Business · Singapore Bureau
Chinese DDoS group blamed for AI-driven attacks on Korean banks
A report links a China-based cyber group to coordinated distributed denial-of-service attacks targeting South Korea's financial sector. The attackers reportedly employed artificial intelligence tools and diversified infrastructure to evade detection.
LSN Singapore ·

Cybersecurity researchers have attributed a series of sophisticated attacks against South Korean financial institutions to a threat actor based in China, according to findings released this week. The campaign reportedly leveraged artificial intelligence capabilities alongside traditional distributed denial-of-service techniques to disrupt banking operations across the region.
The attackers demonstrated advanced operational security practices by deploying multiple attack servers and utilizing alternative network pathways to maintain access and avoid attribution. This multi-layered infrastructure approach allowed the group to distribute its attack load and complicate defensive responses from targeted institutions and cybersecurity authorities.
The incidents underscore growing concerns about the convergence of AI technologies and conventional cyber attack methods. Security experts warn that such hybrid approaches present elevated risks to critical financial infrastructure, which remains a high-priority target for state-sponsored and state-affiliated threat actors.
South Korean financial regulators and security agencies have not yet issued public statements regarding the reported campaign. The findings add to mounting evidence of persistent cross-border cyber threats targeting the region's economic infrastructure, a concern that has prompted increased investment in defensive capabilities and international cooperation on cybersecurity matters.