Securities Industry on High Alert Amid Ongoing Financial Sector Hacking Incidents

by Yang Boyeon Posted : October 5, 2026, 14:08Updated : October 5, 2026, 14:08

With a series of hacking incidents targeting the financial sector, the securities industry is maintaining heightened vigilance and conducting security checks even during the holiday period.

As of now, no customer data breaches have been reported at securities firms, according to industry sources on October 5.

No unusual activities related to hacking have been detected at key related institutions, including the Korea Exchange, Koscom, and the Korea Securities Depository.

However, following a wave of hacking incidents affecting major commercial banks, securities firms are reinforcing their internal security systems and conducting comprehensive reviews.

A representative from one securities firm stated, "After the hacking incidents at commercial banks, financial authorities shared information about the attackers' IP addresses and attack types across the financial sector, and we have completed blocking and restricting measures. We are continuously monitoring for any further hacking attempts."

An official from NH Investment & Securities noted, "We have verified whether the methods used in the recent hacking attempts were directed at us and found no issues. We have completed blocking access from the IPs used in the attacks and are actively responding to guidance released by financial authorities."

According to financial authorities, the same attacker's IP address was found in incidents involving seven companies, including Shinhan, KB Kookmin, Hana, BNK Busan Bank, Yegaram, Welcome Savings Bank, and Hyundai Capital.

The attacker is believed to have utilized artificial intelligence (AI) tools to conduct large-scale automated attacks on multiple financial institutions.

The Financial Supervisory Service has disseminated information about the attack IPs and security precautions to approximately 500 firms across the financial sector.

Banks and card companies must complete emergency inspections by October 6, while securities, insurance, savings banks, and electronic financial service providers have until October 8.

The institutions under review must check against a checklist of 12 items, including whether they have blocked attack IPs and conducted damage investigations, as well as identifying and strengthening security for externally exposed IT assets and services. Any deficiencies must be addressed immediately.

As a result, security departments at securities firms have been on emergency duty during the three-day holiday period.

A representative from Samsung Securities stated, "We are operating an emergency system during the holiday and are thoroughly reviewing our overall security framework."

A spokesperson from Mirae Asset Securities also reported, "So far, there have been no unusual findings from our inspections, and we are continuing our defensive measures during the holiday."

Another securities firm representative mentioned, "We checked for any unusual hacking activities just before the holiday, but we are reviewing everything again in accordance with financial authorities' guidelines. After examining past data and access logs, we have found no signs of intrusion or anomalies, and we are continuously enhancing our monitoring efforts."



* This article has been translated by AI.