In a context where cybersecurity is a priority for European institutions, ENISA, the EU’s cybersecurity agency, has called on OpenAI’s advanced technologies to identify and correct critical vulnerabilities. This collaboration raises questions about Europe’s digital dependence on American tools, while highlighting the urgency of strengthening security systems in the face of increasingly sophisticated threats.
The essentials to remember
- ENISA used OpenAI’s models to detect vulnerabilities in an EU project, including a high-risk vulnerability referenced CVE-2026-73431.
- The dependence of European institutions on American technologies highlights the need to develop local solutions for digital sovereignty.
- Parallel initiatives are underway in Europe, such as in Poland, to strengthen cybersecurity using similar technologies.
Imagine being responsible for the IT security of a European institution. You are constantly on alert, knowing that every day, thousands of digital attack attempts threaten the systems you protect. It is in this context that ENISA decided to call on OpenAI to benefit from its expertise in code analysis and vulnerability detection. A step that, although necessary, highlights a technological dependence that continues to be debated within the EU.
ENISA’s major discoveries with OpenAI
ENISA, in collaboration with CERT-EU, used OpenAI’s advanced models to inspect the code of an EU project. This analysis highlighted four vulnerabilities, including one particularly concerning. The most critical vulnerability, identified under the reference CVE-2026-73431, affected the open-source vulnerability tracking software, Vulnerability-Lookup, in its versions prior to 5.5.1. This vulnerability, with a score of 8.8/10, allowed an attacker to reset passwords at will, thus threatening user account security.
Un vide-dressing occasionnel rapporte rarement plus de 200 € par mois. Mais l'écart avec les vendeurs les plus performants est plus large qu'on ne le pense : 300 à 900 €/mois pour une activité régulière (2 à 5h/semaine), et 1 000 à 2 500 €+/mois pour les profils qui traitent Vinted comme un vrai canal de vente structuré. La différence ne tient ni à la chance ni à la taille du dressing de départ : elle tient presque entièrement à la méthode (algorithme, pricing, réactivité) appliquée avec régularité.
Avec 📘 Le Guide Vinted, transformez ce canal en revenu complémentaire structuré, voire en une vraie activité e-commerce.
Une méthode complète pour décoder l'algorithme, optimiser vos annonces comme une landing page, automatiser votre relance commerciale et sécuriser votre activité sur le plan fiscal.
🧠 Les 5 facteurs qui pilotent la visibilité de vos annonces (logique proche du SEO)
📈 Une méthode réplicable pour passer d'une activité occasionnelle à un revenu récurrent
⚖️ Statut, fiscalité, professionnalisation : rester en règle en montant en volume
🚫 Le chapitre que personne n'aborde ailleurs : comprendre et prévenir les blocages de compte
European dependence on American technologies
ENISA’s use of OpenAI’s models raises concerns about Europe’s digital sovereignty. Although access to these tools required months of procedures, it reflects a dependence on technologies developed in the United States. This situation highlights the need for Europe to develop its own technological solutions to reduce its dependence on foreign providers.
Vincent Strubel, Director General of ANSSI, mentions the need to create European alternatives to avoid excessive dependence while recognizing the importance of international cooperation in the technological field.
Similar initiatives in Europe
The collaboration with OpenAI is not limited to ENISA. In Poland, CERT revealed six vulnerabilities affecting MikroTik’s RouterOS system, also using OpenAI’s models. The company AISLE, for its part, audited the code of a new reporting platform dedicated to cyber resilience, an initiative that demonstrates the growing importance of artificial intelligence technologies in the field of cybersecurity.
What are the European alternatives to American cybersecurity technologies?
Faced with this dependence, Europe is exploring the possibility of developing its own tools and solutions. Initiatives like SecNumCloud aim to offer viable European alternatives in the cloud domain. The development of local testing and analysis platforms could also allow the EU to reduce its dependence on American technologies while strengthening its digital sovereignty.
The challenges of cybersecurity in 2026
In 2026, the cybersecurity landscape is more complex than ever. Institutions and companies must navigate an environment where threats evolve rapidly, requiring constant vigilance and increasingly sophisticated tools. Companies like Palantir and Darktrace are exploring new approaches to threat detection and prevention, highlighting the importance of continuous innovations in this field.
International cooperation, although essential, must be accompanied by local developments to ensure the security and resilience of European digital infrastructures. Players like Thales and Atos are at the forefront of developing solutions tailored to the specific needs of the continent.
FAQ on ENISA’s use of OpenAI technologies
Why did ENISA choose OpenAI to analyze vulnerabilities?
ENISA chose OpenAI because of its advanced models capable of quickly and effectively detecting critical vulnerabilities in EU systems.
What are the implications of European dependence on American technologies?
This dependence raises questions about Europe’s digital sovereignty and underscores the importance of developing local technological solutions to reduce dependence on foreign providers.
What initiatives are underway to promote cybersecurity in Europe?
In addition to the collaboration with OpenAI, other initiatives in Europe include the development of solutions like SecNumCloud and partnerships with European companies to strengthen cybersecurity.
How do European companies contribute to cybersecurity?
Companies like Thales and Atos are working on developing cutting-edge technologies to meet the continent’s specific security needs while promoting Europe’s digital sovereignty.