South Korea probes bank breaches amid suspected AI-powered attacks

South Korean Banks Targeted by Suspected AI-Powered Attacks, Leaving Thousands of Customers Vulnerable

A series of cyberattacks on South Korea’s financial institutions has left thousands of customers’ personal data exposed. The country’s Financial Services Commission (FSC) held an emergency meeting to address the situation, confirming a data breach at Shinhan Bank and similar incidents affecting other major banks, including Kookmin Bank.

Shinhan Bank and KB Kookmin Bank are two of South Korea’s largest private commercial banks, each holding over $400 billion in assets. The attacks have compromised sensitive information, with reports suggesting that 25,000 customers had their details leaked at Shinhan Bank and 119,000 clients’ credit card information exposed at Kookmin Bank. Hana Bank was also found to have suffered a limited-scope breach after its sales-support system was compromised.

The FSC has instructed financial companies in the country to take immediate action to prevent further breaches. This includes inspecting all externally accessible IT systems and services, reducing unnecessary information exposure, and checking for missing or inadequate authentication and access controls. Authorities have also pledged to oversee consumer protection and compensation, as well as analyze the incidents to identify necessary regulatory improvements.

The use of AI-powered attacks is suspected in these breaches, with local media outlets reporting that a server used in the attacks had an HTML page title containing a Chinese-language string associated with ARTEX AI. While this doesn’t confirm the involvement of a specific threat actor, several security experts believe that AI-based attack automation tools were used in the breaches.

The AI-powered nature of these attacks is particularly concerning, as it suggests that hackers may be using sophisticated and automated tools to exploit vulnerabilities. This highlights the need for financial institutions to stay ahead of the curve when it comes to cybersecurity. By understanding how AI-powered attacks work, organizations can better prepare themselves against similar threats in the future.

In practical terms, this means that financial institutions should prioritize continuous monitoring and vulnerability assessment, as well as invest in robust security measures such as encryption and access controls. They should also stay informed about emerging threats and trends in cybersecurity, including the use of AI-powered attacks. By taking these steps, organizations can reduce their risk of being targeted by sophisticated cyberattacks and protect their customers’ sensitive information.


Source: Bleeping Computer — 2026-10-05