Back to Now
South Korean church cyberattack investigations debate Developing

Korean churches probe breaches with possible AI-linked attack records

Two Seoul churches are investigating suspected intrusions; one warns member data may have leaked, while records only suggest possible AI use.

Why now Reuters reported the churches' responses and the security firm's findings on October 7 at 03:01 UTC.

Churches investigate possible data exposure

Yoido Full Gospel Church and Sarang Church in Seoul are examining suspected cyberattacks, Reuters reported on October 7. Yoido said an initial analysis indicated that information relating to 850,000 members may have been compromised. The church described names and birth dates in the relevant records, with some change records involving identification numbers, addresses or telephone numbers. It said it was notifying affected members, restricting external access and changing server passwords. Sarang said it had formed an emergency task force, reported the suspected incident to authorities and was investigating the scope. The 850,000 figure describes potentially exposed member information, not a verified count of records taken by attackers.

AI involvement remains a lead

Cybersecurity company Oasis Security said it found church-linked data, account information and attack records on an overseas server. It pointed to references to “sub-agents” and extensive reports that appeared automated as signs that AI tools might have been used in the intrusion, according to Reuters. Those observations are leads for investigators, not proof of a particular model or agent carrying out the attack. SBS separately reported Yoido’s account of its preliminary review; its English report notes that it was AI-translated. This case concerns churches and is distinct from the cyberattacks against South Korean banks reported earlier in the week. The precise exposure and any connection between the incidents remain unresolved.