[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-84966-en":3,"doc-seo-84966-105":30,"detail-sidebar-cat-0-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":20,"is_deleted":4,"is_public":21,"is_downloadable":21,"audit_status":21,"page_count":22,"language":23,"language_code":24,"site_id":25,"html_lang":24,"table_of_contents":26,"faqs":27,"seo_title":13,"seo_description":14,"update_tm":28,"read_time":29},84966,7971461740886,"Theodore","https://ap-avatar.wpscdn.com/davatar_3d24733baf745e90a7e4bdd5f77d97b2",8,"Research & Report","Certifying Ghosts: How Cybersecurity AI Agents Break the EU Cyber Resilience Act","The EU Cyber Resilience Act (Regulation (EU) 2024/2847) adopts a process-based cybersecurity model: assess risk, handle vulnerabilities, ship updates, exercise supply-chain due diligence, and report under active exploitation. Its validity depends on four premises about the slowness of vulnerability discovery, product-time knowability, detectability of exploitation, and timely fixes. Cybersecurity AI agents that find and exploit flaws falsify these premises, causing certification mechanisms to become stale, triggers to stop firing, and compliance to fracture. A continuous, agent-operated remedy is proposed and tested on scope robots.","arXiv :2607 .07 109v 1 [ cs .CR] 8 Jul 2026  \nCertifying Ghosts: How Cybersecurity AI Agents Break the EU Cyber Resilience Act  \nVíctor Mayoral-Vilches  \nAlias Robotics  \nThe EU Cyber Resilience Act (cra, Regulation (EU) 2024/2847) makes a smart bet. It does not demand that products be free of vulnerabilities, a promise no software can keep, but only that manufacturers run a process: assess risk, handle flaws, ship updates. The bet pays off only while four things about the world stay true: P1 finding vulnerabilities is slow, skilled, human work; P2 a product’s exploitable flaws are knowable the day it ships; P3 exploitation is rare enough to notice; and P4 fixes keep pace with discovery. Cybersecurity AI (cai) agents, AI put to work finding and exploiting flaws in other products, falsify all four. The regime answers in two opposite ways. Against the sheer volume of flaws that agents surface it bends ( P1 ): built for scarce attention, it re-centres compliance on defensible, documented prioritisation, and holds. But agents also collapse the speed and economics of the vulnerability lifecycle, and here it breaks ( P2 P3 P4 ): a product that passed every check becomes exploitable without anyone touching it, so its market-entry test, its reporting trigger, and its one-and-done certificate vouch for a security that has quietly expired. The fault is in the landscape, not the product, so running the process more diligently cannot repair it. Anchoring every legal claim in the enacted text and every capability claim in dated results, we map each mechanism to the force that strains or snaps it, and find the cure and the disease cut from the same cloth: because defenders and attackers wield the same AI, the only conformity that survives is one that never stops running. We then carry the remedy from proposal to proof on two cra-scope robots, a humanoid and a lawn mower, where an agentic defender holds a line their undefended selves cannot. On the evidence already in hand, the cra reaches full force in December 2027 certifying products against a world that has already left the building. Static, human-paced security is finished; what replaces it must be continuous and agent-operated, and that is no longer a matter of taste.  \nBENDS  \nthe process flexes under load and  \nholds  \nBREAKS  \nthe process fractures; no re-run restores it  \nStressor: volume & speed  \nagents surface candidates far faster than humans triage; discovery is no longer scarce  \nWhy the process holds  \nthe CRA never promised zero vulnerabilities; it mandates a risk-based handling process  \nCompliance re-centres  \nfrom remediation-completeness toward demonstrable, documented prioritisation  \nMechanisms that bend  \nactively-exploited reporting (Art. 14) · 24/72 h cadence coordinated disclosure · risk-based handling  \n1  \n2  \n3  \nStressor: landscape collapse  \nagents change the tempo, cost & symmetry of the vulnerability lifecycle  \nThe certificate goes stale  \non-demand rediscovery: certified-secure → exploitable, with no change to the product  \nThe triggers stop firing  \nexploitation is no longer discrete; the invalidating change is in the environment  \nMechanisms that break  \n“no known exploitable vulns” · actively-exploited trigger patch remediation · point-in-time conformity  \n1  \n2  \n3  \nBends is fixed by re-interpreting existing obligations (guidance, enforcement posture) . Breaks requires new regulatory constructs. The mismatch is with the landscape the CRA certifies against (stable, humanpaced, discrete), not with any single product, and no re-run of the process restores a withdrawn premise.  \nCAI  \nThe agent-native remedy: make conformity continuous and agent-operated , a CAI defender that the adversary’s tempo, moving security from a periodic human process to a live one (validated on two  \nre-establishes the certified robots, § 4) .  \nposture at  \nFigure 1: The central distinction. A process-oriented cybersecurity regime drawn as a loaded beam: under the same rising ","cbCaih595PaRQE91","https://ap.wps.com/l/cbCaih595PaRQE91","pdf",887446,2,1,17,"English","en",105,"# Introduction\n# Two Regime Outcomes: Bends vs Breaks\n## Why the Process Holds\n## How the Landscape Collapses\n# CAI Agent-Native Remedy","[{\"question\":\"What core idea does the EU Cyber Resilience Act enforce instead of demanding zero vulnerabilities?\",\"answer\":\"It requires manufacturers to run a documented, risk-based cybersecurity process: assess and document risk, handle vulnerabilities over a support period, ship updates, do supply-chain due diligence, and report vulnerabilities under active exploitation.\"},{\"question\":\"Why can cybersecurity AI agents undermine the CRA’s certification model?\",\"answer\":\"Agents accelerate vulnerability discovery, can make exploitable flaws appear without any product changes, and alter the vulnerability lifecycle’s tempo and economics. This causes certification to become outdated because the environment, not the product, effectively changes.\"},{\"question\":\"What remedy does the paper propose to address these failures?\",\"answer\":\"It proposes an agent-native approach: make conformity continuous and agent-operated. A CAI defender continuously validates a security posture against the adversary’s evolving tempo, demonstrated using two CRA-scope robots.\"}]",1784199770,43,{"code":4,"msg":31,"data":32},"ok",{"site_id":25,"language":24,"slug":33,"title":13,"keywords":34,"description":14,"schema_data":35,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":28},"certifying-ghosts-how-cybersecurity-ai-agents-break-the-eu-cyber-resilience-act","",{"@graph":36,"@context":85},[37,53,68],{"@type":38,"itemListElement":39},"BreadcrumbList",[40,44,47,50],{"item":41,"name":42,"@type":43,"position":21},"https://docshare.wps.com","Home","ListItem",{"item":45,"name":46,"@type":43,"position":20},"https://docshare.wps.com/document/","Document",{"item":48,"name":12,"@type":43,"position":49},"https://docshare.wps.com/document/research-report/",3,{"item":51,"name":13,"@type":43,"position":52},"https://docshare.wps.com/document/certifying-ghosts-how-cybersecurity-ai-agents-break-the-eu-cyber-resilience-act/84966/",4,{"url":51,"name":13,"@type":54,"author":55,"headline":13,"publisher":57,"fileFormat":60,"inLanguage":24,"description":14,"dateModified":61,"datePublished":62,"encodingFormat":60,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":56},"Person",{"url":41,"name":58,"@type":59},"DocShare","Organization","application/pdf","2026-07-22","2026-07-16",true,{"@type":65,"interactionType":66,"userInteractionCount":20},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What core idea does the EU Cyber Resilience Act enforce instead of demanding zero vulnerabilities?","Question",{"text":75,"@type":76},"It requires manufacturers to run a documented, risk-based cybersecurity process: assess and document risk, handle vulnerabilities over a support period, ship updates, do supply-chain due diligence, and report vulnerabilities under active exploitation.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"Why can cybersecurity AI agents undermine the CRA’s certification model?",{"text":80,"@type":76},"Agents accelerate vulnerability discovery, can make exploitable flaws appear without any product changes, and alter the vulnerability lifecycle’s tempo and economics. This causes certification to become outdated because the environment, not the product, effectively changes.",{"name":82,"@type":73,"acceptedAnswer":83},"What remedy does the paper propose to address these failures?",{"text":84,"@type":76},"It proposes an agent-native approach: make conformity continuous and agent-operated. A CAI defender continuously validates a security posture against the adversary’s evolving tempo, demonstrated using two CRA-scope robots.","https://schema.org",{"og:url":51,"og:type":87,"og:title":13,"og:site_name":58,"og:description":14},"article",{"robots":89,"canonical":51},"index,follow",{"doc_id":7,"site_id":25},{"code":4,"msg":5,"data":92},[93,97,101,105,110,115,120,123,128,131,135],{"id":21,"doc_module":4,"doc_module_name":46,"category_name":94,"show_sort_weight":95,"slug":96},"Story & Novel",90,"story-novel",{"id":20,"doc_module":4,"doc_module_name":46,"category_name":98,"show_sort_weight":99,"slug":100},"Literature",80,"literature",{"id":52,"doc_module":4,"doc_module_name":46,"category_name":102,"show_sort_weight":103,"slug":104},"Exam",70,"exam",{"id":106,"doc_module":4,"doc_module_name":46,"category_name":107,"show_sort_weight":108,"slug":109},5,"Comic",60,"comic",{"id":111,"doc_module":4,"doc_module_name":46,"category_name":112,"show_sort_weight":113,"slug":114},6,"Technology",50,"technology",{"id":116,"doc_module":4,"doc_module_name":46,"category_name":117,"show_sort_weight":118,"slug":119},7,"Healthcare",40,"healthcare",{"id":11,"doc_module":4,"doc_module_name":46,"category_name":12,"show_sort_weight":121,"slug":122},30,"research-report",{"id":124,"doc_module":4,"doc_module_name":46,"category_name":125,"show_sort_weight":126,"slug":127},9,"Religion & Spirituality",20,"religion-spirituality",{"id":126,"doc_module":4,"doc_module_name":46,"category_name":129,"show_sort_weight":126,"slug":130},"World Cup","world-cup",{"id":132,"doc_module":4,"doc_module_name":46,"category_name":133,"show_sort_weight":132,"slug":134},10,"Lifestyle","lifestyle",{"id":136,"doc_module":4,"doc_module_name":46,"category_name":137,"show_sort_weight":106,"slug":138},19,"General","general"]