Vietnam.Vn AI-Enabled Cyberattacks Target South Korean Banks
Article Content
- •Seven South Korean banks suffered data breaches affecting over 65,000 customers.
- •Authorities suspect the use of an AI-based tool called Artex in the attacks.
- •The Financial Supervisory Service had issued 17 warnings about potential vulnerabilities prior to the breaches.
A series of cyberattacks have compromised personal data at seven South Korean financial institutions, with authorities investigating the potential use of an AI-based hacking tool. The attacks, which affected Shinhan Bank, KB Kookmin Bank, and others, resulted in the exposure of sensitive information for over 65,000 customers. The Financial Supervisory Service had issued 17 warnings regarding potential vulnerabilities before the breaches occurred. The attackers reportedly used a Chinese-developed AI penetration-testing platform called Artex, which adapts its intrusion methods based on prior attempts. Detection of the breaches was notably slow, with delays of up to 68 hours reported. No confirmed financial losses have been reported as of October 6, 2026. The Financial Services Commission has since ordered banks to enhance security measures and block unnecessary external access.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track BNK Busan Bank in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
How many customers were affected?
What security measures are being implemented?
What type of data was compromised?
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Sets Oct. 11 Deadline for Patching Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog after they were exploited by the China-linked group Flax Typhoon. Federal agencies must patch or retire the affected software by October 11, 2026. The vulnerabilities…