/Submit incident
Documented

Unmanaged AI 'Shadow Agents' Pose Data Security and Governance Risks in EMEA Enterprises

September 9, 2026
oecd:2026-09-09-2c62View source ↗

What happened

Veeam research reveals that 70% of EMEA organizations have automated AI workflows accessing sensitive data without full oversight, and 67% report employees creating autonomous AI workflows beyond IT control. This lack of governance raises risks of data exposure, compliance breaches, and executive liability across the region.

Reported impact

Affected parties
Not publicly disclosed
Harm type
Not publicly disclosed
Scale
Not publicly disclosed
Financial impact
Not publicly disclosed
Regulatory action
Not publicly disclosed

Classification

Organization
Not publicly disclosed
AI system
Not publicly disclosed
Industry
Not publicly disclosed
Country
Not publicly disclosed
Provider
Not publicly disclosed
Incident type
Not publicly disclosed

Relevant governance controls

Governance control mapping is not available for this record.

  • No controls mappedNot publicly disclosed

Control mapping is analytical. It does not state that any control would have prevented the incident.

Sources and evidence

OECD AI Incidents Monitor
Primary source
Unmanaged AI 'Shadow Agents' Pose Data Security and Governance Risks in EMEA Enterprises
2026-09-09