Chinese Developer Closes ARTEX AI Agent After South Korean Bank Hack

A Chinese developer pulls the ARTEX AI agent from public access after it was linked to a series of cyberattacks on South Korean banks.

Last Updated: October 9, 2026 Editorial Process
Editorial Process
See more of Inside AI's trusted news by adding us as a preferred source on Google.
AI neural network visualization
Published on: October 9, 2026

October 9, 2026, (Inside AI) — The Chinese developer behind an open-source AI penetration testing tool has pulled the project from public access after cybersecurity investigators linked it to a series of intrusions at South Korean banks. The developer, operating under the GitHub handle "Autumn-27", announced on Thursday that ARTEX would be converted to a closed-source project and receive no further updates or maintenance support.

The decision followed a report from U.S. cybersecurity firm CrowdStrike, which identified the ARTEX agent and Anthropic's Claude Code as tools used in attacks targeting customer data at South Korean financial institutions. At least nine banks have disclosed or been reported as targets since late September, triggering a police investigation and a call from President Lee Jae Myung for robust countermeasures.

ARTEX, released on GitHub earlier this year, is not a standalone large language model. It connects to external LLMs such as ChatGPT, Claude, and DeepSeek to automate penetration testing, helping organizations probe their networks for vulnerabilities. The developer said the tool was intended for legitimate security risk testing and that they opposed any illegal use.

"Given the misuse of the tool, the ARTEX project will no longer be updated and will be converted to open source. No further versions will be released to the public nor will maintenance support be provided," the developer wrote on GitHub before the page was taken down.

The developer did not explicitly address the South Korean bank attacks but stated they bore no responsibility for conduct that violates laws and regulations. The GitHub repository is no longer accessible, according to checks by Inside AI.

CrowdStrike attributed the attacks to a China-based 26-year-old suspect. The firm's report, released Wednesday, said the individual used ARTEX in combination with Claude Code to automate parts of the intrusion process. The involvement of a commercial AI coding assistant in a cyberattack highlights a growing challenge for AI developers: preventing their tools from being repurposed for malicious ends.

Anthropic, the maker of Claude Code, has not publicly commented on the CrowdStrike report. The company's usage policies prohibit using its models for unauthorized access to systems or data. However, enforcing those rules in real time remains difficult, especially when AI agents operate through third-party frameworks like ARTEX.

Chinese foreign ministry spokesperson Mao Ning told a regular press briefing on Thursday that the ministry was not familiar with the case, adding that China consistently opposes and combats hacking activities.

The South Korean police probe is ongoing. The attacks have raised concerns about the security of financial data in one of Asia's most digitally connected economies. Banks in South Korea have invested heavily in cybersecurity, but the use of AI agents to automate vulnerability discovery and exploitation may be outpacing traditional defenses.

ARTEX is one of several open-source AI agents designed for security testing that have emerged in the past year. These tools lower the barrier to entry for penetration testing, but they also create new risks when they fall into the wrong hands. The developer's decision to close the project reflects a broader dilemma: how to balance open collaboration with misuse prevention.

The incident also draws attention to the role of large language models in cyberattacks. Claude Code, ChatGPT, and similar tools are built to assist with coding and problem-solving. When connected to an agent like ARTEX, they can generate scripts, suggest attack vectors, and automate repetitive tasks. This dual-use nature is a central tension in AI safety research.

For now, the ARTEX repository is gone, and its developer has stepped back. The South Korean banks are still assessing the damage. The suspect remains at large, and the investigation continues. The case may become a reference point for how AI agents are governed and how quickly developers respond when their creations are weaponized.

More from Inside AI

  • Features, Interviews, Press Releases

    Beyond Transcripts: Modulate Secures $25M to Scale Frontier Audio-Native AI Architecture Against Monolithic LLMs

    September 28, 2026
  • AI Hardware & Infrastructure

    Modi’s AI Data Centre Push Meets Resistance in India as Residents Protest Amazon Facility

    October 9, 2026
  • AI Safety

    ChatGPT for Teens Rated ‘Unacceptable Risk’ in New Safety Audit

    October 9, 2026
  • AI Hardware & Infrastructure

    Nvidia-backed Firmus scraps $5bn Australian IPO on weak demand

    October 9, 2026
  • AI Policy & Regulation

    Flock Safety to Cut 270 Jobs Amid Surveillance Backlash

    October 9, 2026
  • AI Policy & Regulation

    Trump AI Task Force Leaders to Meet Thursday, Full Committee Next Week

    October 9, 2026
  • AI In Business

    Ropes & Gray, Akerman Give Lawyers Billable Credit for AI Training

    October 9, 2026
  • AI Safety

    Russian AI Operation Co-Opts Unwitting Researchers in First Category 5 Influence Campaign

    October 8, 2026
  • AI Policy & Regulation

    Trump Discloses Nvidia Stock Trades As He Prepares To Honor CEO Huang

    October 8, 2026

Never Miss a Breakthrough

Join 50,000+ readers who get our daily AI intelligence briefing. No fluff, just what matters.

Join Our Newsletter Community

Subscribe

Inside AI is an independent publication covering artificial intelligence news, machine learning research, and the tools shaping the future of technology. No hype. Just what's happening in the AI world.

Topics

  • Artificial Intelligence
  • Machine Learning
  • Generative AI
  • Agentic AI
  • Vibe Coding
  • Prompt Engineering
  • AI Policy & Regulation
  • AI Hardware & Infrastructure
  • AI Tools
  • AI In Business
  • Robotics
  • Cybersecurity AI
  • AI Safety
  • AI Tools & Reviews (Coming soon)

Company

  • Editorial Standards
  • Privacy Policy
  • Terms of Service
  • Contact
  • About Us

Others

  • Press Releases
  • Features
  • Sponsored Content
  • Advertise with us
  • Newsletter

© 2026 Inside AI. All rights reserved.

Designed by Blue Flare Digital