AI adoption is prompting organisations across Asia Pacific to rethink their cybersecurity spending, according to new research from Kaspersky, with 13% of surveyed APAC firms naming AI vulnerabilities among their top cybersecurity threats.
Globally, 41% of enterprises say AI adoption has pushed them to increase information security investment. Software vulnerability exploits (20%) and phishing (19%) remain the leading concerns across APAC, but AI-related risks are climbing the list. Concern varies widely by market: India recorded the highest share of firms flagging AI vulnerabilities at 20%, followed by Malaysia (15%), Thailand and Vietnam (13% each), Indonesia (10%) and China (7%).
Shadow AI use raises data leak concerns
Beyond external threats, 30% of APAC respondents flagged employees’ unsanctioned use of third-party AI tools such as ChatGPT and DeepSeek for work tasks, a practice known as Shadow AI, as a common risk factor. India (36%) and Malaysia (35%) reported the highest rates, followed by Vietnam (33%), China (31%), Indonesia (24%) and Thailand (18%).
Most organisations have not shut the door on these tools outright. Around 60% of APAC firms permit restricted use of third-party AI, such as barring uploads of company names or internal documents while providing usage guidelines and training. That approach is most common in China (62%), and in India, Malaysia and Vietnam (61% each).
AI integration continues despite the risks
Adoption is not slowing. Kaspersky found 85% of APAC companies are discussing, developing or piloting internal AI tools built on large language models, while 10% have already folded them into daily workflows, primarily to improve decision-making, boost process efficiency and cut human error.
“One of the clearest shifts we are seeing is that organisations are moving beyond asking whether AI has a place in the business and trying to determine how it should be adopted responsibly,” said Adrian Hia, Managing Director for Asia Pacific at Kaspersky. “Businesses that integrate cybersecurity into their AI strategies from the beginning will be better positioned to innovate with confidence as AI adoption matures.”
Kaspersky is recommending organisations pair AI adoption with dedicated threat visibility and response tools, including its own Kaspersky Next and Kaspersky Threat Intelligence products, to keep pace with the new risk categories AI introduces.



Share your thoughts