Spain's state-owned railway company, **Renfe**, has confirmed that it was the target of a cyberattack that led to the exposure of some user data. This incident is notable because it marks the first known use of **artificial intelligence** in a cyberattack within Spain. The breach originated from servers managed by **Adif**, the public railway infrastructure manager, which had been "previously compromised and interconnected with the company's systems." According to **Renfe**, the attackers gained access to limited user information, primarily names and email addresses. There is currently no "formal evidence" that the data has been publicly released, and the company emphasized that no banking, financial, or identification data were accessed.
The attack reportedly followed "several weeks" of attempted intrusions that were "successfully detected and blocked," according to **Renfe**. Despite the breach, railway operations are continuing without disruption. Sources close to the investigation suggest that the attackers may be a foreign group. According to the Spanish daily **El Mundo**, which cited these sources, a criminal organization used a "similar system" to the AI of **Anthropic** to target **Adif**'s website, which was inaccessible on Friday evening. **El Mundo** claims this is the first AI-powered cyberattack on a Spanish public company's website and notes that the incident lasted "several days."
A **Renfe** spokesperson did not disclose the number of users affected by the data breach or the exact timing of the incident. Media reports, including **El Mundo** and others, stated that cybercriminals accessed 500 gigabytes of data. According to **La Razón**, which also relied on sources close to the case, the attack's method suggests a foreign group was responsible. Concerns about the growing power of AI tools have intensified globally, especially after a series of hacking incidents involving models developed by **OpenAI**, the creators of **ChatGPT**, and its competitor **Anthropic**. These concerns have been compounded by warnings about potential hybrid attacks targeting Western allies of **Ukraine**, nearly five years after Russia's invasion of the country.
This incident adds to a challenging period for **Renfe**, which has also been dealing with issues related to its new high-speed trains. These trains have experienced cracks and have had to be taken out of service, adding to the company's difficulties.
Spain's State-Owned Railway Company Suffers Cyberattack Involving AI, Data Breach Reported
AI-rewritten from original reportingHow it works
cyberattackaispainrenfedata-breachadif
Original sources:
- 🇫🇷BFMTV



