{
  "id": 11838412,
  "title": "수십·수백조원 운용 금융사 ‘보안 허술’…‘약한고리’ 고객정보 털려",
  "url": "https://urgent.news/2026/10/04/story-11838412",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-04T02:10:18.000Z",
  "source": {
    "name": "Hankyoreh",
    "slug": "hankyoreh",
    "url": "https://www.hani.co.kr/arti/economy/finance/1280799.html"
  },
  "original_language": "ko",
  "account": "A significant hacking attack by foreign forces, using artificial intelligence (AI) extensively, has exposed the relatively low and vulnerable security levels in domestic financial companies. The attack focused on the weak links throughout the financial sector, exploiting the gaps in the financial regulatory bodies' security systems. The attackers predominantly targeted the internal work support systems and business service applications, which handle customer information, instead of the core financial transaction systems (internet & mobile banking) that the majority of customers use. These systems typically require less stringent authentication and biometric verification processes, making them easier targets for the hackers.\n\nIn the case of Shinhan Bank, the hackers utilized IP addresses from various countries, including the United States, Japan, South Korea, Hong Kong, Singapore, Vietnam, Thailand, and the United Kingdom, to carry out the attack. The finance industry faces the risk of weakened security levels during the process of adding or modifying internal business support services. The financial supervisory service (FSS) emphasized that financial companies must comprehensively identify and assess all exposed information and communication technology (IT) assets and services, as well as any routes providing unauthorized access to internal information.\n\nThough no financial losses have been reported yet, some banks have temporarily suspended operations of \"satellite sites\" with compromised security systems. The attack methods utilized by hackers were consistent in targeting the internal work support systems and business service applications rather than the primary financial transaction systems. The rise of AI has reduced the technological barriers to hacking, making it easier for hackers to infiltrate the systems.\n\nFinance industry stakeholders acknowledged that high-level AI hacking goes beyond the capabilities of individual companies to defend themselves. They pointed out that a much broader security check and stricter measures are needed, but acknowledge the technological limitations. The finance supervisory body is now considering the extent to which the financial security systems need to be revised and the speed at which it will proceed with the reform. The FSS is also expected to accelerate its regulatory easing for financial companies amid the changing landscape of AI hacking attacks.",
  "summary": null,
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}