• About
  • Subscribe
  • Contact
Wednesday, January 7, 2026
  • Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
FutureCISO
No Result
View All Result
Home Technology Endpoint Security

Compromised systems in SEA fueling global cybercrime

FutureCISO Editors by FutureCISO Editors
November 5, 2025
Compromised systems in SEA fueling global cybercrime

Photo by Artem Podrez: https://www.pexels.com/photo/person-holding-white-and-blue-box-5716001/

Share on FacebookShare on Twitter

Southeast Asia's rapid digital transformation has inadvertently turned it into a launchpad for global cyberattacks.

Mimecast's 2025 Global Threat Intelligence Report reveals that compromised systems within the region's burgeoning technology hubs are increasingly weaponised by cybercriminal groups. These systems serve as proxy networks, masking the true origins of malicious campaigns and complicating attribution efforts.

This poses a dual challenge for Southeast Asian CISOs: protecting their own organisations while simultaneously preventing their infrastructure from being exploited in attacks against others.

The proliferation of SMEs, distributed workforces, and cloud adoption across the region creates a fertile ground for attackers, who capitalise on weak security configurations and legacy systems to infiltrate networks.

The report highlights a concerning rise in AI-powered phishing and social engineering attacks. Attackers are leveraging generative AI to craft highly convincing lures, impersonating trusted vendors, partners, and even employees.

These sophisticated attacks bypass traditional detection tools, making employee awareness and training more critical than ever. Mimecast's analysis shows that phishing accounts for 77% of all attacks, a significant jump from 60% in 2024, with attackers likely using more AI tools.

ClickFix schemes, where users are tricked into executing malicious commands, have surged by 500% in the first half of the year.

"Asia-Pacific's rapid digitalisation and interconnected supply chains make the region a focal point for today's cyber threats," said David Sajoto, vice president and general manager, Asia-Pacific and Japan, Mimecast.

David Sajoto

"Our analysis shows that threat actors are not only targeting Asian organisations — they are actively exploiting compromised infrastructure in Southeast Asia to launch attacks globally. The message is clear: as the human layer becomes the new battleground, businesses across the region must pair awareness and education with AI-powered defences to build real cyber resilience." David Sajoto


Chart 01: The top legitimate domains used by attackers include DocSend, GetResponse, and
Sharepoint, which resolve to pages on DocSend, ClkMg.com, and Microsoft SharePoint.

Attackers are also exploiting trusted business tools like DocuSign and Salesforce, and coordinating attacks across multiple communication channels to evade detection. Certain industries, including professional education, IT software, and real estate, are experiencing a higher volume of impersonation attacks.

Related:  Tenable launches enclave security for highly secure environments

For CISOs in Southeast Asia, the report underscores the urgent need to prioritise proactive threat detection, employee awareness programs, and layered defense strategies. Embracing AI-powered security solutions and fostering a culture of cyber resilience are essential to staying ahead of evolving threats in 2025 and beyond.

Tags: Mimecastthreat intelligence
FutureCISO Editors

FutureCISO Editors

No Result
View All Result

Recent Posts

  • Most organisations unable to guarantee Data visibility
  • Sustaining confidence in cybersecurity values
  • On-premise solution to enhance cybersecurity for APAC governments
  • Navigating human risk in the age of AI: Insights for CISOs in 2026
  • Innovations to guard against cross-domain email attacks

Categories

  • Blogs
  • Compliance and Governance
  • Culture and Behaviour
  • Cybersecurity careers
  • Data Protection
  • Endpoint Security
  • Incident Response
  • Network Security
  • People
  • Process
  • Resources
  • Risk Management
  • Technology
  • Training and awarenes
  • Videos
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

[wpli_login_link]

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
  • Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl