AI Tool ARTEX Used in Korean Hacks Halts Development
ARTEX, a Chinese AI penetration testing tool exploited in hacks targeting South Korea's financial sector, is halting its public development. A penetration testing tool is a hacking simulation program designed to identify security vulnerabilities, and ARTEX is an autonomous program in which AI independently analyzes targets and plans intrusion paths.
The developer, known as 'Autumn-27,' stated in a GitHub post on the 8th that "considering the tool's misuse, we will no longer update it and will switch to a closed-source model," adding that "future versions will not be released to the public, and maintenance support will not be provided."
US security firm CrowdStrike analyzed that attacks targeting South Korean financial institutions took place between late last month and early this month, with the attackers using ARTEX in combination with an LLM.
ARTEX stated that using the tool for cyberattacks runs counter to the developer's intent. It also took the position that it bears no responsibility for any acts that violate laws or regulations carried out using the tool.
A Chinese information and communications expert said the decision to halt development alone cannot remove copies that have already been downloaded or prevent users from continuing to use the tool. ARTEX's GitHub page has since been confirmed to be no longer available.
