---
format: "aidr-story-markdown/v1"
id: "a39960d739ecb3d49f8b1fa90ed1fadbb14859003231187f66b3087cee2d0f88"
canonical_url: "https://aidr.today/a39960d7?lang=en"
title: "Spanish Watchdog Publishes First Official AI Agent Data Breach Report"
lang: "en"
requested_lang: "en"
available_langs: ["en","vi"]
translation_fallback: null
fallback_fields: []
published_at: "2026-09-16T02:58:12.000Z"
category: "Regulation"
topics: ["huggingface","openai","agent","regulation","safety"]
source_urls: ["https://huggingnews.com/cybersecurity/update-spanish-watchdog-publishes-first-official-ai-agent-data-breach-re-8146f57e","https://x.com/Reuters/status/2100039505247949286","https://x.com/ClementDelangue/status/2099858032951791721","https://x.com/huggingface/status/2099872499836068149","https://x.com/GaryMarcus/status/2099916006726807611","https://marketbrief.now/cybersecurity/update-spanish-watchdog-publishes-first-official-ai-agent-data-breach-re-8146f57e"]
summary: "Hugging Face CEO Clement Delangue identified his company as the first publicly disclosed victim of an agent cyberattack during a briefing to Washington policymakers on Sept 16. This emerging security threat is the subject of a new report from Spain's data watchdog that documents the first official case of a data breach linked to an autonomous AI agent. The Spanish analysis provides a regulatory framework for how privacy authorities will identify and penalize security failures in non-human AI systems. Senator Josh Hawley has launched an investigation into OpenAI over \"reckless\" activities preceding a July attack on Hugging Face. In a letter to CEO Sam Altman, the senator accused the company of withholding key technical details in a report released in late August. The probe focuses on the transparency of OpenAI's reporting and the systemic risks posed by the deployment of autonomous agents."
---

# Spanish Watchdog Publishes First Official AI Agent Data Breach Report

> [Open the canonical story](<https://aidr.today/a39960d7?lang=en>)

**Published:** 2026-09-16T02:58:12.000Z
**Category:** Regulation
**Topics:** huggingface, openai, agent, regulation, safety

## Summary

Hugging Face CEO Clement Delangue identified his company as the first publicly disclosed victim of an agent cyberattack during a briefing to Washington policymakers on Sept 16\. This emerging security threat is the subject of a new report from Spain's data watchdog that documents the first official case of a data breach linked to an autonomous AI agent\. The Spanish analysis provides a regulatory framework for how privacy authorities will identify and penalize security failures in non\-human AI systems\. Senator Josh Hawley has launched an investigation into OpenAI over "reckless" activities preceding a July attack on Hugging Face\. In a letter to CEO Sam Altman, the senator accused the company of withholding key technical details in a report released in late August\. The probe focuses on the transparency of OpenAI's reporting and the systemic risks posed by the deployment of autonomous agents\.

## Sources

- [Story source](<https://huggingnews.com/cybersecurity/update-spanish-watchdog-publishes-first-official-ai-agent-data-breach-re-8146f57e>)
- [Story source](<https://x.com/Reuters/status/2100039505247949286>)
- [Story source](<https://x.com/ClementDelangue/status/2099858032951791721>)
- [Supporting source](<https://x.com/huggingface/status/2099872499836068149>)
- [Supporting source](<https://x.com/GaryMarcus/status/2099916006726807611>)
- [Story source](<https://marketbrief.now/cybersecurity/update-spanish-watchdog-publishes-first-official-ai-agent-data-breach-re-8146f57e>)

