Crowdstrike Holdings IncCrowdStrike disclosed the suspect behind the South Korean bank attacks used ARTEX and Claude Code, but the article gives no clear positive or negative business impact for CrowdStrike.

The developer of the open-source penetration testing tool ARTEX, developed in China, has announced it is ending updates and switching to closed-source software, with no further public releases and no maintenance support, because the tool was misused. The developer, who uses the GitHub account Autumn-27, said on Thursday, October 8, that ARTEX was built to help organizations test the security of their systems, not to support illegal activity. Earlier, CrowdStrike, a US cybersecurity company, disclosed that the suspect behind the cyberattacks on South Korean financial institutions may be a 26-year-old man living in China's Guangdong province, who used the ARTEX tool together with Anthropic's Claude Code. ARTEX was launched on GitHub this year as open source, an AI agent designed to automate penetration testing and connect to external AI models such as ChatGPT, Claude and DeepSeek to help organizations find vulnerabilities in their networks. Since late September, several banks in South Korea have been targeted in cyberattacks, prompting police to open an investigation, while President Lee Jae-myung called for strict countermeasures. Chinese Foreign Ministry spokesperson Mao Ning said the ministry had no detailed information about the case, and stressed that China has always opposed and cracked down on cyberattacks.
Crowdstrike Holdings IncCrowdStrike disclosed the suspect behind the South Korean bank attacks used ARTEX and Claude Code, but the article gives no clear positive or negative business impact for CrowdStrike.
The ARTEX developer is ending updates and switching to closed-source software after the open-source tool was linked to cyberattacks on South Korean banks.