The Financial Security Institute shared cases of attacks using artificial intelligence (AI) with financial institutions ahead of a recent series of cyberattacks targeting the financial sector, and recommended that they continuously inspect systems exposed to the outside world.

Yonhap News

Yonhap News

View original image

According to documents submitted by the Financial Security Institute to Han Chang-min, a Social Democratic Party lawmaker on the National Assembly's Political Affairs Committee, the institute presented a case involving an AI agent attack targeting Financial Firm A in South Korea, along with recommended response measures, at the "Seminar on Responding to Financial AI Security Threats" on September 17. About 160 financial-sector security officials attended the seminar. Those in attendance reportedly included officials from KB Kookmin Bank, Hana Bank, Hyundai Capital, and Welcome Savings Bank, which have recently suffered cyber incidents.


According to the presentation materials, the attacker used a DeepSeek-based AI agent to scan servers exposed to the outside world, then exploited vulnerabilities in the server software to install a web shell, a type of malware. Financial Firm A detected and blocked the attack just before the attacker could scan internal servers and download additional malware.



The institute stressed that "these threats cannot be caught through assessments conducted only once or twice a year" and that "continuous measurement and verification are necessary." Some have pointed out that the damage from the recent cyberattacks could have been reduced if financial institutions had inspected and addressed vulnerabilities in their external systems after the seminar.


This content was produced with the assistance of AI translation services.

© The Asia Business Daily. All rights reserved. Unauthorized AI training and use prohibited.

Today’s Briefing