President Lee orders probe into financial sector personal data leaks
- South Korean President Lee Jae-myung has ordered a thorough investigation and response measures following a series of personal data leak incidents targeting the nation’s banks, finance companies and...
- FSC Chairman Lee Eog-weon convened an emergency meeting with financial industry associations, regulators and executives from affected institutions to mandate a heightened state of vigilance across the sector.
- Authorities are investigating the possibility that artificial intelligence was utilized to execute the attacks.
South Korean President Lee Jae-myung has ordered a thorough investigation and response measures following a series of personal data leak incidents targeting the nation’s banks, finance companies and public agencies, according to the presidential office.
Emergency Financial Response and Security Inspections
FSC Chairman Lee Eog-weon convened an emergency meeting with financial industry associations, regulators and executives from affected institutions to mandate a heightened state of vigilance across the sector. During the briefing, the FSC directed financial institutions to conduct comprehensive security inspections, tighten access controls, minimise external system access and reinforce consumer protection protocols. Regulators are also establishing a rapid information-sharing network to circulate threat data, such as Internet Protocol (IP) addresses and specific attack methods, to prevent further breaches.
Suspected AI-Driven Attack Patterns
Authorities are investigating the possibility that artificial intelligence was utilized to execute the attacks. Chairman Lee signaled that the financial sector must pivot toward an “AI attacks defended by AI” strategy, suggesting broader upgrades to the country’s cybersecurity framework. According to reports from the Yonhap news agency, regulators believe the attackers were not focused on a single institution but were instead conducting a broad scan of multiple financial companies to identify vulnerabilities.
Attack Traffic Originates from Multiple Countries
Data submitted to lawmakers indicates that the attack traffic originated from IP addresses spanning several countries, including the United States, Japan, Singapore, Vietnam, and Britain. While the investigation remains in its early stages, members of the opposition People Power Party have said that authorities should also examine the possibility of North Korean involvement in the campaign. The emergency meeting, originally scheduled for Oct. 7, was moved forward by regulators following the discovery of additional breaches at second-tier financial institutions.
