EU auditors say poor cyber data sharing weakens response
The European Court of Auditors said the European Union cannot respond effectively to major cybersecurity incidents because member states are not sharing enough information, according to a report published on Monday, September 21, 2026. The audit examined EU action between 2022 and 2025, including missions to Ireland, Greece and Italy. It found that poor information sharing undermines a system the EU has funded with 1.4 billion euros through the Digital Europe programme under the 2021-2027 budget, the main source of cybersecurity funding. GeorgeMarius Hyzler, the auditor responsible for the report, said timely and actionable information is essential when a serious cyber incident occurs, and that without it networks and mechanisms lose much of their added value. He said the EU has made progress in building a cybersecurity cooperation framework, but it is not yet working as effectively as it should. A central finding was that formal arrangements governing cooperation between the EU's two main cybersecurity networks have still not been established.