CHANGE LANGUAGE

The European Union presents its action plan on artificial intelligence and cybersecurity: new rules against cyber threats

The European Commission presents the Action Plan on Artificial Intelligence and Cybersecurity with new measures to protect digital infrastructure, software, and AI models.

The European Commission launches a strategy to strengthen digital security in the AI ​​era. It includes testing advanced models, increased protection of critical infrastructure, investment in European technologies, and a "Grand Challenge" dedicated to cybersecurity.

The European Commission has presented a new European Action Plan on Cybersecurity and Artificial Intelligence, a strategy aimed at strengthening the security of Europe's digital landscape in the face of the opportunities and risks posed by advanced AI models.

The initiative aims to coordinate Member States, industry, European bodies, and the open-source community to address evolving cyber threats, increasingly fueled by the use of artificial intelligence. The plan is part of the regulatory framework already established by the European Union on AI and cybersecurity and will accompany the entry into force of the new provisions of the AI ​​Act.

Artificial intelligence is changing the face of cybersecurity.

According to the European Commission, advanced artificial intelligence models are radically transforming the cybersecurity industry.

Don't miss the latest news from La Milano: Add us to your favorite sources on Google in just one click.

Add La Milano to your favorite sources on Google

While these technologies allow for faster identification of vulnerabilities and strengthening of defenses, they can also be exploited by malicious actors to automate increasingly sophisticated cyber attacks, increasing their speed and scope.

For this reason, Brussels believes it is necessary to develop tools capable of understanding and assessing risks before such systems are placed on the European market.

La Milano Plus: subscription to read La Milano without ads, save articles, receive personalized news by city and region and email summaries.

AI Model Assessment: A European Capability to Be Established by 2027

One of the pillars of the plan concerns the preventive evaluation of advanced artificial intelligence models.

In compliance with the AI ​​Act, systems will have to undergo thorough testing and risk mitigation measures before being placed on the market in the European Union.

To strengthen these efforts, the Commission will launch a call for proposals to establish an independent European AI model assessment capacity, which is expected to become operational in 2027 and support the work of the European Artificial Intelligence Office.

Controlled access to the most advanced models

The strategy also includes establishing transparent conditions to allow European organizations to access the most advanced AI systems.

The Commission will work together with ENISA to develop a European "Blueprint" that will regulate structured access to advanced AI capabilities for cybersecurity, making these tools available to public bodies and private entities.

European platform for testing artificial intelligence

Among the announced initiatives is the creation of a secure platform to experiment with the use of artificial intelligence in cybersecurity.

The project will be developed by ENISA together with the European Commission's Joint Research Centre and will allow testing in simulated environments intended for particularly sensitive sectors such as:

  • finance;
  • energy;
  • health;
  • transport;
  • public administration.

The goal is to provide operators with reliable tools to evaluate AI applications in protecting critical infrastructure.

More security for open source infrastructure and software

The plan also calls on businesses and organizations to accelerate the adoption of best practices in cyber hygiene, risk management, and the "security by design" principle, already enshrined in European legislation.

Organizations will be encouraged to use artificial intelligence tools, including open source models, to more quickly identify software vulnerabilities, fix them promptly, and improve their ability to respond to cyberattacks.

Starting in the third quarter of 2026, ENISA will publish guidelines, operational recommendations, and campaigns dedicated to protecting open source software considered critical to the European digital ecosystem. A pilot campaign will also be launched by the end of 2026 to accelerate the release of security patches for the most important open source software.

A European “Grand Challenge” to develop AI solutions

To strengthen the competitiveness of European industry, the Commission will launch an “EU Grand Challenge” dedicated to the development of artificial intelligence solutions applied to cybersecurity.

The initiative will involve companies, universities, research centers, and specialized organizations with the aim of accelerating the growth of European technologies in the sector.

At the same time, investments will continue in AI Factories and future European Gigafactories dedicated to artificial intelligence, while the new European Technology Capital Facility could help mobilize private investment in strategic technologies developed in Europe.

Training and skills for cybersecurity professionals

The plan's objectives also include strengthening digital skills.

Starting in the fourth quarter of 2026, training courses dedicated to cybersecurity professionals will be launched as part of the Cybersecurity Skills Academy, with specific programs on the use of artificial intelligence in various economic sectors.

The European regulatory framework will gradually come into force

The new plan is part of an already complex regulatory system that includes:

  • the AI ​​Act, whose provisions on general-purpose AI models will begin to apply from 2 August 2026;
  • the Code of Good Practice on Artificial Intelligence;
  • the Cyber ​​Resilience Act, fully applicable by the end of 2027;
  • the NIS2 directive;
  • the DORA regulation dedicated to the financial sector;
  • the European Regulation on Cybersolidarity, aimed at strengthening the Union's response capacity to major cyber crises.

The goal is to create a more resilient European digital ecosystem, capable of exploiting the potential of artificial intelligence without sacrificing the security and protection of strategic infrastructure.

Henna Virkkunen: “AI is transforming cybersecurity”

European Commission Executive Vice-President for Technological Sovereignty, Security and Democracy, Henna Virkkunen, stressed the strategic value of the plan.

AI is transforming the meaning of cybersecurity. And we must keep pace. The EU has a solid foundation to adapt its response to the vulnerabilities that emerging technology brings. We must leverage and leverage existing capabilities, networks, and legal frameworks to strengthen cybersecurity by protecting our digital landscape.

Follow La Milano on our Whatsapp channel

Reproduction reserved © Copyright La Milano

×