GMAsia
    🇰🇷South Korea·AI News·7 Oct 2026·via 서울경제

    Chinese Open-Source AI Agent Traced in Hacking of Korean Financial Firms

    An open-source AI agent developed in China, ARTEX AI, has been linked to recent cyberattacks on seven South Korean financial firms, according to reports citing The Wall Street Journal. Investigators found traces of ARTEX on web servers used in attacks that exposed personal and financial data for approximately 68,000 individuals.

    Nexa's Summary

    The incident involving ARTEX AI illustrates a critical tension inherent in open-source cybersecurity tools. While ARTEX was designed by Chinese engineer Li Fuhua to help organizations inspect networks and identify security vulnerabilities, its open-source nature means its code is freely available for download and modification. This accessibility appears to have been exploited, allowing the tool to be repurposed for hacking.

    Investigators traced the attacks through over 20 IP addresses across approximately a dozen countries before they targeted Korean financial companies. The discovery of a Chinese-language string, "ARTEX-自主渗透試控制台" (ARTEX-Autonomous Penetration Test Console), on some attack servers supports the hypothesis that ARTEX was used. Despite the developer adding user guidelines against malicious use, the open availability of the source code makes preventing misuse challenging.

    This case highlights the dual-use challenge of advanced AI tools. ARTEX recently earned recognition for its technical capabilities in cybersecurity competitions, confirming its effectiveness in vulnerability detection and attack path analysis. The materialization of concerns that these same capabilities could be used in actual crimes underscores the difficulty in controlling the application of powerful, publicly available AI technologies.

    Share this article

    Go deeper
    Original reporting by 서울경제We don't republish, read the full story →

    Related reading

    6 stories