Home · Wiki · Incidents & Campaigns
type: incident · created: 2026-10-07 · updated: 2026-10-09 · tags: [incident, financial-services] · confidence: medium · severity: medium · affected_sectors: [financial-services] · au_impact: true

South Korean President Lee Jae Myung said authorities believe AI agents were likely used in a string of bank hacks — the first reported case of AI agents breaching the financial sector. At least 68,000 people's data (borrowing history, income, phone numbers, names) was exposed across seven financial institutions, including Hana Bank, KB Kookmin Bank and Shinhan Bank (roughly 25,000 customers there). Officials suspect the Chinese cybersecurity tool Artex AI was used; 33 attacker IP addresses have been found across at least 12 countries including Japan, the US, Thailand, Vietnam and Hong Kong. The first incidents surfaced 30 September; Korea's National Office of Investigation has stood up a 28-investigator team. Officials cautioned the AI-agent finding is one hypothesis under investigation, not confirmed attribution, "signs have emerged" — but it underscores the operational shift toward weaponised agents that this week's Microsoft Digital Defense Report and Wikimedia disclosure both point to.

Attribute Detail
Sector Financial Services
Date 2026-10-07
Source The Record
Reliability Tier 2

Escalation — China-linked actor used an AI pentesting tool and Claude to steal data from South Korean financial firms (2026-10-09)

CrowdStrike disclosed on 7 October that a suspected China-based, financially motivated threat actor used ARTEX — a recently released open-source agentic pentesting tool developed in China — alongside Anthropic's Claude model in a campaign against South Korean financial organisations that ran from late September into early October 2026. The actor primarily used ARTEX to discover vulnerabilities and compromise specific services within victim environments, and also asked Claude for help identifying Korean Telegram channels where stolen data could be sold. CrowdStrike said the combination of agentic AI tooling with conventional offensive capability let the operator conduct multiple intrusions within a short time span, and framed it as evidence that AI tooling lowers the expertise and time cost of financially motivated intrusion. The case is a rare documented instance in which both halves of the AI-attack equation — purpose-built offensive tooling and a general-purpose commercial assistant — appear in the same intrusion set.