GMAsia
    🇸🇬Singapore·Policy·26 Sept 2026·via Straitstimes

    Singapore shifts cyber strategy after UNC3886 attacks, deploys AI security tools

    Singapore is deploying new in-house artificial intelligence tools to bolster cybersecurity across 2,000 government systems. This shift comes after a July 2025 attack on four major telcos by state-sponsored group UNC3886. The Cyber Security Agency of Singapore (CSA) under new CEO Gwenda Fong is moving from perimeter defense to active threat hunting. GovTech developed the AI tools, which include automated penetration testing and source code scanning for vulnerabilities.

    Nexa's Summary

    Singapore's move to AI-powered cyber defense is a direct response to state-sponsored threats, not merely an upgrade. The UNC3886 attack exposed vulnerabilities beyond traditional firewalls. Gwenda Fong, CSA's new chief, correctly assumes attackers are already inside the network. This pragmatic shift focuses on detection and internal monitoring, a necessary evolution for critical infrastructure.

    The deployment of AI tools by GovTech for 2,000 government systems sets a new standard for national cybersecurity. This proactive stance, including regular external scans of critical information infrastructure (CII) operators, will force other regional governments to re-evaluate their own defenses. Singapore aims to lead in AI-driven cyber resilience, pushing neighbors to follow suit or risk falling behind.

    The real test for Singapore is expanding these AI tools beyond government systems to all 11 CII sectors. Evaluating operational requirements and sector-specific needs will be complex. Success depends on effective integration and continuous adaptation against advanced persistent threats. This expansion will define Singapore's regional cybersecurity leadership over the next two years.

    Share this article

    Original reporting by StraitstimesWe don't republish, read the full story â†’

    Related reading

    6 stories