---
title: 90 Percent of APAC SMBs Reported Cyber Incidents in Past Year Survey
url: https://www.dataloco.com/en/90-percent-of-apac-smbs-reported-cyber-incidents-in-past-year-survey
published: 2026-10-09T15:21:08+00:00
language: en
section: Security
source: https://www.dailysecu.com/news/articleView.html?idxno=208759
organizations: Kaspersky, Dailysecu
publisher: Dataloco
---

# 90 Percent of APAC SMBs Reported Cyber Incidents in Past Year Survey

A recent survey found that 87 percent of small and medium sized enterprises across Asia Pacific experienced a cyber incident within the last twelve months. The study covered firms with fewer than five hundred employees and revealed that only thirteen percent avoided any breach. Researchers examined eight thousand seven hundred professionals across eighteen nations and ranked Vietnam highest with ninety seven percent reporting attacks followed by Malaysia ninety five percent Indonesia ninety two percent India eighty seven percent Thailand eighty two percent and China sixty seven percent. Vulnerability exploitation emerged as the most common vector at twenty percent while phishing accounted for nineteen percent and ransomware eighteen percent. Six percent of respondents said they had faced a zero day exploit.

Kaspersky’s 2026 SMB Threat Report highlighted that digital transformation and automated attack tools are narrowing the gap between large and small targets. Internal weaknesses such as low staff awareness twenty six percent lack of expertise twenty four percent outdated software twenty three percent and insufficient risk assessments twenty two percent were cited as key factors. Seventy five percent of companies plan to strengthen IT security this year and seventy eight percent of SMBs confirmed they have already increased cybersecurity budgets. Forty eight percent intend to expand IT and security staff while thirty two percent will invest in extended detection and response platforms network detection and response solutions and security information and event management systems. Ilia Malkin Kaspersky head of threat research said organizations of any size can become targets of sophisticated attacks and that growth stage firms must balance limited budgets with stronger defenses.

Adrian Hia Kaspersky Asia Pacific general manager added that SMBs are no longer secondary targets and that attackers now use tactics previously reserved for enterprises. He urged firms to simplify security frameworks focus on core systems protect critical data and invest in staff training especially against phishing deepfake and voice phishing. The report recommends immediate revocation of access when employees leave or change roles regular data backups and adoption of least privilege principles across cloud services. External managed detection and response services were suggested for firms lacking internal expertise.

## This story in other languages

- [Italiano](https://www.dataloco.com/it/87-delle-pmi-apac-hanno-subito-attacchi-informatici-nellultimo-anno-rivela-kaspersky)
- [Deutsch](https://www.dataloco.com/de/neun-von-zehn-kleinen-und-mittleren-unternehmen-im-asiatisch-pazifischen-raum-waren-cyberangriffen-ausgesetzt)
- [Norsk](https://www.dataloco.com/no/nitti-prosent-av-sma-og-mellomstore-bedrifter-i-asia-stillehavet-har-opplevd-cyberangrep)
- [Português (Brasil)](https://www.dataloco.com/pt-br/87-das-empresas-de-medio-porte-da-asia-pacifico-sofrem-ataques-ciberneticos-em-um-ano-diz-kaspersky)
