CrowdStrike released a report on October 8, 2026 detailing a series of cyberattacks targeting multiple South Korean financial institutions from late September through early October. The hacker is believed to be a 26-year-old Chinese-speaking individual based in Maoming, Guangdong province, acting alone for financial motives. The attacker deployed artificial intelligence tools, including the Chinese-developed penetration-testing agent ARTEX along with the Claude and Claude Code models. At least seven to nine South Korean banks were compromised, with confirmed data exfiltration in several cases: Shinhan Bank reported approximately 25,000 affected customers and KB Kookmin Bank confirmed 119 customers. South Korean police opened a formal investigation and President Lee Jae Myung called for strengthened cybersecurity measures, illustrating the growing trend of individual actors using sophisticated AI for large-scale financial crimes.
Source: Read the original article

