Malaysia's cyber threat landscape is undergoing a significant structural transformation as rapid digitization across critical sectors outpaces defensive capabilities, making the nation an increasingly attractive target for both state-backed espionage and opportunistic ransomware gangs, Industrial Cyber reports.
A new Cyfirma report highlights that China-linked clusters like APT41 and Mustang Panda are actively pursuing intelligence within semiconductor supply chains and government networks, while financially driven actors such as Lazarus Group and FIN7 pose persistent risks to banking and digital assets. "Russian-aligned actors appear more opportunistic," the report notes, relying on broad credential harvesting rather than tailored campaigns.
Meanwhile, phishing dominates digital fraud, accounting for up to seventy-five percent of reported incidents by late 2025, with losses already surpassing one billion ringgit in the first half of that year. The convergence of geopolitical significance, amplified by proximity to the Strait of Malacca, and an expanding electronics manufacturing footprint has widened the attack surface considerably. Defenders now face a dual-threat environment where sophisticated social engineering, including AI-generated deepfakes in local dialects, coexists with high-volume DDoS barrages exceeding three hundred fifty gigabits per second.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
