AI-Driven Hacking Targeting Finance Detected With ARTEX Traits
EverSpin says it detected an attack attempt targeting the financial sector with ARTEX traits, combining scraping and direct API calls with AI automation.
EverSpin says it has detected an attack attempt targeting the financial sector with ARTEX traits. According to a Yonhap News report dated October 7, 2026, the attempt combined existing scraping and direct-API-call techniques with AI automation.

Image source: 연합뉴스 기사 페이지
This report does not pin down the timing of the attack, detailed figures, or the scale of any damage. It focuses on the detection claim, the outline of the technique, and the defensive direction. No figures beyond the confirmed source range are stated here.
What was detected
EverSpin says it detected an attack attempt aimed at the financial sector exhibiting ARTEX traits. Per the description cited in the report, the case was analyzed as an attack attempt showing ARTEX traits, not confirmed as a completed breach.
Because only a truncated form of the original article text was available, the timing of the attack and detection, the number of targeted institutions, and whether any actual damage occurred remain unconfirmed. This draft treats only EverSpin's detection claim and the reported outline of the technique as fact.
Technique and target: scraping, direct API calls, AI automation
The core of the reported technique is the combination of existing attack methods with AI automation. The attack reportedly combined scraping and direct API calls with AI automation.
The confirmed source range does not establish specific target service names, access scope, or attempt counts. This draft makes no determination about the target scope.
Why server-side defense is emphasized
Citing this case along with a separate reproduction experiment, EverSpin explained that AI can quickly automate existing attack methods. In the same context, it emphasized that beyond simply blocking AI bots, a defensive posture that detects and controls abnormal behavior such as repetition and evasion on the server side is becoming important.
This is EverSpin's argument that client identification or single bot-blocking rules alone struggle against repeated attempts and evasion patterns — a recommendation for behavior-based detection and control on the server side, not an independently verified defensive performance figure.
The reported scope does not present concrete deployment methods or detection performance for such a defense system. Cross-checking against EverSpin's official announcement is needed on this point.
Sources
- Yonhap News: 금융권 노리는 AI 해킹…'ARTEX' 특징 공격 시도 포착