CrowdStrike says China-based suspect used AI tools in South Korean bank hacks
CrowdStrike said the suspect used ARTEX and AI coding tools while targeting South Korean banks, and investigators found signs of financially motivated activity.
- U.S. cybersecurity firm CrowdStrike reported Wednesday that a 26-year-old suspect based in China's Guangdong province may be behind recent cyberattacks targeting South Korea's financial sector.
- Between late September and early October, financial institutions including Hana Bank, KB Kookmin Bank, and Shinhan Bank reported data breaches, prompting authorities to launch investigations into the coordinated attacks.
- CrowdStrike identified two servers used in the attacks and found a draft resume citing age 26 and education at South China University in Guangdong, created through Claude Code sessions using Chinese-developed tool ARTEX.
- On Tuesday, South Korean President Lee Jae Myung called for heightened cybersecurity measures as authorities launched formal probes into the data breaches affecting multiple financial institutions.
- CrowdStrike assessed with "moderate confidence" that the actor is financially motivated and linked the suspect to other cyber activity involving a Telegram-based NFT marketplace and Chinese payment platforms.
22 Articles
22 Articles
US cybersecurity firm CrowdStrike links attacks to Chinese-developed hacking tool, says stolen data may have been targeted for sale
China-based suspect used AI tools in South Korean bank hacks, says CrowdStrike
The suspect behind recent cyberattacks targeting South Korea’s financial sector may be a 26-year-old who used a Chinese-developed AI agent toolcalled ARTEX and Anthropic’s ClaudeCode, CrowdStrike said
CrowdStrike says China-based suspect used AI tools in South Korean bank hacks
The suspect behind recent cyberattacks targeting South Korea's financial sector may be a 26-year-old based in China's Guangdong province who used a Chinese-developed AI agent tool called ARTEX and Anthropic's Claude Code, US cybersecurity firm CrowdStrike said.
It has been suggested that the perpetrator of the recent hacking incident targeting the domestic financial sector is a 26-year-old individual residing in Guangdong Province, China. Evidence has been detected that the attacker left their identity information while requesting an artificial intelligence (AI) tool to generate a resume. Specific clues regarding the identity of the attacker in this financial sector hacking incident
Attention focused on identity clues presented by security firm… Verification needed to confirm if it is actual attacker information. Both solitary and organized attacks remain open… Investigation concentrated regardless of transfer decision. Reporters Han Ji-eun and Kang Su-ryeon = The perpetrator of the recent hacking attack on a financial institution resides in Guangdong Province, China.
Coverage Details
Bias Distribution
- 34% of the sources lean Left, 33% of the sources are Center, 33% of the sources lean Right
Factuality
To view factuality data please Upgrade to Premium























