives (55%) globally believe AI tools are fully deployed, but managers and analysts say many are still in pilot or evaluation stages.

Compounding the challenge, security teams face persistent barriers: privacy resistance, fragmented tools, and difficulty interpreting user intent remain major blind spots in the face of complex insider threats.

What are some actionable steps that APJ security leaders can take to bridge the gap to better defend against insider threats?

Wilson: Security leaders in APJ need to move beyond surface-level defenses to bridge the insider threat gap. Therefore, behavioral analytics must become the foundation.

By adopting capabilities like UEBA, organizations can establish dynamic baselines of normal activity for every user and activity across various network entities. This tool empowers teams to detect unusual access patterns or data transfers by authorized users, shifting insider threat detection from reactive to proactive defense.

In an era of AI-driven threats, chasing individual alerts at scale is simply unsustainable. Security teams need a holistic view, integrating data from across their stack and deploying AI to correlate, classify, and elevate only the most critical signals. This context improves accuracy, freeing analysts from repetitive, manual tasks so they can focus on high-value investigations

Finally, strategy must meet operational reality; closing the perception gap between leadership and front-line analysts is critical. Involving analysts early in tool deployment and prioritizing measurable outcomes ensures technology investments deliver as intended. This alignment builds resilience, trust, and a security operation designed to outpace modern insider threats.

Share:

PreviousDrata Expands Global Footprint, Bringing AI-Powered Trust Management to the Asia-Pacific Region
NextThe AI paradox in cybersecurity

Related Posts

White vs Black — pitting opposing hacker camps for better cybersecurity

White vs Black — pitting opposing hacker camps for better cybersecurity

Tuesday, June 16, 2020

APAC cybersecurity trends that may surprise you

APAC cybersecurity trends that may surprise you

Thursday, December 17, 2020

Unplanned downtime costs more than you think

Unplanned downtime costs more than you think

Thursday, June 13, 2024

Addressing the challenges of fraud and compliance in the digital era

Addressing the challenges of fraud and compliance in the digital era

Wednesday, June 25, 2025

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
previous arrow
next arrow

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • 2024 Insider Threat Report: Trends, Challenges, and Solutions

    2024 Insider Threat Report: Trends, Challenges, and Solutions

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    The future of cybersecurity is a perfect storm: AI-driven attacks, cloud expansion, and the convergence …Download Whitepaper
  • Data Management in the Age of Cloud and AI

    Data Management in the Age of Cloud and AI

    In today’s Asia Pacific business environment, organizations are leaning on hybrid multi-cloud infrastructures and advanced …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • India’s WazirX strengthens governance and digital asset security

    India’s WazirX strengthens governance and digital asset security

    Revamping its custody infrastructure using multi‑party computation tools has improved operational resilience and institutional‑grade safeguardsRead more
  • Bangladesh LGED modernizes communication while addressing data security concerns

    Bangladesh LGED modernizes communication while addressing data security concerns

    To meet emerging data localization/privacy regulations, the government engineering agency deploys a secure, unified digital …Read more
  • What AI worries keep members of the Association of Certified Fraud Examiners sleepless?

    What AI worries keep members of the Association of Certified Fraud Examiners sleepless?

    This case study examines how many anti-fraud professionals reported feeling underprepared to counter rising AI-driven …Read more
  • Meeting the business resilience challenges of digital transformation

    Meeting the business resilience challenges of digital transformation

    Data proves to be key to driving secure and sustainable digital transformation in Southeast Asia.Read more

Bottom sidebar

Other News

  • Fraud Syndicates Now Operate Like Businesses: VIDA Urges Malaysian CISOs to Rethink AI-Era Defense

    Tuesday, February 3, 2026
    KUALA LUMPUR, Malaysia, Feb. 2, …Read More »
  • Baseus Security Brings Kickstarter Success X1 Pro Smart AI Dual-Tracking Security Camera to Amazon

    Tuesday, February 3, 2026
    SHENZHEN, China, Feb. 3, 2026 …Read More »
  • SECOM Singapore Receives Frost & Sullivan’s 2025 Singapore Customer Value Leadership Recognition in the Integrated Security Services Industry

    Monday, February 2, 2026
    The company is recognized for …Read More »
  • BIGO Ads Enhances IAA Traffic Quality and Transparency Through Deepened Partnership with Pixalate

    Friday, January 30, 2026
    SINGAPORE, Jan. 30, 2026 /PRNewswire/ …Read More »
  • Hikvision earns ISO/IEC 29147 and ISO/IEC 30111 certification for vulnerability management

    Friday, January 30, 2026
    HANGZHOU, China, Jan. 30, 2026 …Read More »
  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 CybersecAsia All Rights Reserved.