AI Companies Are Rehearsing the Disaster They Hope Never Happens

OpenAI and Anthropic run internal crisis drills as Chinese-linked attackers hit nine South Korean banks using AI-powered tools

Alex Barrientos Avatar
Alex Barrientos Avatar

By

Image: Deposit Photos

Key Takeaways

Key Takeaways

  • OpenAI and Anthropic privately war-game political fallout from catastrophic AI infrastructure attacks.
  • Chinese-linked attackers used AI tool ARTEX to breach at least nine South Korean banks.
  • Proposed AI kill switches face practical limits, as distributed models cannot be centrally shut down.

Senior figures at OpenAI and Anthropic are privately war-gaming a catastrophic AI-related incident that knocks out financial services, power, or water, followed by the political firestorm that comes next, according to Axios (October 9, 2026). OpenAI confirmed it runs preparedness exercises designed to improve readiness, emphasizing those scenarios are not considered inevitable. Anthropic declined to comment.

The planning reportedly focuses less on preventing the event itself and more on surviving what comes after: congressional hearings, public fury, and emergency legislation.

The Threat Is No Longer Theoretical

Documented evidence from South Korea shows AI-enabled attack tools already operating against real financial targets.

CrowdStrike identified a campaign active from late September to early October 2026. Attackers used ARTEX, a Chinese-developed open-source agentic penetration-testing tool, alongside large language models including DeepSeek v4.1-flash, to target South Korean financial institutions.

Attacker-controlled infrastructure contained Claude Code session histories, ARTEX configuration files, and Claude memory files. Reported targets included a bank loan-inquiry service used by financial brokers and an employee mobile work-support system.

Reuters reported at least nine South Korean banks were targeted or disclosed breaches. Shinhan Bank said roughly 25,000 customers were affected, while KB Kookmin Bank reported a leak involving 119 customers. The full scope of exfiltrated data remains unconfirmed.

CrowdStrike assessed the suspected actor as likely a Chinese speaker with financial motivation but stopped short of attributing the campaign to a named adversary.

Finding Anthropic’s Claude Code in session histories on attacker infrastructure illustrates a problem with no easy resolution. A model being misused does not mean its developer caused or endorsed the attack.

The Political and Regulatory Reckoning

Unnamed industry sources expect a severe incident to accelerate congressional action, though that assessment reflects insider expectations rather than any confirmed forecast.

Unnamed industry sources cited by Axios said AI companies expect a severe incident to speed up congressional action, particularly if Democrats gain control after the midterm elections. Options reportedly under discussion range from development pauses and bans on superintelligence to mandatory emergency shutdown mechanisms.

A kill switch sounds decisive in a hearing room. In practice, globally distributed models and open-weight systems run on private servers. Model files already downloaded by users cannot be switched off with a single executive order.

Economic entanglement makes any emergency response harder still. AI infrastructure runs through data centers, semiconductor supply chains, cloud services, and energy systems, meaning a sudden shutdown would ripple well beyond the AI sector.

Responsibility after an incident would be contested. Model developers, users, infrastructure providers, and regulators would each face scrutiny, and no AI-specific legal framework currently assigns liability when a commercially available model is weaponized by a third party.

What This Means for Everyday Services

The scenarios under discussion are not abstract exercises; they concern the services that underpin daily life.

Banking access, communications networks, electricity, and water treatment all depend on software infrastructure. Private preparedness exercises are a start. Without transparent safety standards and enforceable incident-reporting requirements, however, voluntary war-gaming inside corporate offices may not be sufficient, and that is the question policymakers will eventually be forced to answer.

Share this

At Gadget Review, our guides, reviews, and news are driven by thorough human expertise and use our Trust Rating system and the True Score. AI assists in refining our editorial process, ensuring that every article is engaging, clear and succinct. See how we write our content here →