Security & Privacy | 2 min read

AI-Native Cyberattacks Hit South Korean Banks: ARTEX Tool Plus Claude Code Used to Breach Nine Institutions

A China-based actor used the open-source ARTEX pentesting tool and Claude Code to breach nine South Korean banks, exposing 25,000+ customers in one of the first documented AI-native, multi-model cyberattacks on financial infrastructure.

Hector Herrera
Hector Herrera
A cybersecurity operations center related to AI-Native Cyberattacks Hit South Korean Banks: ARTEX Tool Pl from an unusual angle or perspective
Why this matters A China-based actor used the open-source ARTEX pentesting tool and Claude Code to breach nine South Korean banks, exposing 25,000+ customers in one of the first documented AI-native, multi-model cyberattacks on financial infrastructure.

A China-based threat actor breached nine South Korean financial institutions — including Shinhan Bank — using a combination of an open-source AI pentesting tool and large language models to automate every stage of the attack. The incident, documented by CrowdStrike investigators and reported by The Hacker News today, exposed the personal data of more than 25,000 banking customers and stands as one of the clearest examples yet of AI being weaponized against financial infrastructure at scale.

What Is ARTEX — and Why It Matters

ARTEX is an open-source AI-assisted pentesting tool — meaning it was originally designed to help security teams find their own vulnerabilities. In the wrong hands, it automates the work a human attacker would otherwise do manually: probing systems for weaknesses, mapping network architecture, and identifying exploitable entry points.

In this campaign, the attackers paired ARTEX with Anthropic's Claude Code and multiple additional LLMs (large language models, the AI systems behind tools like ChatGPT and Gemini). According to CrowdStrike, the AI stack handled reconnaissance (gathering intelligence on targets), exploitation (leveraging discovered vulnerabilities), and data exfiltration (copying and transmitting stolen records) — tasks that would typically require a team of skilled operators and days of manual work.

The Breach in Numbers

  • Nine institutions targeted, all South Korean financial firms
  • Shinhan Bank confirmed as one of the named victims
  • 25,000+ customers had personal data compromised
  • Attribution: China-based threat actor (CrowdStrike has not publicly named the group)

The attack did not appear to exploit a single zero-day vulnerability. Instead, the AI toolchain allowed the actor to move across multiple institutions quickly, adapting to each target's defenses in ways that suggest the models were being used for real-time decision-making during the intrusion.

Why This Marks a Threshold Moment

Security researchers have warned for several years that AI would lower the cost of sophisticated attacks. This incident moves that warning from hypothetical to documented. The combination of an open-source attack framework plus commercial LLMs gave a single actor the operational capacity of a much larger team.

Critically, ARTEX is publicly available. Any actor with access to Claude Code or similar tools — through legitimate APIs or leaked credentials — could replicate this approach. The barrier is now technical knowledge, not resources.

For financial institutions, the implications are immediate:

  • Threat modeling must account for AI-accelerated attack chains, not just traditional intrusion methods
  • Multi-institution campaigns can now be run in parallel, not sequentially, because the AI handles the load
  • Detection windows shrink when reconnaissance and exploitation happen faster than human analysts can respond

What to Watch

CrowdStrike is expected to publish a full incident report. South Korean financial regulators, including the Financial Services Commission, have not yet commented publicly. The more pressing question for the industry is whether ARTEX or similar tools will be pulled from public repositories — and whether that would meaningfully slow future attacks, given how easily AI tooling can be forked and distributed.

By Hector Herrera

Key Takeaways

  • ✓ Threat modeling must account for AI-accelerated attack chains
  • ✓ Multi-institution campaigns
  • ✓ Detection windows shrink

Did this help you understand AI better?

Your feedback helps us write more useful content.

Hector Herrera

Written by

Hector Herrera

Hector Herrera is an AI systems architect in Houston and founder of Hex AI Systems. He designs and runs AI systems in production and writes daily about how AI is reshaping business, government and everyday life. 20+ years building for the web. Houston, TX.

More from Hector →

Get tomorrow's AI briefing

Join readers who start their day with NexChron. Free, daily, no spam.

More from NexChron