
According to the financial sector on the 4th, Shinhan Bank's system where loan borrowers check customers' loan progress was attacked, KB Kookmin Bank's mobile business support system for employees was targeted, Hana Bank's sales support system was targeted, and Hyundai Capital's personal information was leaked from a system used by housing loan borrowers. A senior financial authority official said, "Rather than internet and mobile banking used directly by customers, loan borrowers or external sales agents The attacks focused on the surrounding systems used by employees," and added, "We believe they exploited the gap where it is difficult to apply the same level of security across all systems," ,,, hacking was not a direct breach of the bank's core computer network; rather, instead of the highly secure 'main entrance' like internet or mobile banking, the attack focused on the surrounding business systems used by loan solicitors and employees. They also employed methods to avoid the 'rules' of existing security systems. If a password is incorrect more than a certain number of times, the account is locked and a 'alert' is triggered by the system. They tried entering it only up to just before blocking and then moved on to another account to avoid detection. An IT representative from a financial institution said, " If you get your password wrong five times and your account is locked, you try only four times and then switch to another account," adding, "By using AI, you can quickly repeat this process across many accounts." Leaked IDs and passwords Attacks like putting your ID and password into a different site or randomly imposing frequently used passwords have existed before, but what's changed is speed and scope. With AI taking over, you can now tap into numerous accounts and systems simultaneously. Some pages of web servers believed to have been used for hacking contained Chinese phrases meaning 'AI autonomous infiltration,' but financial authorities and the Financial Security Service believe that based solely on these circumstances, it is difficult to identify the attacker's nationality. This is because attackers can bypass servers and IPs in multiple countries, and the Chinese-made AI hacking tools allegedly used in this attack have been disclosed, making them accessible to anyone. What can't AI do???? Now, even hacking!!!!!!
Comments 0
Log in to comment.