ESPN DeportesEN VIVO: interferencia de aficionado crea polémica, Volpe remolca una y acerca a YankeesESPNHow the Dream took a 2-0 lead over the LibertyLa NaciónLa agenda de la TV del jueves: el Masters 1000 de Shanghai y la acción del básquetbolThe Jerusalem PostProtesters overrun Israeli peace vigil marking October 7 attended by Mamdani한겨레사형 실패로 깨어난 미 여성 “분노와 혼란”…윤리·법적 논란 확산ZDF heuteEntdecken Sie das ZDF-NachrichtenstudioSouth China Morning PostWill Huanggang Port opening boost spending at Shenzhen’s border retail shops?SCMP ChinaThe ‘G2’ illusion? After Xi-Trump summit, China wants equality while the US seeks deals20 Minuten«Kostete 500 Euro»: GC-Coach machte Deutsches Supertalent grossDeadlineSkydance Film Bosses Dana Goldberg & Josh Greenstein & The Warner Bros To-Do List: Pics That Are Ready, In The Works Or On Fire경향신문법원 “JMS·정명석, 성폭력 피해자들에 손해배상 해야”···홍콩 국적 신도 등에 배상 판결E! OnlineBritney Spears Shares Pic With Sons Jayden & Sean Preston at Dollywood
The Daily Newsstand · Free, Always
Thursday, October 8, 2026

Suspect behind South Korea bank hacks may be 26-year-old in China

Translate

Suspect behind South Korea bank hacks may be 26-year-old in China

HACKER. A man holds a laptop computer as cyber code is projected on him in this illustration picture taken on May 13, 2017.

REUTERS/Kacper Pempel/Illustration/File Photo

CrowdStrike says the attacker used ARTEX, a recently released Chinese-developed open-source penetration-testing tool, alongside large language models

SEOUL, South Korea – The suspect behind recent cyberattacks targeting South Korea’s financial sector may be a 26-year-old based in China’s Guangdong province, US cybersecurity firm CrowdStrike said.

In a report published on its website on Wednesday, October 7, CrowdStrike said it uncovered personal details linked to the suspected attacker while analyzing AI coding-tool sessions and infrastructure associated with a campaign targeting South Korean financial institutions from late September to early October.

CrowdStrike said the attacker used ARTEX, a recently released Chinese-developed open-source penetration testing tool, alongside large language models, and assessed with “moderate confidence” that the actor was a Chinese speaker and likely financially motivated.

The firm said one Claude Code session contained a request to create a security researcher resume describing results from the hacking activity.

The prompt included details such as a Telegram account, age, education background and a location in Maoming, Guangdong, the report said.

CrowdStrike said the same Telegram username appeared in other cyber activity, including vulnerability research involving a Telegram-based NFT marketplace and a separate suspected attack on a Chinese payment platform.

The company said the personal details likely belonged to the actor responsible for the activity, but cautioned that currently available information could not definitively identify the attacker.

Authorities in Seoul are investigating cyberattacks that affected multiple financial institutions after banks including Shinhan Bank and KB Kookmin Bank reported data breaches.

South Korean police, who have launched a probe, did not immediately respond to a request for comment.

South Korean President Lee Jae Myung said on Tuesday, October 6, that signs had emerged that AI was used in some of the hacking incidents and called for heightened cybersecurity measures. – Rappler.com

View the original on Rappler →

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.