WorkThe story, in brief

AI-powered hacking tools enabled a likely single attacker to breach multiple South Korean banks

A single attacker with an open-source AI hacking tool breached multiple South Korean banks and stole 25,000+ customer records. Here's what enterprise security teams need to know.

Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
People, judgement and the changing nature of work.AI illustration by KeyNews
The KeyNews take

Why it matters

AI-powered penetration testing tools are lowering the barrier to entry for large-scale financial breaches, enabling one person to compromise multiple institutions. This is a concrete shift in attack surface and threat modeling that infosec teams and enterprise buyers must account for now.

The key facts

7 to know
  1. Shinhan Bank: 25,000+ customer records stolen

  2. Attacker: suspected Chinese-speaking, likely single operator

  3. Tool used: ARTEX (open-source automated penetration testing tool)

  4. AI models leveraged: DeepSeek, GLM-5.3

  5. Source: CrowdStrike

  6. Target: multiple South Korean financial institutions

  7. Impact framing: single attacker, massive breach scale

Go to the source

The Decoderthe-decoder.com

Publisher excerpt: According to CrowdStrike, a suspected Chinese-speaking attacker hacked multiple South Korean financial institutions. At Shinhan Bank alone, more than 25,000 customer records were stolen. The attacker used ARTEX, an open-source tool that uses AI models like DeepSeek and GLM-5.3 for automated…
Read original report
Back to today's editionMore work news

Keep reading

Related stories

More from Work