入侵韩国银行的攻击者曾询问 Claude 去哪里出售窃取的韩国数据,官员认为一个开源中国智能体工具协助入侵了至少 7 家韩国金融机构。攻击者自己的 Claude Code 会话历史、Claude 记忆文件和 ARTEX 配置留在开放目录中,直接展示了这场针对韩国金融业的 AI 辅助入侵行动。
原文披露攻击者的 Claude 会话记录和 ARTEX 配置外泄,读者可借此了解 AI 辅助入侵韩国金融机构的实际运作方式。
The attacker who breached South Korean banks asked Claude where stolen Korean data sells.
And Officials believe an open-source Chinese agent helped breach at least 7 South Korean financial institutions.
The attacker’s own Claude Code session histories, Claude memory files and ARTEX configurations sat in open directories, giving a direct view of how an AI-assisted intrusion campaign against South Korean finance was run.
ARTEX, a recently released Chinese open-source agentic pentesting tool, ran on DeepSeek v4.1-flash, likely reached through an API reseller, from a host that probably carried out the Korean attacks.
来源:Rohan Paul · x.com