ThreatBook has unveiled its inaugural “2026 Mid-Year Asia-Pacific Threat Landscape Report,” revealing a significant rise in cybersecurity risks across the region. The report, based on an analysis of 15,205 security incidents from June 2025 to June 2026, highlights the evolving threat landscape in over 19 markets.
The report identifies four primary types of cyber threats: data breaches, ransomware, phishing, and state-affiliated Advanced Persistent Threats (APTs). Data breaches accounted for 39.9% of all attacks, with ransomware and phishing each making up 18.3%, and APTs comprising 17.9%. The Asia-Pacific region has become a major target for ransomware, with over half of ransom payments exceeding $1 million.
China, India, Australia, Japan, and South Korea are the most targeted markets, accounting for 61.78% of all attacks. China alone faced 15.4% of the incidents. Government entities are the most targeted, followed by the technology and financial services sectors. Russia and North Korea are identified as the top perpetrators of these attacks.
Hong Kong experiences a higher prevalence of APT attacks, focusing on espionage and intellectual property theft. In contrast, Singapore’s threat landscape is shaped by its role as a regional business hub, with attacks targeting multinational headquarters and financial flows.
ThreatBook’s Co-founder and CEO, Feng Xue, noted the increasing use of artificial intelligence in phishing attacks, which now account for 80% of phishing activity. He emphasised the need for intelligence-led threat hunting to keep pace with the rapidly evolving threat environment.
The report underscores the importance of staying informed about current threats, as attackers often reuse successful techniques across different markets.



