Bugtri launches in Sydney to curb AI vulnerability spam
Mon, 17th Aug 2026 (Today)
Jacob Riggs has launched Australian cybersecurity company Bugtri in Sydney, with 11 organisations already using the platform in an early-access phase.
Riggs, a British cybersecurity specialist who recently received permanent residency through Australia's National Innovation visa, founded the business to address a growing problem for security teams: large volumes of vulnerability reports that are spam, duplicates, or generated with the help of artificial intelligence.
Bugtri connects to a company's shared security mailbox and assesses incoming vulnerability reports before returning a structured decision, risk score, and summary to the inbox. The system is designed to help analysts identify genuine threats, filter out low-quality submissions, and route uncertain cases for human review.
The company received 27 early-access applications in three weeks, with 11 organisations now actively using the service. Riggs has funded the project himself.
AI pressure
The launch comes as cybersecurity teams face a sharp rise in reports created or assisted by generative AI. That shift has increased the volume of submissions that still need human review, even though many turn out to be weak, repetitive, or irrelevant.
Bugtri sanitises sensitive information, including URLs and IP addresses, before sending material to an AI provider. The platform is not intended to replace security analysts, but to reduce the noise reaching them.
The broader issue has also drawn attention from industry groups. The Open Source Security Foundation's Vulnerability Disclosures Working Group has begun examining the impact of low-quality, AI-generated vulnerability reports and developing guidance for organisations handling them.
Riggs moved to Sydney from the UK after securing Australia's subclass 858 National Innovation visa, a permanent visa for people with an internationally recognised record of exceptional and outstanding achievement. Applicants must first be invited by the Australian Government before applying.
During his visa application period, he responsibly disclosed a vulnerability in a live Australian Government system, which the Department of Foreign Affairs and Trade later acknowledged.
Founder background
The business draws on Riggs' experience finding and responsibly disclosing vulnerabilities to organisations over more than a decade. He said that work gave him a close view of the delays and friction that often affect how companies process incoming security reports.
"Australia welcomed me through the National Innovation Visa program, and I've tried to contribute back by creating an innovative Australian company that now aims to solve a global cybersecurity problem," said Jacob Riggs, Founder, Bugtri.
He linked the new company to a broader shift in vulnerability disclosure as AI tools make it easier to generate reports at scale.
"After responsibly disclosing vulnerabilities to thousands of organisations over the past decade and observing the friction in their processes, I'm simply reconnecting with those teams and offering the automated triage solution they now need," said Riggs.
Bugtri has also been accepted into the Australian Signals Directorate Partner Program. Riggs said he intends to make the company's services available on a not-for-profit basis where they support Australia's cybersecurity interests.