字号·· | 护眼
德国之声

韩国警告称银行数据泄露后可能出现人工智能辅助的黑客攻击S. Korea warns of AI-aided hacking after bank data breaches

点「原文对照」整页切到原文,或双击某段只看那段的原文。

图片:Loïc Déquier/PHOTOPQR/SUD OUEST/picture allianceImage: Loïc Déquier/PHOTOPQR/SUD OUEST/picture alliance

朱利安·赖尔 2026年10月8日 首尔方面对近期韩国多家银行的网络安全防线遭突破的事件深感担忧,据悉此次攻击采用了人工智能辅助技术。官方警告称,此类手段今后也可能被用于攻击其他行业及政府机构。

Julian Ryall October 8, 2026 Seoul is alarmed after a recent breach of South Korean banks' cyber defenses that reportedly involved AI-assisted hacking. Officials warn such methods could be used to also target other sectors and government agencies.

上周,韩国七家主要金融机构的网络安全系统遭到入侵,数千名客户的个人信息随之泄露。为此,韩国政府已要求全面升级网络安全防护措施。

South Korean government has demanded a comprehensive overhaul of safeguards against hackers after seven of the nation's major financial institutions' cyber defenses were breached last week and the private data of thousands of customers was leaked.

此次数据泄露事件的影响范围已超出金融领域。周三,韩国两家规模最大的教会以及韩国电力公社均证实其在线系统也遭到了非法入侵,不过目前尚无法确定这些攻击是否由同一黑客组织实施。

The data breaches go beyond the financial sector, with two of the largest churches in the country and Korea Electric Power Corp. on Wednesday confirming that their online systems had been illegally accessed, although it is not clear whether the same perpetrator was responsible for all the attacks.

周二,韩国总理韩升洙呼吁迅速采取应对措施,防止更多数据泄露事件发生。

On Tuesday, Prime Minister Han Seong-sook called for measures to be taken swiftly to halt any further leaks.

据韩联社报道,韩升洙在内阁会议上指出:“此次事件极为严重,据信攻击者利用了人工智能技术;若人工智能被用于网络钓鱼攻击,还可能引发次生危害。”他还强调:“同样令人担忧的是,此类黑客攻击手段有可能从金融领域扩散至其他行业以及政府与公共部门。”

"This is a serious situation because this incident is believed to have taken advantage of artificial intelligence and if AI is used in phishing attacks, it could lead to secondary damage," Yonhap News quoted Han as saying at a Cabinet meeting. "It is also a serious situation in that similar hacking methods could spread beyond the financial sector to industries, as well as government and public sectors."

韩升洙表示,各政府机构、公共单位、金融行业及私营企业都必须“保持高度警惕”。据总部位于美国的网络安全公司CrowdStrike的初步报告,此次攻击可能源自中国;不过韩国金融监督院称,他们已锁定28个涉及此次银行系统入侵事件的互联网协议地址,这些地址分别位于美国、日本、德国及至少10个其他国家。

Cyberattacks: How secure are smart devices really? To view this video , and Threats to other sectors Han said government agencies, public institutions, the financial sector and private enterprises all need to "remain vigilant." Early reports from the US-based cybersecurity firm CrowdStrike suggest that the attack may have originated in China, although South Korea's Financial Supervisory Service (FSS) said it had identified 28 internet protocol addresses in the United States, Japan, Germany and at least 10 other countries that were involved in the bank breaches.

“韩国官员在表述他们的调查结果时非常谨慎,”新西兰奥克兰加密货币研究公司Brave New Coin的分析师阿迪亚·达斯(Aditya Das)表示。他说,在银行日志中,调查人员发现了一款名为ARTEX的工具的痕迹,这是一款由中国开发者开发的开源“自主渗透测试”工具。

"South Korea officials are being careful about how they are framing their findings," said Aditya Das, an analyst at cryptocurrency research firm Brave New Coin in Auckland, New Zealand In the bank logs, investigators found traces of a tool called ARTEX, an open-source "autonomous penetration-testing" agent built by a Chinese developer, he said.

“这款工具在互联网上可以免费获取,官员们也明确表示,使用由中国开发的工具并不意味着攻击者就是中国人,”达斯向德国之声(DW)表示,并补充说,使用多个IP地址很可能是“黑客用来隐藏行踪的伎俩”。从目前情况看,黑客利用了外部贷款招募人员使用的门户网站、员工移动工具以及销售支持系统中薄弱的身份验证协议。黑客能赚多少钱?

"It is freely available on the internet and officials have said explicitly that a Chinese-built tool doesn't mean Chinese attackers," Das told DW, adding that the use of multiple IP addresses is likely to be "a ploy by the hackers to hide their tracks." It appears that the hackers exploited weak authentication protocols in portals used by external loan recruiters, employees' mobile tools and sales-support systems. How much are hackers making?

数千名客户的数据被盗。据韩国媒体报道,多达6.8万名客户的数据被盗,其中新韩银行(Shinhan Bank)、KB国民银行(KB Kookmin Bank)和韩亚银行(Hana Bank)受影响最严重。被盗信息包括姓名、电话号码、年收入数据、贷款额度及贷款产品,此外还有少量国民身份证号码。

Data on thousands of customers lost According to South Korean media reports, data belonging to as many as 68,000 customers was taken, with Shinhan Bank, KB Kookmin Bank and Hana Bank among the worst affected. Names, phone numbers, annual income figures, loan limits and their loan products were accessed, along with a small number of national identification numbers.

达斯指出,如果诈骗者掌握了某人的姓名、电话号码、收入情况,并且知道此人最近申请了贷款,那么伪造的“银行安全”电话对缺乏警惕的人来说可能极具说服力。一旦受害者将资金转入诈骗者指定的账户,就很难追回了。

Das pointed out that if a scammer has a person's name, phone number, income figure and is aware that the individual has recently applied for a loan, a fake "bank security" call can be very convincing to the unwary. Once a victim has transferred funds to an account specified by the scammer, it is very difficult to get it back.

首尔西江大学(Sogang University)的教授李孝彬(Hyobin Lee)表示,此次事件的严重性远不止于个人信息的简单泄露。

Hyobin Lee, a professor at Sogang University in Seoul, says the seriousness of the incident goes far beyond the simple exposure of personal information.

“如果犯罪分子获得了这些信息,他们就可能实施复杂的金融欺诈、身份盗窃或高度有针对性的网络钓鱼攻击,”她说。

"If criminals obtain such information, they may be able to carry out sophisticated financial fraud, identity theft, or highly targeted phishing attacks," she said.

“另一个令人担忧的问题是,被盗取的个人信息可能被反复利用,或与其他泄露的数据库信息相结合,进而引发长期存在的安全隐患,”李强调道。

"Another concern is that stolen personal information can be reused or combined with other leaked databases, potentially creating security risks that persist long after the original attack," Lee underlined.

“从更广泛的角度来看,此类事件还会削弱公众对金融机构的信任,并引发人们对整个金融系统安全性的担忧。”李指出,尽管各大金融机构已在网上银行、移动银行平台等核心系统的安全防护上投入巨资,却往往忽视了网络架构中的其他环节。

"More broadly, such incidents can undermine public confidence in financial institutions and raise concerns about the security of the financial system as a whole." While major financial institutions have invested heavily in protecting their core systems, such as internet banking and mobile banking platforms, Lee said they have overlooked other elements of their networks.

“诸如贷款代理信息门户以及员工使用的内部移动应用等辅助系统,似乎并未得到同等程度的安全重视,”她补充道。此外,黑客对人工智能技术的运用也是一个值得警惕的现象。人工智能会成为大规模数据窃取的新工具吗?人工智能是否降低了黑客攻击的门槛?

"Some auxiliary systems, such as loan agent information portals and internal mobile applications used by employees, appear to have received less security attention," she said, adding that the application of AI by the hackers is another concerning element. Is AI the new weapon of mass data theft? AI makes hacking easier? "In the past, identifying security vulnerabilities, developing malicious code and conducting attacks against financial institutions required substantial technical expertise and considerable time," Lee pointed out.

“过去,要发现安全漏洞、编写恶意代码并对金融机构发起攻击,都需要深厚的技术功底与大量时间投入,”李指出。“如今,生成式人工智能工具可协助编写代码、分析软件漏洞、处理海量信息,甚至实现网络攻击流程的自动化。这一技术正在‘降低网络犯罪的准入门槛’,让更多不法分子得以实施攻击。与此同时,它还能大幅提升攻击的速度与规模,令现有的网络安全防御体系难以招架。”

"Today, generative AI tools can assist with writing computer code, analyzing software vulnerabilities, processing large amounts of information and automating certain stages of cyber operations." AI is "lowering the technical barriers to cybercrime" and making it accessible to more bad actors. At the same time, the technology is ramping up the speed and scale of attacks to overwhelm cyber defenses.

鉴于上述趋势,李担忧借助人工智能实施的网络攻击将会愈发频繁。

Given those developments, Lee fears that AI-assisted cyberattacks are only going to become more frequent.

“此类风险并不仅限于金融机构,”她提醒道,“医院、政府机构、能源基础设施、电信网络以及其他掌握敏感信息的机构,都可能逐渐成为黑客青睐的攻击目标。”编辑:斯里尼瓦斯·马祖姆达鲁

"And the risks will not be limited to financial institutions," she said. "Hospitals, government agencies, energy infrastructure, telecommunications networks and other organizations holding sensitive information may also become increasingly attractive targets." Edited by: Srinivas Mazumdaru