CrowdStrike Links South Korean Bank Breaches to AI Agent ARTEX CrowdStrike linked breaches at South Korean financial institutions to an unidentified operator who used ARTEX, a China-developed open-source AI penetration-testing agent, in a campaign active from late September to early October 2026 that exfiltrated data. Shinhan Bank said about 25,000 customers had names, phone numbers, annual income and loan limits exposed, while KB Kookmin Bank reported 119 affected customers and Hana Bank 89; South Korean media reported seven financial firms hit and more than 67,000 people potentially affected, a figure CrowdStrike said remained unconfirmed. CrowdStrike said the ARTEX system used DeepSeek V4.1-Flash as its primary model backend, with the operator also using Zhipu AI's GLM-5.3 and Grok 4.6 in separate Claude Code sessions. CrowdStrike Links South Korean Bank Breaches to AI Agent ARTEX - CrowdStrike identified ARTEX, a China-developed open-source agentic penetration-testing tool, in infrastructure linked to attacks on South Korean financial organizations.