GMAsia
    🇰🇷South Korea·AI News·2 Oct 2026·via The Korea Times

    Shinhan, Kookmin, Hana data breaches fuel concerns over AI-powered cyberattacks in financial sector

    Shinhan Bank, KB Kookmin Bank, and Hana Bank in South Korea reported data breaches affecting hundreds of customers, with Shinhan disclosing an incident impacting approximately 25,000 customers. Regulators have launched investigations. Local media reports suggest a Chinese-language AI penetration-testing tool may have been involved in the Shinhan attack.

    Nexa's Summary

    The recent data breaches at several major South Korean banks, including Shinhan, KB Kookmin, and Hana, highlight evolving cyberattack concerns within the financial sector. While KB Kookmin reported 119 affected customers and Hana Bank 89, the Shinhan Bank incident impacted a significantly larger group of around 25,000 customers. These incidents suggest varied scales of compromise across different financial institutions.

    The reported discovery of an "AI autonomous penetration testing console" on a server linked to the Shinhan Bank attack points to a potential shift in attacker methodologies. Security experts indicate that AI advancements are lowering technical barriers for cyberattacks, enabling tools to identify vulnerabilities, launch attacks, and adapt tactics more efficiently. The suspicion of a credential stuffing attack in the Shinhan case aligns with how AI can automate and scale such attempts.

    These events underscore the increasing complexity of securing financial institutions, particularly as customer information is handled across various platforms, including loan brokers and outsourced service providers. The banks' statements that core banking systems and financial transaction data were not compromised, alongside pledges for compensation, address immediate customer concerns, but the underlying challenge of sophisticated threat evolution remains.

    The potential involvement of AI tools, if confirmed, indicates that advanced technology is being leveraged to enhance offensive capabilities. This situation necessitates a re-evaluation of cybersecurity defenses and incident response strategies within the financial sector, moving beyond reactive measures to anticipate and counter AI-driven threats.

    Share this article

    Original reporting by The Korea TimesWe don't republish, read the full story â†’

    Related reading

    6 stories