AIToday
AI Safety & AlignmentITmedia AI+Published: Oct 9, 2026, 22:01 JST

Claude Code traces highlight 26-year-old suspect in South Korea attacks

Claude Code traces highlight 26-year-old suspect in South Korea attacks

3 Key Points

  1. What happened

    CrowdStrike published an analysis on Oct 7 of a server used in attacks on South Korean financial institutions. It found traces of the open-source penetration-testing tool ARTEX and multiple LLMs, plus a Claude Code request containing a résumé that said the author was 26 and lived in Maoming, Guangdong.

  2. Why it matters

    At least 9 banks were publicly linked to the leaks, and CrowdStrike estimates with moderate confidence that the attacker is a Chinese speaker who was likely after money. The record shows he had asked Claude how to find places to buy and sell leaked South Korean data and Korean-language Telegram groups for sales.

  3. What to watch

    General availability starts Nov 4 in 12 countries.

WHO IT HITSThe findings land on bank security and fraud teams in South Korea handling breach disclosure, and on threat-intelligence analysts elsewhere trying to attribute attacks. They also matter to vendors of AI coding tools, whose usage logs can end up as forensic evidence.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

The attacks unfolded from late September into early October, when a series of data leaks struck multiple South Korean financial institutions. According to Reuters, at least 9 banks were identified as targets through victim disclosures and local news coverage. CrowdStrike investigated the campaign and found an openly browsable directory on a server linked to IP addresses used in the attacks. It contained Claude Code usage records and ARTEX configuration files, suggesting the attacker pursued targets between late September and early October that overlapped with the institutions already reported as victims.

The tooling points to a deliberately assembled setup. ARTEX, published on GitHub in 2026 by a Chinese security engineer, connects to external LLMs such as ChatGPT and Claude to hunt for vulnerabilities, letting the user choose which model to use. In this campaign the operator leaned on DeepSeek v4.1-flash, along with GLM-5.3 from Zhipu AI and Grok 4.6 from xAI. CrowdStrike says the attacker split work across two servers, using a Hong Kong-based server as the core of the attack infrastructure and another to run ARTEX, which also held Chinese-language documents instructing the linked LLMs on how to proceed. Activity was routed through nine additional proxy IP addresses.

CrowdStrike has not identified the attacker, estimating with moderate confidence that he is a Chinese speaker and likely motivated by money, based on his use of the Chinese-origin ARTEX and Chinese-language prompts. Adam Myers, who oversees attacker tracking and analysis at CrowdStrike, framed the case as an example of a human attacker using AI agents to attack at breadth, saying that AI has made it possible for one person to target many victims in a very short time. ARTEX's public page limits its use to personal study and code research and asks users not to run penetration tests against live systems or websites.

FAQ
How did CrowdStrike identify the suspected attacker?
It found an openly viewable directory on a server tied to an attacking IP address. Inside were Claude Code usage records and ARTEX configuration files, including a request to draft a security researcher's résumé that stated the person's age and residence in Maoming, Guangdong.
What AI tools were used in the attacks?
The attacker used ARTEX, an open-source penetration-testing automation tool released on GitHub in 2026, linked mainly to DeepSeek v4.1-flash, along with GLM-5.3 from Zhipu AI and Grok 4.6 from xAI.
Has the attacker been confirmed?
No. CrowdStrike has not identified the attacker and avoids definitively concluding the personal details are his. Reuters called a phone number listed in the report, and the man who answered said he knew nothing about the case.

AI news that matters for your work, delivered every morning.

Pick your industry and the AI tools you use, and get news related to your work every day.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleSoftBank's Masayoshi Son seeks $100 billion from Gulf states for AI