Tuesday, October 6, 2026

IP Addresses Used to Hack Commercial Banks Also Tried to Access Servers of Three Internet-Only Banks... "No Damage Occurred"

Input
2026-10-06 13:57:15
Updated
2026-10-06 13:57:15
News1
[Financial News] IP addresses used by hackers (cyber attackers) in recent hacking incidents involving commercial banks and other major financial institutions reportedly attempted to access the servers of KakaoBank and K Bank after targeting Toss Bank. However, no damage from these attempts has been identified at any of the three internet-only banks. 
According to financial-sector sources on the 6th, some of the IP addresses involved in recent attacks on commercial banks also attempted to access KakaoBank and K Bank servers this year.
The findings came after financial authorities shared with the financial sector the IP addresses used in the attacks and conducted inspections following hacking incidents at Shinhan Bank, KB Kookmin Bank, Bank of Hope, Busan Bank, YEGARAM SAVINGS BANK, Welcome Saving Bank and Hyundai Capital Services. 
The IP addresses were confirmed to have made repeated attempts to access KakaoBank since January this year. However, the attempts were detected and blocked by its security systems and did not lead to further damage. 
A KakaoBank official said, "Amid ongoing attempts to attack financial institutions recently, there were external attempts to probe KakaoBank for vulnerabilities. They were detected and blocked through our security systems, and no unusual activity has been identified to date. We will continue to regularly monitor and respond to new security threats."
K Bank also detected connection attempts from the same IP address, but no damage resulted from the attempts. 
The IP address was also reportedly found to have attempted to access Toss Bank's servers approximately 10 times in total from January through August this year. Toss Bank likewise properly blocked the suspicious access under its security protocols, and no damage, including system compromise or customer information leakage, occurred. 
A banking-sector official said, "The attackers likely also attempted to access internet-only banks while probing for vulnerabilities at multiple financial institutions." 
[email protected] Lee Hyun-jung Reporter