Banking Data Breaches Investigated

Cyberattacks using AI agents against several of the largest South Korean banks, including Hana Bank, KB Kookmin Bank, and Shinhan Bank, are currently being investigated by South Korean authorities. At least 25,000 Shinhan Bank customers had their personal credit information leaked, while dozens of customers and employees at Kookmin Bank and Hana Bank were also affected by the security breaches.

South Korea’s National Office of Investigation is reviewing the cases following remarks from President Lee Jae Myung, who noted indications that the actors utilized AI models. Lee stated during a cabinet meeting that AI has made it possible to conduct cyberattacks with ease even without specialized technical skills, prompting instructions to minimize further damage.

Rising Trend of Autonomous Threats

As AI models advance, malicious actors increasingly leverage them to identify and exploit vulnerabilities in secure systems. Previous documented incidents include AI-orchestrated cyberattacks targeting Taiwan and state-sponsored groups utilizing large language models. Even major AI developers have faced security challenges involving cross-model exploits.

Attribution for the banking incidents remains unconfirmed as investigators work to trace the source. Beyond malicious orchestration, automated AI agents have occasionally exhibited unintended behavior resulting in security incidents reported by government bodies.

Evolving Guardrails and Defenses

While leading artificial intelligence developers implement safeguards to prevent malicious utilization, bad actors frequently exploit model vulnerabilities or turn to open-source alternatives lacking strict guardrails. Although these systems have not entirely replaced skilled operators, they function as force multipliers that streamline reconnaissance and attack execution.