eu-space-act

Art. 76(2)

Full text: this article's wording is third-party regulatory text. See the official source for the authoritative provision.

Mapped SPARTA techniques (8)

Techniques referencing this article

  • DE-0003.10GPS EphemerisST0006
    addresses
    moderate
    inferred

    Art. 76(2)(a)'s ensure-resilience obligation is domain-relevant to ephemeris manipulation, but the generic mandate names no interdicting mechanism; PNT cross-checks and integrity monitoring would interdict.

  • Art. 76(2)(a)'s ensure-resilience obligation is domain-relevant to onboard SSA/SDA-sensor deception, but the generic resilience mandate names no mechanism interdicting the deception vector; sensor-fusion validation and input authentication would be the interdicting controls.

  • EX-0009Exploit Code FlawsST0004
    addresses
    moderate
    inferred

    Art. 76(2)(a)'s ensure-resilience obligation is domain-relevant to code exploitation, but the generic mandate names no interdicting mechanism; vulnerability handling and testing would interdict.

  • EX-0012.07Propulsion SubsystemST0004
    addresses
    moderate
    inferred

    Art. 76(2)(b)'s effective-technical-control obligation is domain-relevant to propulsion-parameter modification, but it names no interdicting mechanism such as authenticated commanding; it governs the control outcome, not the vector.

  • Art. 76(2)(a)'s ensure-resilience obligation is domain-relevant to PNT spoofing, but the generic mandate names no interdicting mechanism; PNT cross-checks and integrity monitoring would interdict.

  • PNT jamming degrades navigation; 76(2)(a) ensure-resilience extends to alternate-PNT designs (oscillator hold-over, INS) that maintain function during GNSS denial.

  • IA-0005Rendezvous & Proximity OperationsST0003
    addresses
    moderate
    direct

    76(2)(a)'s ensure-resilience-of-space-infrastructure obligation includes the cyber-physical attack surface of close-proximity threats — operator risk-management measures must contemplate proximity-derived attack capability.

  • IA-0010Unauthorized Access During Safe-ModeST0003
    addresses
    moderate
    inferred

    Art. 76(2)(a)'s ensure-resilience obligation is domain-relevant to safe-mode abuse, but the generic resilience mandate names no mechanism interdicting unauthorised safe-mode access; command authentication on the safe-mode path would be the interdiction.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.