AI systems, tools, and applications are increasingly embedded across organizations in Asia. More organizations are deploying managed AI applications, AI’s role in everyday applications and agentic workflows are growing, and security, data, and malware risks are emerging with these shifts.
AI use continues to grow: Over the past year, active AI users rose from 55% to 74% of total users based in Asia. The use of organization-managed AI applications climbed from 41% to 74%, while the use of personal AI accounts fell from 71% to 46%. But AI activity within organizations isn’t limited to dedicated tools or direct usage: 98% of employees use applications with embedded AI features, and 92% interact with systems that use customer or user data for training.
Sensitive data travel AI workflows: Regulated data accounts for 61% of AI-related data policy violations in Asia, followed by intellectual property at 19%, source code at 14%, and passwords and API keys at 5%. Remote Model Context Protocol (MCP) activity has surged over the period, with the volume of users up to 398%, and volume of events up to 259%. Organizations need to understand which AI applications and agents are operating within their environments, but also the users and systems they interact with, and what they can access.
Attackers are capitalizing on the AI trend: AI lures are consistently targeting corporate users, with activity rising steadily from February through June 2026 rather than in a single short burst. The rate climbed to a sustained level well above the earlier baseline over those months, with a modest peak in May reaching around 170 users per 100,000. Malicious AI link interactions followed a similar pattern, peaking at 250 per week per 100,000 users in February 2026 before settling back to around 50. Popular AI services are increasingly part of the attack chain.
