CYBERSECURITYTRACKER
TRACKING7,631 stories in this site build1,635 vulnerability news stories in this site build
Permanent story citation

NATO and an AI startup can now name and track software vulnerabilities

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4170

As cited

Copy frozen at (site build).

vulnerabilities

NATO and an AI startup can now name and track software vulnerabilities

NATO's Cyber Security Centre and AISLE, an AI-focused cybersecurity startup, have been authorized as CVE numbering authorities under the European Union Agency for Cybersecurity (ENISA) Root. This expands the CVE program's governance structure, which tracks publicly disclosed software vulnerabilities, to include 20 total numbering authorities. The move reflects the growth in vulnerability discovery driven by artificial intelligence and the need for a more globally representative vulnerability management infrastructure.

Why it matters: Security practitioners and vendors need to understand the new CVE numbering authorities for vulnerability disclosure coordination, particularly those working with NATO systems or using AISLE's products; the expanding CVE ecosystem affects how organizations track and manage vulnerability intelligence across their supply chains.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

NATO and an AI startup can now name and track software vulnerabilities

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

NATO and an AI startup can now name and track software vulnerabilities

NATO's Cyber Security Centre and AISLE, an artificial intelligence-powered cybersecurity startup, have been designated as CVE numbering authorities under the European Union Agency for Cybersecurity (ENISA). NATO can now assign CVE identifiers for vulnerabilities across its enterprise, while AISLE's authority covers flaws in its own products. The move reflects ENISA's strategy to build a more globally distributed and resilient vulnerability identification system as AI models accelerate the discovery of security flaws.

Why it matters: Organizations relying on NATO partnerships and those using AISLE products should expect faster vulnerability disclosure and tracking from these new authorities; practitioners managing vulnerability workflows need to account for multiple authoritative CVE sources beyond the traditional MITRE/CISA infrastructure.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

NATO and an AI startup can now name and track software vulnerabilities

NATO's Cyber Security Centre and AISLE, an artificial intelligence-powered cybersecurity startup, have been designated as CVE numbering authorities under the European Union Agency for Cybersecurity (ENISA). NATO can now assign CVE identifiers for vulnerabilities across its enterprise, while AISLE's authority covers flaws in its own products. The move reflects ENISA's strategy to build a more globally distributed and resilient vulnerability identification system as AI models accelerate the discovery of security flaws.

Why it matters: Organizations relying on NATO partnerships and those using AISLE products should expect faster vulnerability disclosure and tracking from these new authorities; practitioners managing vulnerability workflows need to account for multiple authoritative CVE sources beyond the traditional MITRE/CISA infrastructure.

VendorsOpenSSL
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary