Skip to content
Two Weeks, Several Banks, One AI Hacking Agent: Inside the ARTEX Campaign Against South Korean Finance
BreakingOCT 7, 2026WEAPONIZED AGENT

Two Weeks, Several Banks, One AI Hacking Agent: Inside the ARTEX Campaign Against South Korean Finance

From late September to early October 2026, an unidentified attacker broke into several South Korean financial institutions and took data, according to CrowdStrike Intelligence. At one bank, the attacker reportedly got into a loan-status service used by brokers. At another, it was an employee mobile work system. The number of victims is still unconfirmed.

The attacker didn't do most of the work by hand. They ran ARTEX, a newly released open-source AI agent built in China for penetration testing, with DeepSeek as its main brain. They also ran Claude Code sessions, some powered by Zhipu's GLM and xAI's Grok. CrowdStrike found the evidence on the attacker's own servers, which had been left publicly exposed: Claude Code session logs, ARTEX settings files, and a Chinese-language instruction file telling the AI how to run the attack. In the same sessions, the attacker asked Claude where stolen Korean bank data usually gets sold and how to find Telegram groups that buy it.

CrowdStrike's conclusion: AI tooling let one financially motivated operator run multiple intrusions in a short time. A tool built to test defenses was used for real attacks, with several commercial AI models doing the work.

The report doesn't mention any AI provider catching it. The campaign came to light because the attacker left their own files open to the internet. CrowdStrike has not named the attacker and describes them only as likely Chinese-speaking, with moderate confidence.

HOFFICIALHITL Score
HITL Score19/100
Why this matters to youNo jargon — just what it means

Imagine a locksmith's training kit, the kind meant to teach people how to protect a door. Now picture a burglar picking it up, plugging in a robot helper, and letting the robot open bank vaults one after another while he sits back and asks it where to sell what's inside. Nobody at the robot company noticed. He got caught only because he left his own garage door open.

Here's why that's a big deal: one person used to need a whole team and months of work to break into several banks. With AI agents doing the heavy lifting, one person did it in about two weeks. The tools were free or cheap, and the AI models were rented through a middleman. If the only thing standing between an AI agent and a bank is the attacker's own carelessness, there is no human in the loop at all.

🖤 Explained by Babycakes.