Securitybrief.Asia Microsoft 365 Accounts for 32% of Cyber Incidents in Malaysia
Article Content
- •Microsoft 365 accounted for 32% of escalated security incidents in Malaysia in 2025.
- •33.2 million malicious indicators of compromise related to Malaysian entities were found on the Dark Web.
- •Education, logistics, and conglomerates were the most frequently targeted sectors.
Simply Data's Malaysia Cyber Threat Report 2025 reveals that Microsoft 365 was involved in 32% of escalated security incidents among Malaysian organizations. The report analyzed over 120.6 billion security logs, resulting in 12.4 million alerts and 3,945 confirmed incidents. Attackers exploited misconfigured conditional access policies, weak multi-factor authentication, and compromised credentials, often obtained through phishing and Dark Web activities. The education, logistics, and large conglomerate sectors were the most targeted. Additionally, 33.2 million malicious indicators of compromise linked to Malaysian entities were detected on the Dark Web, highlighting the need for external monitoring. The findings indicate that cloud office software has become a significant vulnerability for many organizations. Access to identity systems like Azure AD poses serious operational risks if credentials are compromised. The report emphasizes that organizations must actively monitor Dark Web activities to protect their assets.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Education in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
BlueMoon Exploit Kit Targeting Chrome and Windows by Multiple State Actors A new exploit kit named BlueMoon has been rapidly adopted by at least four espionage groups, primarily linked to China, exploiting vulnerabilities in Google Chrome and Microsoft Windows. The first observed use of BlueMoon was on August 28, 2026, by the China-aligned threat actor TA412, with subsequent adoption by…