
Community Bank Self-Reports Customer Data Exposure to Unauthorized AI Application to SEC
Artificial IntelligenceExposureFinancial SectorU.S.Data BreachSECComplianceCustomer DataBanking
A U.S. commercial bank, Community Bank, self-reported to the Securities and Exchange Commission (SEC) on May 12, 2026, for exposing customer data to an unauthorized AI application. The bank, operating in southwestern Pennsylvania, Ohio, and West Virginia, disclosed the incident via an 8-K filing after launching an internal investigation. No specific details about the volume of exposed data, the AI application involved, or the exact nature of the customer information were provided. The filing indicates the bank identified the issue and proactively notified regulators. The incident highlights a compliance breach related to unauthorized data processing in the financial sector.