business
South Korea Probes Possible AI Role in Bank Hacking Cases

South Korea's president said there are signs that artificial intelligence models were used in recent hacking attacks on several banks in the country, according to The New York Times. Police are now investigating whether AI tools played a role in breaches that exposed customer data.
What did the president say about AI and the bank hacks?
According to the Times, the president pointed to indications that AI models were deployed in the recent intrusions. The remark came as authorities work to determine how attackers penetrated bank systems and what role, if any, automated or AI-assisted tools played in carrying out the breaches.
There were signs that AI models had been used in the recent attacks on several banks, the president said, according to the Times' reporting — a statement that moved the case from a routine cybercrime inquiry into a test of how South Korean law enforcement handles AI-assisted intrusions.
The statement does not specify which AI systems investigators believe were used or how they were applied during the attacks. The Times' account does not include further detail on the technical methods examined so far.
Which banks were affected and what data is at risk?
The Times reports that the attacks hit several banks and involved customer data, without naming the specific institutions or detailing the volume or type of records exposed. That leaves open questions for account holders about what categories of personal or financial information may have been accessed — questions that typically get answered once individual banks or regulators issue separate notifications.
Banks sitting on large pools of customer records are frequent targets for intrusions aimed at financial fraud, identity theft, or resale of stolen data. When AI tools enter the picture, security researchers generally focus on two possibilities: attackers using AI to write or refine malicious code, or AI used to scale social-engineering attempts such as phishing messages designed to trick employees or customers into handing over credentials.
Who is investigating, and what happens next?
Police in South Korea are handling the inquiry, the Times reports. The scope of that investigation — whether it covers all the banks named by the president, or a narrower set of incidents — was not detailed in the available reporting. Confirming AI involvement in a cyberattack is not simple. Investigators typically have to trace malicious code, phishing content, or network traffic back to specific tools or techniques, which can take weeks or months even when early signs point toward automated assistance.
Until police complete that work, the president's comment stands as a preliminary signal rather than a conclusion. The Times' report does not indicate a timeline for when findings might be released.
Why does AI-assisted hacking matter for banks specifically?
Banks have long been prime targets for cybercriminals because successful breaches can be converted directly into financial gain. The addition of AI tools into an attacker's toolkit — for writing more convincing phishing emails, generating malware variants, or analyzing stolen data faster — raises the stakes for institutions that already spend heavily on fraud detection and network security.
South Korea's case, as described in the Times' reporting, is notable mainly because a head of state publicly flagged the possibility of AI involvement before an investigation concluded. That sequencing — public comment ahead of confirmed findings — is itself part of what police will need to account for as the inquiry proceeds.
Key terms in the South Korea bank hacking investigation
AI model: Software trained on large datasets to generate text, code, or other outputs; in a hacking context, it can be used to draft phishing messages or help write malicious code.
Customer data breach: An incident in which personal or financial information held by a company — in this case, banks — is accessed without authorization.
Phishing: A technique in which attackers send deceptive messages designed to trick recipients into revealing credentials or installing malware; AI tools can make these messages more convincing.
The Times' report is the only detailed account of the president's remarks and the police investigation currently available. Additional detail on the affected banks, the scale of the data exposure, and any technical findings tying the attacks to specific AI tools is expected to come from South Korean authorities as the police investigation continues.
Questions
Did South Korea confirm AI was used in the bank hackings?
No. The president said there were signs AI models may have been used, but police are still investigating and have not announced confirmed findings, according to the New York Times.
Which South Korean banks were hacked?
The New York Times reports that several banks were affected and that customer data was involved, but does not name the specific institutions.