The threat landscape is shifting, not necessarily in the type of attacks, but in their velocity and scale. While hacktivists accounted for nearly 80% of incidents recorded by the European Union Agency for Cybersecurity (ENISA) between July 2024 and June 2025, state-aligned actors are increasingly exploiting supply-chain vulnerabilities to burrow into telecommunications and manufacturing networks. Experts warn that as AI lowers the barrier to entry, low-cost, open-source models—often stripped of security guardrails—are becoming the preferred tools for bad actors to automate and multiply their reach.
The Fragmentation Problem
Despite the urgency, Europe’s response remains hamstrung by internal divisions. While MEPs advocate for a centralized European cyber command, political resistance persists; national governments remain wary of sharing sensitive intelligence or operational tools. Sven Herpig of the think tank Interface notes that Germany alone manages 50,000 distinct critical infrastructure entities, most of which lack the resources to withstand sophisticated state-sponsored intrusions. Even as France and Germany explore offensive cyber capabilities to deter adversaries, the lack of a unified political consensus makes a coordinated European response unlikely.
Ultimately, the solution may not lie in grand new agencies but in enforcing basic digital hygiene. Many organizations continue to prioritize high-profile AI tools over patching legacy systems or retiring vulnerable software. As Joseph Jarnecki of the Royal United Services Institute observes, the most effective path forward is not another layer of bureaucracy, but the consistent, well-resourced enforcement of existing regulations. Until the EU can bridge the gap between its legislative ambitions and the reality of fragmented national enforcement, the digital perimeter will remain wide open.
Comments (0)
No comments yet. Be the first!