Science & Tech · Cybersecurity · 20 hrs ago
AI-assisted attacks on South Korean financial firms highlight security gaps
Recent attacks targeted financial firms in South Korea, with attackers using AI tools to automate attempts against several companies.
The attacks focused on systems that may be outside security teams’ regular checks, including services for loan agents and employee support.
AI did not create a wholly new kind of attack, but helped attackers work faster and find security gaps.
Experts say companies should identify all systems exposed online, monitor how applications connect, and block unusual activity.
A government review found 523 vulnerabilities across private-sector infrastructure, commercial software and open-source software.
South Korean technology and security companies have also joined universities in a new group to develop and test AI security tools.
They plan to test the tools in real operating environments and have AI models probe one another for weaknesses.
AI was used to automate attacks targeting several South Korean financial firms, raising concern about cybersecurity gaps.
The attackers reportedly combined the Chinese penetration-testing tool ARTEX with several AI models, including DeepSeek.
Experts said the attacks focused on shadow IT, such as loan-agent systems, employee services and sales-support platforms.
SK Shieldus said AI amplified the scale and speed of existing attacks rather than creating entirely new attack methods.
The article also reported 523 vulnerabilities across private-sector infrastructure, commercial software and open-source software.
- Who
- Attackers targeted South Korean financial firms. The article does not identify them.
- What
- AI was used in attacks against multiple firms, prompting calls for stronger cybersecurity.
- When
- The attacks occurred recently; the article was published on October 11, 2026.
- Where
- South Korea.
- Why
- The attackers’ motive is not stated. The attacks highlighted security gaps in exposed and overlooked systems.
This story does not have two clearly opposing sides.
AI is not an all-purpose technology for discovering new vulnerabilities but a tool that amplifies the scale and speed of attacks
Attackers used AI-assisted methods in a series of attacks targeting South Korean financial firms.
South Korean information-security companies and universities launched an AI cybersecurity council to develop and test security technologies.
- Vulnerabilities reported
- 523 across private-sector infrastructure, commercial software and open-source software
- Infrastructure findings
- 304 vulnerabilities at 16 facilities
- Commercial software findings
- 135 vulnerabilities at five companies
- Open-source findings
- 84 vulnerabilities across 144 types
- Article publication
- October 11, 2026











