NIST Seeks Public Input on AI-Ready NVD Modernization to Enhance Cybersecurity
The US National Institute for Standards and Technology (NIST) is seeking public input to modernize its National Vulnerability Database (NVD) to better address challenges posed by AI and incorporate more automation. In a request for information (RFI) published in the Federal Register, NIST is encouraging stakeholders to provide insights on opportunities, challenges, and priorities for updating the NVD in a cybersecurity landscape increasingly shaped by AI. The Institute is particularly interested in forward-looking perspectives and practical recommendations to improve the NVD’s scalability, automation, interoperability, transparency, and utility. Currently, the NVD automatically ingests common vulnerabilities and exposures (CVE) records, which are then enriched with additional information by analysts. However, NIST notes that traditional methods are becoming inadequate due to the rapid changes in vulnerability management driven by AI-enabled tools and faster technology cycles. The RFI includes 30 questions ...