Connect with us

Hi, what are you looking for?

AI Cybersecurity

IBM Reports 27% Surge in AI-Driven Cyberattacks in Asia-Pacific, Highlights Vulnerability Risks

IBM’s X-Force reveals a 44% surge in cyberattacks exploiting vulnerabilities in Asia-Pacific, with AI tools accelerating threats to critical services.

IBM’s latest X-Force Threat Intelligence Index reveals a significant surge in cyberattacks originating from basic security vulnerabilities, with attackers increasingly leveraging AI tools to identify and exploit these gaps more rapidly. The report identifies the Asia-Pacific region as the second most-targeted area globally, accounting for 27% of the incidents monitored by IBM X-Force.

The findings emerge amid rising concerns among regional governments and operators about threats to critical services. In Singapore, for instance, all four telecommunications providers faced coordinated attacks from the threat actor UNC3886, prompting what officials have characterized as the largest cyber response in the nation’s history. Additional research conducted by Thales in collaboration with S&P Global 451 Research indicates that 71% of organizations in the Asia-Pacific now view AI as their principal data security risk.

IBM’s X-Force observed a 44% global increase in attacks that began with the exploitation of public-facing applications. The firm attributes much of this growth to the lack of proper authentication controls and the use of AI for vulnerability discovery. The exploitation of vulnerabilities has now emerged as the leading cause of cyber incidents, accounting for 40% of cases reported by X-Force in 2025.

Ransomware shifts

Additionally, the index highlights a more crowded ransomware landscape, with a 49% year-on-year rise in active ransomware and extortion groups. The number of publicly disclosed victims has also grown by roughly 12%. IBM characterizes the ecosystem as increasingly fragmented, populated by smaller, transient operators who conduct lower-volume campaigns, complicating the attribution of attacks.

This shift is partly driven by the reuse of leaked tools, established methodologies, and the automation of certain operations through AI. Mark Hughes, Global Managing Partner for Cybersecurity Services at IBM, noted that attackers are not fundamentally altering their tactics but are instead accelerating them with AI technology. “The core issue is the same: businesses are overwhelmed by software vulnerabilities. The difference now is speed,” he stated. Hughes emphasized that security leaders must adopt a more proactive stance, utilizing agentic-powered threat detection and response to identify vulnerabilities and mitigate threats before they escalate.

In the Asia-Pacific region, malware was the primary action in 45% of observed activities, while spam and legitimate tools each accounted for 15%. Server access was noted in 10% of incidents. Exploitation of public-facing applications and the use of valid accounts were the dominant initial access vectors, representing 50% and 30%, respectively. IBM interprets these trends as indicative of weaknesses in managing internet-facing exposure and securing identities and credentials.

Data theft and damage to brand reputation were the most frequently recorded impacts, each accounting for 14% of incidents. Credential harvesting constituted 7% of the reported impacts in the region. Catherine Lian, General Manager and Technology Leader at IBM ASEAN, remarked, “Asia-Pacific continues to face a sharp increase in cyber threats, with attackers increasingly leveraging AI and exploiting gaps in basic security.” She urged organizations to prioritize identity protection and visibility across cloud and application environments to combat these evolving threats.

Manufacturing targeted

The manufacturing sector has remained the most targeted industry in the index for the fifth consecutive year, comprising 27.7% of all incidents reported by X-Force. The Asia-Pacific region accounted for 68% of manufacturing-focused incidents, with data theft being the most common reported outcome. The sector significantly overshadowed other targeted sectors, including finance and insurance at 17% and transportation at 7%.

IBM’s report also underscores identity risks associated with workplace use of AI services. The X-Force index indicates that infostealer malware resulted in the exposure of over 300,000 ChatGPT credentials in 2025, suggesting that AI platforms are now facing credential risks akin to other widely used software-as-a-service tools. Compromised credentials for chatbots could lead to risks beyond mere account access, such as data exfiltration and malicious prompt injection. Strong authentication and conditional access controls are deemed essential in mitigating such exposure.

Moreover, X-Force highlights the growing concern of supply chain compromises. The index noted a nearly fourfold increase in significant supply chain or third-party compromises since 2020, as attackers exploit trust relationships and development automation. IBM warns of a narrowing gap between nation-state actors and financially motivated groups, with tactics once associated with state-backed entities increasingly appearing among profit-driven operators. The firm anticipates that pressures on development pipelines and open-source ecosystems will intensify in 2026 as AI coding tools elevate software output, potentially introducing unvetted code into workflows.

See also
Rachel Torres
Written By

At AIPressa, my work focuses on exploring the paradox of AI in cybersecurity: it's both our best defense and our greatest threat. I've closely followed how AI systems detect vulnerabilities in milliseconds while attackers simultaneously use them to create increasingly sophisticated malware. My approach: explaining technical complexities in an accessible way without losing the urgency of the topic. When I'm not researching the latest AI-driven threats, I'm probably testing security tools or reading about the next attack vector keeping CISOs awake at night.

You May Also Like

AI Research

IBM launches a Chicago Quantum Hub to create 750 AI jobs and expands its MIT partnership to advance quantum computing and AI integration.

AI Tools

IBM and Ferrari unveil an AI-driven Scuderia app for the 2026 Formula 1 season, featuring a personalized AI Companion and competitive Game Center to...

AI Business

IBM unveils agentic AI solutions at Think 2026, promising to enhance retail operations and customer experiences through intelligent, real-time insights and automation.

AI Cybersecurity

Big Data Security Market set to soar from $28.64B in 2025 to $139.83B by 2035, driven by IBM's AI-driven solutions and a 17.3% CAGR.

AI Business

IBM's new AI-driven platform, Bob, automates the software development lifecycle, boosting productivity by 45% for over 80,000 users across enterprises.

AI Cybersecurity

Asian banks heighten cybersecurity measures as Anthropic’s Mythos tool uncovers thousands of vulnerabilities, prompting major institutions to reassess AI risks.

AI Research

IBM and MIT launch the MIT-IBM Computing Research Lab to redefine AI and quantum computing, aiming for transformative breakthroughs by 2029.

AI Technology

Cognitive collaboration market set to soar to $0.87 million by 2033, driven by 18.3% CAGR from AI advancements by leaders like Microsoft and IBM.

© 2025 AIPressa · Part of Buzzora Media · All rights reserved. This website provides general news and educational content for informational purposes only. While we strive for accuracy, we do not guarantee the completeness or reliability of the information presented. The content should not be considered professional advice of any kind. Readers are encouraged to verify facts and consult appropriate experts when needed. We are not responsible for any loss or inconvenience resulting from the use of information on this site. Some images used on this website are generated with artificial intelligence and are illustrative in nature. They may not accurately represent the products, people, or events described in the articles.