# CrowdStrike links AI tools to attacks on South Korean financial firms

_Published Thursday, October 8, 2026 at 7:07 AM EDT · Security, AI · Latest · Tier 2 — Notable_

![CrowdStrike links AI tools to attacks on South Korean financial firms — Primary](https://media.thenextweb.com/2026/09/Crowdstrike.jpg)

CrowdStrike says an attacker used ARTEX, Claude Code and other AI models in attacks on South Korean financial firms from late September to early October that stole data. Its October 7 report draws on AI chat logs found in open folders on servers operated by the attacker.

South Korean police opened an investigation on October 6 covering seven financial firms. Reuters counts at least nine banks targeted; Shinhan reported exposure of personal data for about 25,000 customers, and KB Kookmin reported 119.

CrowdStrike cannot firmly connect the attacker to identifying details in the chats. A claimed age conflicted with an earlier birth date, and authorities have not identified a suspect.

## Sources

- [The Next Web](https://thenextweb.com/news/crowdstrike-south-korea-bank-hack-suspect-china)

---
Canonical: https://techandbusiness.org/newswire/MT55PEv4_lz7K-HeHeyo38
Published: 2026-10-08T11:07:39.197Z
Story chronology: 2026-10-07T00:00:00.000Z
Retrieved: 2026-10-08T13:33:01.937Z
Publisher: Tech & Business (techandbusiness.org)
