344
Productivity & Workflow355
Automation & Workflow225
Software Development251
Marketing & Growth193
AI Infrastructure & MLOps175
Writing & Content Creation204
Data & Analytics142
Photography & Imaging156
Design & Creative170
Customer Support133
Sales & Outreach125
Voice & Speech135
Education & Learning131
Operations & Admin87
CrowdStrike reports cyberattacks on South Korean financial firms used the ARTEX tool and large language models, with signs the operator may be Chinese-speaking.
In short: CrowdStrike reported that cyberattacks on South Korean financial institutions used a hacking tool called ARTEX and also used large language models.
CrowdStrike said it investigated cyberattacks targeting South Korean financial institutions that took place from late September to early October 2026. The company said the attacker used ARTEX, a Chinese-developed penetration-testing tool. Penetration-testing tools are often used by security teams to find weaknesses, but attackers can use the same tools like a set of lockpicks.
CrowdStrike also said the attacker used large language models, which are AI systems that can write and summarize text, like a very fast assistant. The report did not say exactly which AI models were used.
The firm said it had “moderate confidence” that the operator was likely Chinese-speaking and financially motivated. It pointed to Chinese-language prompts and the use of ARTEX. CrowdStrike also said files it reviewed suggested interest in online marketplaces and Telegram groups where stolen South Korean data could be sold.
CrowdStrike did not name a specific person or group behind the activity. The company said the attacker’s identity, the full scope of the intrusions, and how much data may have been stolen are still unconfirmed.
Banks and other financial firms hold sensitive information. Even if this case is not fully confirmed, it is a reminder that common tools, including AI writing tools, can help attackers move faster and plan attacks more easily. For customers, it is a reason to keep an eye on account alerts and to use protections like strong passwords and two-step verification (a second check, like a code sent to your phone).
Source: NYTimes