ARTEX Goes Closed-Source After Bank Hacks
ARTEX developer Autumn-27 is taking the AI penetration-testing agent closed-source after cybersecurity researchers linked an ARTEX deployment to attacks on South Korean financial institutions. The developer says the project will receive no further public releases or maintenance.
ARTEX’s shutdown highlights how quickly autonomous security tooling can move from legitimate red-team research to real-world abuse.
- –CrowdStrike linked the campaign to ARTEX, Claude Code, and multiple external LLMs
- –The attribution remains unconfirmed by South Korean authorities and affected banks
- –Closing the repository cannot remove existing clones, forks, or deployed copies
- –Security teams should treat agentic pentesting tools as high-risk infrastructure requiring strict authorization, isolation, and logging
DISCOVERED
1h ago
2026-10-09
PUBLISHED
1h ago
2026-10-09
RELEVANCE
AUTHOR
mark_k
