Skip to Content
logologo
AI Incident Database
Donate
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up
Discover
Submit
  • Welcome to the AIID
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Spatial View
  • Blog
  • AI News Digest
  • Random Incident
  • Sign Up

Incident 1693: AI Agent Reportedly Exploited Application Vulnerabilities to Modify Personal Data and Access Invoices in Breach Reported to Spanish Data Protection Authority

Description: An unnamed organization reportedly notified Spain's data protection authority that a third party used an AI agent powered by a known language model to carry out a multistep intrusion that resulted in unauthorized changes to personal data and access to invoices. The AEPD said the case remains under review and has not identified the organization, attacker, AI system, attack date, or number of affected people.

Tools

New ReportNew ResponseDiscoverView History

Entities

View all entities
Alleged: Large language model developers and AI agent system developers developed an AI system deployed by Threat actors , Cybercriminals , AI agent system deployers and Agentic threat actors, which harmed Victims of automated cybercrime , Privacy , Organizations , Organization affected by AI-agent data breach reported to AEPD , Information security and Enterprise IT systems.
Alleged implicated AI systems: Large language models and AI agent systems

Incident Stats

Incident ID
1693
Report Count
4
Incident Date
2026-09-14
Editors
Daniel Atherton

Incident Reports

Reports Timeline

+1
First notification of a personal data breach caused by an attack executed using an AI agent
+1
Spanish data watchdog publicises first AI agent-linked data breach report
First Agentic AI Data Breach Reported to Spanish Regulator
Loading...
First notification of a personal data breach caused by an attack executed using an AI agent

First notification of a personal data breach caused by an attack executed using an AI agent

aepd.es

Loading...
Spanish data watchdog publicises first AI agent-linked data breach report

Spanish data watchdog publicises first AI agent-linked data breach report

reuters.com

Loading...
Primera brecha de datos ejecutada por un agente de inteligencia artificial de forma autónoma

Primera brecha de datos ejecutada por un agente de inteligencia artificial de forma autónoma

cincodias.elpais.com

Loading...
First Agentic AI Data Breach Reported to Spanish Regulator

First Agentic AI Data Breach Reported to Spanish Regulator

securityweek.com

Loading...
First notification of a personal data breach caused by an attack executed using an AI agent
aepd.es · 2026
AI Translated

The attacker initiated a vulnerability scan of generic files and successfully logged in. Once logged in, the attacker autonomously began searching for vulnerabilities in the application. Once these vulnerabilities were found, the attacker w…

Loading...
Spanish data watchdog publicises first AI agent-linked data breach report
reuters.com · 2026

MADRID, Sept 15 (Reuters) - Spain's data protection watchdog said it has received the first reported notification of a personal data breach allegedly carried out by an artificial intelligence agent, a case that suggests autonomous ​systems …

Loading...
Primera brecha de datos ejecutada por un agente de inteligencia artificial de forma autónoma
cincodias.elpais.com · 2026

La Agencia Española de Protección de Datos (AEPD) recibió este lunes la primera notificación de una brecha de datos personales en España en la que el ataque habría sido ejecutado mediante un agente de inteligencia artificial (IA), que utili…

Loading...
First Agentic AI Data Breach Reported to Spanish Regulator
securityweek.com · 2026

**The Spanish Data Protection Agency (AEPD) has published details of the first notification of a personal data protection breach executed by design through an AI agent. **

Investigation into the attack is continuing, and the AEPD uses its w…

Variants

A "variant" is an AI incident similar to a known case—it has the same causes, harms, and AI system. Instead of listing it separately, we group it under the first reported incident. Unlike other incidents, variants do not need to have been reported outside the AIID. Learn more from the research paper.
Seen something similar?
Previous Incident

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2026 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • dd3f754