ENISA is expanding Europe’s vulnerability management framework as frontier AI reshapes threat discovery and NIS2 drives stronger disclosure requirements.

ENISA strengthens Europe's vulnerability management, onboarding NATO's NCIA and AI specialist AISLE as CVE Numbering Authorities under its Root — 20 CNAs and growing. As frontier AI accelerates threat discovery, NIS2's disclosure framework is evolving to match.

EU

NIS2

"ENISA scales up its role in the CVE Program." The NATO Communications and Information Agency (NCIA) and AI/cybersecurity firm AISLE join the CVE Numbering Authorities (CNAs) under the ENISA Root, bringing ENISA's total to 20 CNAs (including eight transferred from the MITRE Root); ENISA's Chief Cybersecurity and Operations Officer Hans de Vries linked the expansion to the emergence of frontier AI in vulnerability discovery and exploitation. This sits within the EU vulnerability-disclosure framework established under the NIS2 Directive.

Read More

Continue reading
Need help?
Contact Us