Decrypted: The UK Cyber Briefing
Oct 5, 2026 · 4 min · 6 segments
Seven South Korean financial firms have reported data leaks since Thursday, and officials say AI automation cannot be ruled out. The weak point was supplier and agent access, not the vault. The Secure…
Next, what happened? According to the Korea Times, seven firms have reported leaks since Thursday.
They are Shinhan Bank, KB Kookmin Bank, Hana Bank, Busan Bank, Jaegwonam Savings Bank, Welcome Savings Bank, and Hyundai Capital.
More than sixty-seven thousand people are believed to be affected.
The exposed data includes names, contact details, resident registration numbers, annual income, and loan limits.
The Financial Services Commission's chairman, Lee Ok-won, said there's currently no indication that data directly usable for unauthorized payments has leaked, but he warned of follow-on voice phishing and smishing.
Reported figures per firm differ between outlets, so treat exact counts with caution.
And also, the door they used.
The attackers didn't go near the core banking systems.
Reporting says they hit systems used by employees, outside contractors, and loan agents.
Credential stuffing was involved, which means replaying passwords stolen from other breaches.
Officials noted that this doesn't necessarily point to a Chinese origin, and no perpetrator has been named.
Next, what happened? According to the Korea Times, seven firms have reported leaks since Thursday.
They are Shinhan Bank, KB Kookmin Bank, Hana Bank, Busan Bank, Jaegwonam Savings Bank, Welcome Savings Bank, and Hyundai Capital.
More than sixty-seven thousand people are believed to be affected.
The exposed data includes names, contact details, resident registration numbers, annual income, and loan limits.
The Financial Services Commission's chairman, Lee Ok-won, said there's currently no indication that data directly usable for unauthorized payments has leaked, but he warned of follow-on voice phishing and smishing.
Reported figures per firm differ between outlets, so treat exact counts with caution.
And also, the door they used.
The attackers didn't go near the core banking systems.
Reporting says they hit systems used by employees, outside contractors, and loan agents.
Credential stuffing was involved, which means replaying passwords stolen from other breaches.
Officials noted that this doesn't necessarily point to a Chinese origin, and no perpetrator has been named.
The rest of this transcript — segmented and speaker-labeled, so you land on the exact moment something was said
Search every transcript — by keyword, by phrase, or by meaning, across every show Radar indexes
Trends — what is surging across podcasts, measured against its own baseline
Alerts — when a name you follow appears in a newly indexed episode
No account is needed to search Radar.