SecurityBrief Australia - Technology news for CISOs & cybersecurity decision-makers
Story image

IriusRisk unveils Jeff: AI tool for threat modelling images

Fri, 25th Oct 2024

IriusRisk has announced the launch of Jeff: AI Assistant, a new AI-powered tool to assist developers and architects in generating threat models from images.

Jeff is presented as a pioneering tool within the automated secure-by-design category, utilising the latest advancements in artificial intelligence to create functional threat models based on image or text description inputs. According to IriusRisk, this tool is distinct from other large language models due to its specific capability to extract key information and generate an outline for a specific threat model.

This capability allows the tool to process diverse inputs, including graphical and text material such as transcriptions of conversations regarding new product ideas, and produce a preliminary draft of a tailored threat model. This advancement is notable in the cybersecurity domain as it promises to significantly enhance accessibility to the threat modeling process for architects and security teams, facilitating rapid and scalable model creation and implementation.

A spokesperson from IriusRisk elaborated on the utility of the tool, stating, "Getting started with anything is often the hardest part. Jeff gets you threat modeling from a standing sprint. With the AI-powered technology it takes just two to three minutes to process an input and generate a preliminary threat model - which is then complete with threats, weaknesses, and countermeasures."

Jeff is claimed to streamline the threat modeling process by enabling users to bypass several initial steps, reducing the overall time required and helping to produce a refined threat model more efficiently. This refined model can subsequently be advanced using IriusRisk's platform for further development.

Currently available to both paying customers and through its Community Edition platform, Jeff is intended to be continually enhanced as it becomes integrated more extensively with IriusRisk's suite of products over the next few years.

The launch of Jeff aligns with IriusRisk's strategy to integrate AI into its offerings, a strategy that has reportedly contributed to more than 50% growth in Annual Recurring Revenue from December 2022 to December 2023. The company has articulated ambitious objectives to develop advanced AI-driven threat modeling solutions, enhancing its capacity to aid customers in developing secure software and systems.

This strategic direction from IriusRisk reflects broader discussions within the cybersecurity field, particularly those raised by the National Cyber Security Centre about the dual-edge nature of AI tools—bolstering security, while also potentially increasing cyber threats by lowering barriers for attackers.

Jose López Muñoz, Head of AI at IriusRisk, commented, "In another strong year of growth for IriusRisk, it is important that we continue to expand and develop our product offering. That's exactly what we've done with Jeff - the advent of AI means that the nature of the cyber threat businesses face is growing more complex. It is vital that the threat models used to protect them keep up with the pace of change so that businesses can confidently develop software which is secure from the outset."

In the previous year, IriusRisk introduced its AI & ML Security Library, aimed at helping organisations model machine learning software to understand and mitigate security risks ahead of AI system development. This initiative highlights IriusRisk's efforts to shorten the time consumption associated with data flow diagram creation in threat modeling processes.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X