An unidentified hacker believed to speak Chinese used artificial intelligence tools to breach several South Korean financial institutions and steal data, the cybersecurity firm “CrowdStrike” said.
The attacks took place between late September and early October, Yonhap News Agency reported on Thursday, citing a “CrowdStrike” report.
The attacker used ARTEX, a Chinese-developed open-source penetration-testing tool, alongside large language models to gain access to banking systems, according to the report.
Targets included a bank’s loan inquiry service and another lender’s mobile support platform for employees. “CrowdStrike” identified two servers linked to the attacks, one of them in Hong Kong.
The firm said the attacker appeared to be financially motivated, citing searches for marketplaces where stolen South Korean data is sold.
The hacker’s identity, the extent of the breaches and the volume of information taken remain unconfirmed.
The findings follow recently reported data breaches involving Hana Bank, KB Kookmin Bank and Shinhan Bank, which led financial regulators and law enforcement authorities to launch investigations.