ADIF reports sophisticated AI-driven cyberattack that may have compromised supplier data
Spain's railway manager ADIF confirmed a highly sophisticated AI-powered cyber intrusion that stole data and possibly accessed supplier platforms, disabling its website.
Over the recent weekend, ADIF, Spain's state railway infrastructure manager, identified a sophisticated cyber intrusion carried out by an artificial-intelligence tool. The AI allegedly harvested data from ADIF's systems and may have infiltrated the digital platforms of several of its suppliers, leading to the temporary shutdown of ADIF's public website. While the exact volume of exfiltrated information is not verified, one outlet estimates place it at roughly 500 gigabytes, and no confirmation has emerged that the data has been posted on the dark web.
The incident has been reported to the Centro Criptológico Nacional, with a formal notification to the Agencia Española de Protección de Datos expected shortly. Unconfirmed reports also link the attack to Renfe, the national rail operator, though both Renfe and the Ministry of Transport have not acknowledged any breach.
Why it matters
A sophisticated AI-based hack on a key public railway entity raises concerns about national infrastructure security and data privacy.
In this story
