South Korean Bank Hacks Serve as Warning on AI-Powered Cyberattacks
Several major South Korean banks have been compromised using artificial intelligence agents, leading to the theft of personal data for 68,000 individuals. This incident highlights a growing threat to global financial institutions.

Multiple large banks in South Korea have fallen victim to cyberattacks employing artificial intelligence agents, marking a significant escalation in AI-driven cybersecurity threats. Officials confirmed that at least seven financial firms were targeted, resulting in the theft of personal information for 68,000 individuals, including details on annual income and loan limits. This event represents one of the earliest instances of AI tools being directly used to disrupt major global financial entities.
The breaches are particularly concerning given the typically robust security measures implemented by banks and financial institutions. While the perpetrators remain unidentified, the attacks originated from over two dozen IP addresses spanning multiple countries, including the United States and Japan. South Korean authorities are now urging banks to enhance their defenses, and these intrusions serve as a critical warning to financial institutions worldwide.
Reports indicate that the hackers utilized Artex AI, an open-source agent developed in China that was initially designed as a cybersecurity tool to identify network vulnerabilities. The developers of Artex have since updated their guidelines to prohibit malicious use. The increasing sophistication of AI-assisted hacking is further underscored by a SANS Institute report finding that 78% of organizations experienced or suspected an AI-enabled attack in the past year.
Experts advise organizations to adopt a proactive security stance, similar to that of an attacker. By leveraging the same AI tools that malicious actors use, companies can better evaluate, stress-test, and strengthen their own security defenses against emerging threats. This approach is crucial as AI capabilities continue to advance, potentially increasing the scale and complexity of future cyberattacks.