---
id: recital-76
lang: en
type: recital
number: "76"
amended_by: null
capture: regulation-2024-1689/en-2026-08-18.html
capture_sha256: 8f0b656302f9864cc87e040c371f209a9d65ae1a6cecc25ca5eb737e872d721a
eli: http://data.europa.eu/eli/reg/2024/1689/oj
authoritative: false
---

> Derived text, not the authentic source. Claims cite the capture and the Official Journal.

# Recital 76

Cybersecurity plays a crucial role in ensuring that AI systems are resilient against attempts to alter their use, behaviour, performance or compromise their security properties by malicious third parties exploiting the system’s vulnerabilities. Cyberattacks against AI systems can leverage AI specific assets, such as training data sets (e.g. data poisoning) or trained models (e.g. adversarial attacks or membership inference), or exploit vulnerabilities in the AI system’s digital assets or the underlying ICT infrastructure. To ensure a level of cybersecurity appropriate to the risks, suitable measures, such as security controls, should therefore be taken by the providers of high-risk AI systems, also taking into account as appropriate the underlying ICT infrastructure.
