Posted on 10/08/2026 11:09:09 AM PDT by EnderWiggin1970
Hilltop National Bank, based in Casper, Wyoming, took its internal banking systems offline Wednesday after identifying a cybersecurity incident that disrupted online and mobile banking, telephone service and scheduled payments.
Hilltop first publicly acknowledged the disruption at 8:32 a.m. MDT Tuesday, Sept. 8. The bank said at 3:43 p.m. that interruptions to its online, mobile and telephone services were continuing.
Employees had begun noticing problems across the bank’s information technology infrastructure Tuesday, according to County17. After midnight Wednesday, Bill Salvin, a representative for Hilltop Bank and True Companies, said the bank had identified the problem as a cybersecurity incident and shut down its internal systems to isolate the network and protect data.
County17 reported that debit cards and ATM withdrawals remained available under a combined $1,000 daily limit. The limit applied to card purchases and ATM withdrawals together, rather than providing $1,000 for each. Automatic payments scheduled during the outage would not be processed.
(Excerpt) Read more at dysruptionhub.com ...
Dear FRiends,
We need your continuing support to keep FR funded. Your donations are our sole source of funding. No sugar daddies, no advertisers, no paid memberships, no commercial sales, no gimmicks, no tax subsidies. No spam, no pop-ups, no ad trackers.
If you enjoy using FR and agree it's a worthwhile endeavor, please consider making a contribution today:
Click here: to donate by Credit Card
Or here: to donate by PayPal
Or by mail to: Free Republic, LLC - PO Box 9771 - Fresno, CA 93794
Thank you very much and God bless you,
Jim
I hear a lot about AI/quantum risks to cryptocurrency, but it seems to me the banking system has orders of magnitude greater vulnerability and risks to these threat vectors, and now we see it in real time. Are other banks being taken out by AI hackers? What is the trend? What happens if one of the big national banks suffers a comparable attack? (I was told Hilltop had just passed their cybersecurity audits with flying colors before this attack.)
I should add that this was described to me as an AI based attack, which I don’t think was mentioned in this article.
This is from a month ago. Did it go down again?
Based on some other searches South Korea's banking industry has taken some bad hits from AI attacks, which makes sense if the Norks are behind it (North Korea has put a lot of focus on developing their hacking capabilities in recent years). And another small US bank was mentioned as being hacked. Which makes sense that it might be smaller US banks that are more vulnerable to sophisticated hacking than the bigger banks. But it might be a sign of what is coming in the months ahead if the balance of power is shifting in the arms race between hackers and banks.
AI attack probably caused by AI generated code.
“AI based attack” is a very buzzy term that doesn’t really mean anything.
It could mean autonomous AI agents got loose and attacked the bank (like the HuggingFace attack). This is a truly terrifying development that the creators of agents should be held accountable for.
But more than likely it just means that an attacker used AI tools during their attack on the bank.
In a traditional attack, the bad guys would find a toehold into the network of the bank by misconfigured firewall settings or someone revealing a password or someone clicking a bad link or downloading a bad attachment. Then the bad guys would manually run hacking tools to find other toeholds (configuration issues, unpatched software, vulnerabilities, etc..) to pivot their way through the network to escalate privileges and take control.
The most basic attacks could be performed by what are derisively called “script kiddies” who don’t really know what they are doing but know how to run the pre-configured scripts to try to find exploitable “toeholds” in the network. The more sophisticated attacks could be performed by highly skilled hackers who know exactly what they are doing, have more sophisticated tools and know what the next pivot should be immediately.
This could be a very time consuming process that could potentially take hours/days/weeks and would have the potential to be detected and stopped if the appropriate monitoring and notification systems were in place.
With AI, these hacking tools can be leveraged in real time by multiple AI agents (who are all “highly skilled hackers”) and with lightning speed. This could allow the attacker to outrun the monitoring and detection put in place to stop them.
Another “AI based attack” could involve using AI to help in the social engineering of the employees. For example, the “CEO” could call a user and tell them to go to a website, enter their Windows/Microsoft credentials and download a file. But the “CEO” could be an AI clone of the CEO’s voice being used by a bad guy. From there, they would do what I described above.
At least these are some of the things the bad guys have been up to lately. It’s really just bad guys using AI to more effectively and efficiently run the same scams they have been running for years.
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.