Chinese-speaking hacker uses ARTEX AI and Claude agents to target South Korean banks
A Chinese-speaking hacker launched cyberattacks on South Korean banks using ARTEX AI and Claude agents, exposing clients' personal data and causing system outages.
Intelligence analysis by Qwen 2.5 (3B)

A hacker targeting South Korean banks used ARTEX AI and Claude agents to steal data and disrupt systems, prompting an emergency meeting from the South Korean government.
A hacker used special tools to try and get information from South Korean banks. They got some personal information and caused some of the banks' computers to stop working.
Analysis
{"heading_1":"The Attack Infrastructure","paragraph_1":"CrowdStrike, the security firm that confirmed the use of ARTEX AI, identified the attacker's infrastructure and found open directories with Claude Code session histories, ARTEX configuration files, and Claude memory files.","paragraph_2":"The developer of ARTEX AI decided to make the project closed-source and discontinue further updates after confirming that the tool had been used in real-world attacks.","heading_2":"The Targeted Banks and Data Exposed","heading_3":"The Developer's Response","paragraph_3":"The current code of ARTEX AI is still available in its current form, but the developer has created English- and Korean-language derivatives of the tool."}
Key points
- The hacker used ARTEX AI and Claude agents to target South Korean banks
- The attack exposed clients' personal data and caused system outages
- The developer of ARTEX AI decided to make the project closed-source
The incident highlights the importance of using secure tools and keeping software up to date to prevent such attacks.
The incident shows that even open-source tools can be misused, and banks need to be vigilant about security.



