Asia Tech Times — Technology, science and culture across Asia

Technology, science and culture across Asia

Business Tech

Microsoft and Singapore's cyber agency formalise a threat-sharing arrangement

The multi-year arrangement will see Microsoft Singapore and the Cyber Security Agency of Singapore exchange threat intelligence and run joint operations.

At Singapore International Cyber Week 2023, Microsoft Singapore and the Cyber Security Agency of Singapore said they would deepen a multi-year collaboration, under which the two will share information, analysis and intelligence on threats, vulnerabilities, malicious campaigns and incidents, and work together on investigations involving the country's critical information infrastructure. They also said they would jointly pursue malicious infrastructure used for cybercrime.

The companies tie the arrangement to what Microsoft's Digital Defense Report 2023 found: that Singapore, along with its neighbours in the South China Sea, was targeted for intelligence collection, and that it was among the ten countries most affected by cracked copies of Cobalt Strike, a legitimate tool repurposed by attackers. Microsoft cites scale figures of its own — more than 10,000 security and threat-intelligence staff, blocking over 4,000 identity attacks a second and processing what it calls 750 billion signals a second. Tom Burt, its corporate vice-president for customer security and trust, and David Koh, the agency's chief executive, both describe the work as a shared effort between government and industry.

A memorandum is a beginning, not a result

Threat-intelligence sharing is genuinely useful, but its output is rarely visible: the public cannot see which warning prevented which incident, so a collaboration like this has to be judged by conduct rather than by the announcement. The release describes intentions — to share, to investigate, to pursue — without a metric, a duration or a named operation.

There is a mild tension in the framing, too. Microsoft is a vendor of the security products at issue and also the source of a report whose findings supply the urgency for the partnership. The company's own figures and its own report are the evidence offered here, and a reader has no independent way to check either. What would make this account meaningful a year from now is not another signing photograph but a record of what the shared intelligence actually changed.