惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

F
Full Disclosure
Recorded Future
Recorded Future
T
Tenable Blog
S
Securelist
C
CERT Recently Published Vulnerability Notes
T
Threatpost
S
Schneier on Security
A
Arctic Wolf
The Hacker News
The Hacker News
C
CXSECURITY Database RSS Feed - CXSecurity.com
Know Your Adversary
Know Your Adversary
P
Privacy International News Feed
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
The Register - Security
The Register - Security
Cisco Talos Blog
Cisco Talos Blog
AWS News Blog
AWS News Blog
K
Kaspersky official blog
T
True Tiger Recordings
T
Threat Research - Cisco Blogs
V
Vulnerabilities – Threatpost
P
Palo Alto Networks Blog
T
The Exploit Database - CXSecurity.com
小众软件
小众软件
B
Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Microsoft Azure Blog
Microsoft Azure Blog
Cyberwarzone
Cyberwarzone
C
Cybersecurity and Infrastructure Security Agency CISA
T
Tor Project blog
Spread Privacy
Spread Privacy
Malwarebytes
Malwarebytes
P
Proofpoint News Feed
F
Fox-IT International blog
F
Fortinet All Blogs
P
Privacy & Cybersecurity Law Blog
G
GRAHAM CLULEY
量子位
Latest news
Latest news
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园 - 叶小钗
Project Zero
Project Zero
T
Tailwind CSS Blog
N
Netflix TechBlog - Medium
Martin Fowler
Martin Fowler
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
I
Intezer
博客园_首页
腾讯CDC
H
Hackread – Cybersecurity News, Data Breaches, AI and More
D
Darknet – Hacking Tools, Hacker News & Cyber Security

Latest from TechRadar

Smeg's iconic drip coffee maker just got a makeover to make your breakfast routine 'feel calmer and more… I spent a week testing the RedMagic 11S Pro, and its phenomenal power can't make up for a lack of upgrades elsewhere Google Health is getting heat for being 'unbelievably bad' after replacing the Fitbit app — but Google… 'AI alone is not enough': 99% of CEOs say they are getting ready for layoffs caused by AI 'The DLC is clearly having us play as Geralt, not Ciri' — The Witcher 3 fans speculate about the new Songs of the Past expansion as some hope for a Witcher 4 tie-in Samsung Wallet now supports TSA-approved digital passports for US travelers — here’s how to set yours up and… The Google Pixel 10 Pro XL has just tumbled to a brand new record-low price — it's almost as cheap as the… AI has slashed coding time in 2026, but it’s sacrificed software stability How to watch Sunrisers Hyderabad vs Rajasthan Royals: live stream 2026 IPL Eliminator from anywhere The rumors were true! The Witcher 3: Wild Hunt is getting a third expansion in 2027 called Songs of the Past — and… Dyson's new HushJet Mini Cool personal fan is finally back in stock, so grab yours now and enjoy instant relief on… Hundreds of UK trains will finally get better Wi-Fi — government promises to 'rocket boost connectivity'… I tried using ChatGPT to recreate my 1990s childhood for my kid — and suddenly our weekend had no screens at all The UK public sector doesn’t have an AI problem, it has an orchestration problem At just four inches wide, the K-Mini Mate is Keurig's smallest brewer yet, but still delivers big flavor From experimentation to execution: where agentic AI is delivering real value From AI insight to business outcomes: What enterprises need to move beyond the “Chat Phase” 10 products that launched at Microsoft Build — and what happened to them The Testaments ending explained: does Becka die, will Agnes and Commander Weston marry, does Daisy reveal the truth about June, a shock Handmaid's Tale cameo and season 2 predictions 'Protection needs to evolve' — NordVPN rebrands as an all-in-one VPN app for next-generation protection Seagate IronWolf 8TB review: There are good reasons that Seagate is still selling this internal NAS drive, but none are its price I’ve been using this standing desk for two months, and I don’t know how I survived without it — and… ‘Gorgeous big display, brilliant battery life': Our favourite premium Android tablet for drawing and gaming is currently an astonishing AU$915 off – save 51% Linux backlash leads to California law change on age verification — with the original lawmaker forced to make a… Off Campus season 2: shock cast departure, new romantic leads, and everything we know so far about the hit Prime Video… Corsair's Pro lineup is the company’s answer to the growing demand for AI workstations and servers NYT Connections hints and answers for Wednesday, May 27 (game #1081) Quordle hints and answers for Wednesday, May 27 (game #1584) NYT Strands hints and answers for Wednesday, May 27 (game #815) Watching the World Cup is the one time I’d use motion smoothing on a TV — for streaming movies, I avoid this… Get ready for more bill rises — study warns data centers could hike power costs in some states over 50% by 2030 Quote of the day by Nvidia CEO Jensen Huang: "Software is eating the world, but AI is going to eat software" — A prophetic statement predicting the impending death of software Acer ProDesigner PE160WUT review: A high-res, high-refresh OLED portable monitor let down by its anti-glare display OpenAI will now let your company pay to ensure 'guaranteed capacity' for up to three years Every organization is pouring money into AI right now, and almost none of them know what their people are actually doing with it': Study reveals employees are using their personal AI accounts at work, raising a whole host of issues Microsoft's unexpected MacBook Neo challenger might be a budget laptop you've never heard of before Hackers claim to be selling 340 million stolen OnlyFans records — but experts are already skeptical on how serious… I just watched a Chinese robot make the worst eggs I've ever seen and I'm a little less worried about robots… I tested the Bosgame P4 Ultra and nothing here convinces me that AMD Zen 3 is sufficiently exciting for the current mini PC market The 4.5-star-rated Google Pixel Watch just fell back to its Black Friday price on Amazon 4 great tools to produce your own PDF bookazine ‘They choose not to buy because they want to develop their own’: China just refused to buy a single Nvidia… Windows 12 at Build 2026: What to expect Kash Patel's 'BasedApparel' website is apparently hosting ClickFix malware What is the release date for Hacks season 5 episode 10 on HBO Max? Apple’s Fitbit Air-rivaling AI health coach is delayed, new report claims, and that’s bad news for fitness… ‘Social media should be treated like tobacco’: health experts say the internet is just as bad as smoking for under-16s as UK government edges closer to introducing ban ‘Spotify Connect destroys Apple Music at this specific thing’: Apple Music fans still can’t believe the platform is behind on continuity features — but that’s not the only thing that’s getting under their skin Absolute Anonymity: This VPN allows cash payments and costs the same every month, forever Custom drone makers hit 453mph to (unofficially) break the record for fastest drone on earth — and hand-made sawtooth carbon fiber propellors made all the difference Diablo 4: Lord of Hatred is one of the best expansions I've ever played — here's why Warhorse promises that Middle-earth RPG is a 'passion project' that 'will be a living world' with a… 'Technology is never neutral': the Pope says the quiet part out loud, and it's time we accept that AI and tech's failures — and dangers — are human-made 'I'm delighted to ⁠be wrong': Sam Altman says AI won't lead to a 'jobs apocalypse' - but admits he was 'pretty wrong' on the social and economic implications it is having I spent a long weekend with the GoPro Mission 1 Pro — it survived heat, sea, sand and a couple of drops, but you need to respect its limits The UK's online safety consultation ends today — here's what it could mean for VPNs Leaked Samsung Galaxy S26 FE case images point to the most minor design change — and Samsung fans aren't… Surfshark launches new ‘Antiscam Hub’ for iOS users, rolling 5 security features into a single in-app… The Currys bank holiday sale isn't over yet — save up to 40% with 21 best deals on TVs, appliances, laptops,… Trump Mobile probing second major data leak — additional breach allegedly exposes personal info of 27,000… Fans mourn what would have been GTA 6's launch today — 'My girl surprised me with $100 today and thought… What to look for in an enterprise-grade smart dash cam The latest MacBook Air has just got a surprise new record-low price at Amazon — our favorite laptop now rivals the… NordVPN wins crucial legal battle in Spain over La Liga piracy fines Marketing doesn’t have a data problem: it has an action problem 9 portable air conditioners that are still in stock after this weekend's sweat-fest — plus our top tips on how to choose and use one Reported ransomware incidents are just the tip of the iceberg Dutton Ranch fans are already hoping one unhinged character 'doesn't survive' first season of Taylor Sheridan's Yellowstone spinoff series — but for the 'dumbest reason' 'You can really tell how long a game has been in development' — 007 First Light features a cameo of an internet star who went viral years ago Could AI-powered dash cams save businesses millions in legal fees? Observability was built for humans. AI agents need something different The Pope just warned AI could create ‘new forms of dehumanization’ — and his message feels aimed straight at Big Tech Ghost CMS flaw hijacked to target hundreds of websites with ClickFix attacks — here's how to stay safe 'It's something we've never done before': Logitech's newest flagship mouse and keyboard comes… What is the release date for The Four Seasons season 2 on Netflix? 007 First Light is the closest I’ll ever come to feeling like I'm in a Bond movie — it’s a blockbuster game that’s equal parts spy film and action shooter I tested the Geekom A9 Max 2026 Edition — and discovered a powerful AI mini PC with workstation-level performance Adorama's Memorial Day sale is ending soon — don't miss these record-low prices on the Nikon Z6 III, Sony a7CR, Canon R5 Mark II, and much more Arkane devs say the studio almost made Thief 4 and a Blade Runner game before it made Dishonored — 'We were both so excited. Blade Runner and Thief, two of our favourite things of all time' 'Somehow worse than I could ever have imagined': the new Ferrari Luce EV is getting a brutal reception, but legendary Apple designer Jony Ive has defended his choices — and there's one key decision most people agree with AI-generated threats are hitting businesses harder than ever - do you know what to look out for? The best Nintendo Switch 2 controllers: the handheld hybrids top gamepads, all tested and reviewed by us Microsoft promised it would scale back on AI visibility, but Copilot is now back to its original and invasive sidebar design Apple is introducing useful accessibility features in tvOS 27 for Apple TV 4K that will appeal to everyone, including larger text and auto-generated subtitles — but some major streaming apps don't use Apple's own app tech that enables them Is this the Honey scandal all over again? Motorola phones caught adding affiliate codes to Amazon orders Next boss says 'dramatic' fall in entry-level roles could cause job market chaos — Lord Wolfson says fall highlights 'the crisis is in youth unemployment at the moment' Why health AI needs a new approach, not just smarter algorithms Sennheiser finally launches the successor to its ultra-popular 5-star Momentum wireless headphones, and adds in great new features including Dolby Atmos — Sony and Bose have some hot competition here How .BRANDs improve domain security and user trust – even in an AI world 'ChatGPT kind of sucked' — Former Assassin's Creed director says he used AI to help him learn to… Are cyber pros fooling themselves with skills development? What is the release date for Rivals season 2 episode 5 on Hulu and Disney+? I gamed with MSI's new 4K QD-OLED monitor and it was the eye-popping HDR experience I've been waiting for 'Downtime is inevitable; prolonged disruption is not': Unplanned downtime is now costing businesses billions… Sihoo Doro C300 Pro V2 review: A robust ergonomic office chair with more features than you probably know what to do with 9 fantastic fans to help you beat the heat — recommended by a former fan tester How to watch RCB vs Gujarat Titans: live stream 2026 IPL Qualifier from anywhere Lowest ever price for the 'brilliantly budget' Corsair gaming and office chair — now £128 at… ‘When things are moving fast, people make mistakes — and those mistakes cost’: Formula 1 fans are doing everything they can to watch motorsport, but it might cost them more than they'd expect What Sudoku reveals about the limits of LLMs
The real cost of insider threats is not the incident: It’s the frequency
Nicky Choo · 2026-05-27 · via Latest from TechRadar

While much of the cybersecurity conversation focuses on how AI is transforming external threats, many organizations in Asia Pacific are dealing with a more immediate issue: the growing frequency of insider-driven incidents.

For years, cybersecurity has been shaped by the idea of the “big incident”, a single, high-impact incident that disrupts operations, exposes sensitive data, and makes headlines. But that framing no longer reflects how risk plays out in many organizations today, particularly across Asia Pacific.

APAC Vice President and General Manager, Mimecast.

Recent research shows that organizations in APAC are experiencing insider-driven cyber incidents more frequently than their counterparts in North America and Europe. On average, companies in the region face around eight such incidents each month, compared with approximately six in EMEA and five in North America.

While the cost per incident is broadly consistent globally, the higher frequency in APAC changes the equation entirely.

The real issue is not the scale of any one exposure. It is the cumulative impact of many.

From exceptional events to everyday risk

Insider-driven incidents are no longer rare or exceptional. They are becoming a routine part of operating in a digital environment.

These incidents can take many forms. An employee shares sensitive data through an unauthorized channel. Credentials are compromised and used to access internal systems. A file is inadvertently exposed through a misconfigured platform. In most cases, there is no malicious intent. The risk emerges from how people interact with systems, data and tools in the course of doing their jobs.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

What is changing is not just the nature of these incidents, but their frequency.

When organizations are dealing with multiple insider-driven events each month, the conversation shifts. This is no longer about preventing a single incident. It is about managing a continuous stream of exposure.

Why APAC is seeing more frequent incidents

The higher frequency of insider-driven incidents in APAC is not a coincidence. It reflects how organizations in the region are structured and how they operate.

Many companies across APAC manage large and geographically distributed workforces. Team collaboration across markets, time zones and digital platforms is common. Daily operations involve high volumes of communication and data exchange, often across a mix of on-premise systems, cloud storage environments and third-party applications.

This creates more opportunities for data to move and, with it, more opportunities for it to be mishandled, exposed or misused.

At the same time, organizations are rapidly adopting new tools to improve productivity, including AI tools that can access and process large volumes of information. While these tools bring clear efficiency gains, they also introduce new pathways for data exposure, often without corresponding visibility or control.

The result is an environment where insider risk is shaped less by isolated mistakes and more by the interaction between people, processes and increasingly complex digital systems.

The financial impact of insider-driven incidents is well understood. What is less often discussed is how that impact compounds over time.

Each incident carries a cost. But when incidents occur repeatedly, those costs accumulate across multiple dimensions.

Security teams are placed under constant pressure to investigate and respond. Incident response processes become stretched. Operational disruption becomes more frequent. Over time, this can erode efficiency and divert resources away from strategic initiatives.

There is also a broader impact on trust. Customers and partners expect organizations to manage their data responsibly. Repeated incidents, even if individually contained, can undermine confidence in an organization's ability to do so.

Regulatory exposure adds another layer of complexity. As governments across APAC strengthen requirements around data protection and privacy, organizations face increasing scrutiny. In Singapore, the Personal Data Protection Commission has stepped up enforcement under the Personal Data Protection Act, with organizations expected to demonstrate not just that incidents are contained, but that appropriate safeguards and processes are consistently in place.

Frequent incidents can therefore raise questions not just about technical controls, but about governance and oversight.

Why traditional approaches fall short

Many organizations continue to approach cybersecurity with a focus on external threats and technical vulnerabilities.

This approach remains important, but it does not fully address the nature of insider-driven risk.

Traditional models tend to assume that incidents are infrequent and can be managed as discrete events. They are designed to detect anomalies, respond to incidents, and restore systems to a secure state.

In an environment where incidents occur regularly, this model becomes less effective.

Responding to each incident in isolation does little to address the underlying patterns driving repeated exposure. Over time, organizations can find themselves caught in a cycle of detection and response, without reducing the overall level of risk.

Rethinking insider risk as a continuous challenge

To manage insider-driven risk effectively, organizations need to shift their perspective.

This starts with recognizing that insider risk is not an edge case. It is a core component of the modern threat landscape, shaped by everyday behavior and routine operations.

Visibility becomes critical — and increasingly, that means behavioral visibility. Organizations need to understand not just who is accessing data, but how. Sudden spikes in downloads, unusual transfers to personal applications, or attempts to disguise files by renaming them can all be early indicators of exposure. These signals are easy to miss when security teams are focused on perimeter threats, but they are often where insider risk first becomes visible.

Context is equally important. Not all actions carry the same level of risk. Understanding the intent, behavior and environment surrounding an activity allows organizations to prioritize what genuinely requires attention rather than chasing noise.

AI-driven tools add a further layer of complexity. As organizations across APAC adopt AI applications to improve productivity, these tools can access and process large volumes of sensitive information — often without corresponding visibility or controls. At the same time, AI can be a significant asset in detection, establishing behavioral baselines and surfacing anomalies that would be difficult to identify manually. The key is ensuring that AI adoption on the operational side is matched by AI-informed oversight on the security side.

Importantly, the goal is not to restrict employees but to support them. Research consistently shows that the majority of insider incidents are unintentional — the result of poor judgement or unfamiliar tools, not malicious intent. Employees should not be treated as the weakest link. They should be set up for success, with clear guidance, appropriate access, and a culture where reporting concerns feels safe rather than risky.

Managing risk at scale

As insider-driven incidents become more frequent, the challenge for organizations is not just prevention, but management at scale.

This means moving beyond reactive approaches towards models that can identify patterns, anticipate risk, and respond in a way that reduces overall exposure over time.

Zero trust principles are increasingly central to this. Limiting employee access to only what their role genuinely requires — and continuously reassessing those privileges as roles change — reduces the potential impact when an account is compromised or misused. Offboarding processes deserve particular attention. Employees who leave often retain access longer than they should, and those familiar with internal systems can represent a significant exposure window if that access is not promptly revoked.

It also requires stronger alignment between security, operations and governance. Insider risk does not sit neatly within a single function. It spans technology, people and process, and needs to be addressed accordingly. Insider risk needs to be treated as an ongoing program, not a periodic review or a compliance exercise.

In APAC, where organizations are operating in fast-moving and highly connected environments, this shift is particularly urgent. With large and distributed workforces operating across multiple markets, the conditions for insider risk are structural — building continuous risk management capability is not optional.

A different way of thinking about cyber risk

The narrative around cybersecurity has long been shaped by the idea of catastrophic events. While those events still matter, they are no longer the only, or even the primary, source of risk for many organizations.

In APAC, insider-driven incidents are happening more often, and that frequency is what makes them significant. When the average organization in the region faces around eight such incidents each month, the cumulative financial and operational impact adds up fast — even before factoring in the regulatory scrutiny that increasingly follows repeated exposure.

The question is no longer whether an incident will occur. It is how often, and how well organizations are prepared to manage the impact when it does. The organizations that manage this well will not necessarily be those with the largest security budgets. They will be those that treat insider risk as a continuous, evolving challenge — investing in the visibility, culture and controls that reduce exposure before incidents occur, not just responding after they do.

The organizations that succeed will not be those that simply prevent incidents, but those that understand and manage risk as a continuous, evolving part of doing business.

Because in today’s environment, the cost of insider risk is not defined by a single moment of failure. It is defined by how often that moment repeats.

We list the best ITSM tools, to make it simple and easy to improve your Information Technology Service Management.

This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.

The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit