Skip to main content
SecurityEnterpriseTools

AI-powered hacking tools enabled a likely single attacker to breach multiple South Korean banks

Source: The Decoder (opens in a new tab) · Matthias Bastian

Intel Summary

According to CrowdStrike, a suspected Chinese-speaking attacker breached multiple South Korean financial institutions using ARTEX, an open-source automated penetration testing tool powered by AI models including DeepSeek and GLM-5.3. The incident resulted in the theft of over 25,000 customer records from Shinhan Bank alone, demonstrating how AI-driven tooling enables individual actors to execute large-scale attacks.

Why It Matters

This incident provides concrete evidence of offensive AI tooling being actively weaponised in the wild against critical infrastructure. Enterprise security teams must account for automated, agentic vulnerability discovery and exploitation that significantly lowers the barrier to entry and operational cost for threat actors targeting financial institutions.

Organizations & Entities