SBS NEWS

News > Society

Hacking Spreads Across Financial Sector... Personal Info Leaked from Capital and Savings Banks

Lee Hyun-jung

Published : Oct 3, 2026 11:00 PM

Video

[Anchor]

Following four major commercial banks, personal information has now been leaked in the secondary financial sector due to hacking attacks. Driven by simultaneous hacking using artificial intelligence, the damage is expanding across the entire financial sector.

First, reporter Lee Hyun-jung has the details.

[Reporter]

Hyundai Capital announced that personal information of 146 loan solicitors was leaked due to a hacking attack on its mortgage loan solicitor inquiry page.

The leaked data includes names, mobile phone numbers, and resident registration numbers.

An official from Hyundai Capital explained, "While reviewing overseas IP addresses shared by financial authorities that were used to hack Shinhan Bank, we discovered that the page in question was attacked on September 27." They added, "Yesterday (October 2), we immediately blocked the IP and the page, and formed a dedicated task force for incident response."

Yegaram Savings Bank also stated, "On September 30, we confirmed circumstances where an unidentified hacker accessed a server containing customer personal information, resulting in a data leak."

It is estimated that the names, dates of birth, and contact information of approximately 40,000 customers were leaked.

It was determined that no access or attacks were made on internal systems.

Previously, personal information leaks due to hacking occurred at Shinhan, KB Kookmin, Hana, and BNK Busan banks.

Woori and NH Nonghyup banks also experienced hacking attempts, but no damage has been identified so far.

According to an internal analysis report by Woori Bank obtained by SBS, nine access histories from three suspicious IP addresses were identified, but the firewall blocked them to prevent damage.

With hacks confirmed to have been carried out using common IP addresses across multiple financial institutions, experts view these as attacks utilizing artificial intelligence.

[Professor Hwang Seok-jin / Dongguk University Graduate School of Information Security: "(It is presumed that) they scanned for vulnerabilities, attempted authentication using stolen or leaked account credentials, and then accessed the system like legitimate users by exploiting loopholes in identity verification and access control."]

As the damage spreads, the Financial Services Commission decided to summon the heads of associations across all financial sectors and representatives of the affected financial companies to hold an emergency inspection meeting at the Government Complex Seoul tomorrow (October 4).

(Video by Lee Chan-soo | Video Editing by Park Ji-in | Design by Kang Yoon-jung)