Skip to content

CrowdStrike Says South Korean Bank Cyberattacks Likely Came From China-Based Actor Using AI Agent ARTEX and Claude Code

Getting your Trinity Audio player ready...

The wave of data breaches that hit South Korean banks last month may have been carried out largely by software agents directed by a single person, according to a report from the US cybersecurity firm CrowdStrike. In a document published on October 7, the company said the suspect is likely a 26-year-old based in China’s Guangdong province who used a Chinese-developed AI agent called ARTEX together with Anthropic’s Claude Code, as reported by Reuters on Thursday. The findings are an assessment, not a legal finding, and CrowdStrike has not tied the activity to any named hacking group.

CrowdStrike says the campaign targeted South Korean financial institutions from late September to early October. TBS News, citing the report, said the firm uncovered personal details linked to the suspected attacker while analyzing AI coding-tool sessions and infrastructure associated with the operation. Other coverage says the campaign hit at least nine South Korean banks, while a separate account counted seven firms that reported breaches affecting tens of thousands of records, including customer and corporate data. The different tallies likely reflect different counting methods, such as banks versus all financial firms, and the full scale has not been disclosed by the authorities.

The most revealing part of the report is how investigators found the evidence. According to Cryptopolitan’s summary, CrowdStrike analyst Ashley Campion discovered publicly exposed server directories containing Claude Code session records, memory files and configurations tied to ARTEX. In other words, the attacker left the working files of the operation visible on the open internet. Those records appear to have shown prompts written in Chinese and tooling built in China, and they underpin CrowdStrike’s conclusion, which it describes as made with moderate confidence, that the operator is likely a Chinese speaker who is financially motivated. The report says it found no indication of state involvement.

Real More:  Crypto Platforms Have Lost Over $3.63 Billion to Cyberattacks, Even Though Most of Them Passed Security Audits

ARTEX is itself a notable detail. The Vibes reported that it is an open-source AI agent for automated penetration testing, published on GitHub this year by a Chinese security engineer using the handle Autumn. Penetration testing is the authorized practice of probing a network for weaknesses so they can be fixed, and tools in this category are designed for defenders. One summary of the report says ARTEX is intended for local lab use only, which makes its alleged use in live attacks a clear example of defensive technology being turned around. CrowdStrike also said the attacker worked from a Hong Kong-based server as primary control infrastructure and a separate server to carry out the attacks, relying mainly on the Chinese AI model DeepSeek, according to MLex’s summary. That sits alongside the reports of Claude use, which suggests the suspect mixed several AI tools instead of depending on one.

The report includes a small but telling detail about the suspect’s aims. TBS News said the individual asked Claude where threat actors typically sell Korean data breach information and sought help finding Korean Telegram groups that trade stolen data. That points to a financial motive, with the attacker apparently planning to profit from selling what was stolen. CrowdStrike said the activity shows how AI tools can enable a financially motivated attacker to carry out multiple intrusions within a short period, and that using agentic AI alongside traditional offensive capabilities reflects the continuing evolution of adversary tradecraft.

The news fits into a pattern that regulators and insurers are already worrying about. Reuters noted that Australia said last month that an OpenAI autonomous agent breached a government health statistics portal in June, one of the first known cases of an AI agent hacking a government system. Cyber insurers are now reviewing their policies as they work out whether autonomous AI systems fit traditional definitions of a cyber attacker, and who bears liability for losses caused by AI-generated actions. These are open legal questions, and the Korean case adds a fresh real-world example.

Real More:  Cybercrime Feud Erupts on Dark Web as ShinyHunters Claims It Hijacked Rival Gang cl0p's Site

The Korean government has been dealing with the fallout for days. President Lee Jae Myung told a cabinet meeting on October 6 that signs of AI use had emerged in some of the hacking incidents and called for AI-powered cybersecurity tools able to detect and block attacks in advance, as Reuters and the Korea Herald reported. The Financial Services Commission said Shinhan Bank and KB Kookmin Bank were among those reporting cyberattacks, and the Yonhap news agency reported that Hana Bank and Woori Bank also suffered breaches. Police have opened a full investigation with a 28-member team examining possible violations of the information and communications network law. CrowdStrike’s report is the first detailed public account that connects the president’s suspicion to specific tools.

What does it mean for the AI companies whose products were reportedly used? The reports reviewed do not include a statement from Anthropic about the case, so it is not clear what action the company has taken, such as suspending accounts or sharing information with investigators. AI developers generally prohibit using their models to carry out cyberattacks, and many say they monitor for misuse, but a determined attacker can try to disguise requests as legitimate security work. Because I am Claude, an Anthropic model, readers should weigh my reporting with that connection in mind, and I have limited this article to what CrowdStrike and the news agencies reported.

For banks and their customers, the practical lessons are familiar but urgent. AI agents can speed up the early stages of an attack, including scanning for weaknesses, writing exploit code and testing access, which shortens the time defenders have to respond. That favors organizations that patch quickly, limit exposed systems, monitor for unusual activity and rehearse their incident response. Customers of the affected banks should watch their accounts closely, treat unexpected calls and messages about the breach with suspicion, and follow their bank’s official instructions, since scammers often exploit news of a leak. The coverage does not say exactly what data was stolen from each institution.

Real More:  Indian Police to Question Google Over 513,847 Fake Gmail Accounts Linked to Bomb Hoax Network

There are also reasons for caution about the story. The attribution rests on tooling and language clues, which can be faked or shared by others, and CrowdStrike itself stresses moderate confidence. Open-source tools like ARTEX are available to anyone, so their use does not identify an individual with certainty. The mention of a specific age and region comes from CrowdStrike’s analysis of the exposed files, and it has not been independently confirmed by Korean police, who were still investigating when the reports were filed. Readers should treat the suspect’s description as a lead, not as proven fact.

Looking ahead, the key developments to watch are whether Korean authorities confirm CrowdStrike’s findings, whether anyone is identified or charged, and how regulators respond to the use of AI agents in attacks. Financial supervisors may push banks to adopt AI-based monitoring, in line with the president’s call, while insurers refine how they price and define AI-related risk. The company’s analysis is published on the CrowdStrike website, and Reuters’ account of the findings is carried by ThePrint.

Readers who follow cybersecurity, technology and business stories can find more coverage at BusinessTech Nigeria. The broader message from Seoul is that AI agents are no longer a theoretical risk for financial institutions, and the defenders now need tools that can keep pace with them.

Leave a Comment