AI agents used in cyberattacks targeting South Korean banks, CrowdStrike says
AN attacker targeting South Korea’s financial sector used a Chinese-developed AI agent alongside Anthropic’s Claude Code, cybersecurity firm CrowdStrike said, highlighting growing concerns over how AI tools are being used to support cyberattacks. Cro...
Cybersecurity firm CrowdStrike reported that an attacker utilized a Chinese-developed AI agent and Anthropic’s Claude Code in a campaign aimed at at least nine South Korean banks. The attack took place between late September and early October, with personal details potentially linked to the suspect uncovered during the investigation.
The suspect may be a 26-year-old individual based in Guangdong province, though the activity has not been attributed to a named adversary. The attacker used ARTEX, a recently released open-source AI agent for automated penetration testing, alongside Claude to obtain information such as potential buyers for Korean data breach information and relevant Telegram groups.
The suspect also requested a security researcher’s resume with details like a Telegram account, age, educational background, and location in Maoming, which likely pertains to the attacker themselves. At least nine South Korean banks have reported or disclosed being targeted in cyberattacks since late September, prompting the South Korean police to launch an investigation.
Written by urgent.news from The Vibes's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.