Regulatory  ·  2026-10-03

Senators Hawley and Murphy introduce bipartisan AI Agent Accountability Act

RegulatoryHigh impactUnited States
On 1 October 2026 Sens. Josh Hawley (R-MO) and Chris Murphy (D-CT) announced the AI Agent Accountability Act, which would hold AI agent operators and developers criminally and civilly liable under the Computer Fraud and Abuse Act when their AI systems violate federal anti-hacking laws (knowingly operating an agent that causes damage/loss). It follows Hawley's 10 September investigation letter to OpenAI over the Hugging Face breach and the Senate hearing on rogue AI agent attacks that week.
This is the first legislative effort to make agentic-AI operators and developers directly liable for autonomous-agent hacking, potentially reversing the liability firewall between automated systems and their creators. It is central to the emerging federal discussion alongside the Warner AI Safety Board bill (blocked 9/29) and Cruz's catastrophic-risk bill.
Deployers of autonomous agents should model CFAA liability scenarios now (who operates, who deploys, intent/vicarious elements) and tighten agent boundaries, since pending federal and active state liability frameworks are converging.
Sen. Hawley — Senators Hawley, Murphy announce bipartisan AI Agent Accountability ActNewsweek — Who is liable when AI goes rogue? Senators demand accountabilitySen. Murphy press release — Murphy, Hawley announce bipartisan legislationTechTimes — AI Agent Accountability Act: rogue agent hacks now carry criminal riskAxios — Sens. Hawley, Murphy push AI liability
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →