India Among Top Targets for Cyber Attacks in APAC Region
A recent report from Kaspersky’s Global Research and Analysis Team (GReAT) reveals that India is one of the five countries in the Asia-Pacific (APAC) region most vulnerable to advanced persistent threats (APTs). This emphasizes the growing risk that sophisticated cyber campaigns pose to the region. Kaspersky tracks over 900 APT groups around the world, and notably, five of the twelve most targeted nations are in APAC: China, India, Myanmar, Pakistan, and Vietnam.
In the first half of 2026, Kaspersky thwarted an impressive 75 million cyber attacks in APAC, covering a range of threats. This included 3.4 million incidents related to backdoor attacks, 2.4 million aimed at stealing passwords, and 250,000 ransomware attacks.
Cyber Attacks Become Smarter with AI
Kaspersky’s analysis indicates that cybercriminals are increasingly using artificial intelligence to enhance their operations. They are employing AI at various stages of their attacks, which allows them to automate tasks, speed up the creation of malware, and launch larger-scale operations. This advancement means cyber attackers can adapt faster, even as some traditional types of attacks saw a slight decrease in the first half of the year.
The significance of this issue is underscored by an earlier report that identified APTs as the most serious category of cyber threats, accounting for 24% of high-severity incidents globally, followed by social engineering attacks at 15% and malware incidents at 12%.
An APT describes a highly sophisticated cyber attack where hackers gain unauthorized access to a network and maintain a stealthy presence for a prolonged period, often for espionage or to steal confidential information.
APAC’s Cyber Threat Landscape
Kaspersky emphasized that APAC is a hotspot for APT activities. Sergey Lozhkin, head of research for Kaspersky in APAC and META, noted that the region’s rapid digital transformation and the complex geopolitical environment make it a target for advanced cyber threats. This reality underlines the need for consistent threat intelligence, robust cyber defenses, and enhanced cooperation among countries in the region to combat these dangers.
Risks from Software Supply Chain Attacks
Another rising concern highlighted by Kaspersky is the threat posed by software supply chain attacks. Recently, nearly one in three companies worldwide reported dealing with issues related to their software supply chains. China leads in this area, with 40% of businesses experiencing such risks.
Kaspersky cited several notable incidents involving trusted software being exploited by attackers. In one case, hackers infiltrated the update system of eScan, an antivirus product made by an Indian firm, to spread malware to its users. Similarly, attackers targeted Notepad++, a widely-used text editor, delivering a Trojan that allowed hackers to maintain access for months.
A substantial attack on the Daemon Tools website also showcased the risks, as hackers included malware with legitimate software, impacting over 2,000 victims across more than 100 countries.
Open-Source Software Vulnerabilities
Kaspersky also pointed to significant risks connected to open-source software. The volume of malicious packages targeting this type of software increased by 37% in 2025 compared to the previous year, showing a worrying trend. This highlights the importance of ensuring the security of supply chains, especially as open-source components become more integral to many applications.
The firm has developed a threat data feed focused on open-source software, providing detailed information on vulnerabilities and other risks to help organizations stay informed and protected.
Broader Cyber Threats in APAC
The findings suggest that the cyber threats faced by organizations in APAC are not just limited to direct attacks like ransomware or password theft. Kaspersky’s report, which noted 75 million blocked attacks in the first half of 2026, also indicates an increased focus on AI by cybercriminals and the heightened risk of software supply chain attacks.
Organizations must recognize that threats can arise not only from direct breaches but also through the software and services they use. The incidents involving eScan, Notepad++, Daemon Tools, and Axios underline the various methods attackers utilize to exploit trusted software and systems.
Kaspersky warns that the blend of a dynamic threat landscape, the perseverance of APTs, AI-driven attacks, and risks from software supply chains makes ongoing threat intelligence and strong cybersecurity measures essential for businesses throughout APAC.
