Skip to content
payloadreport
Sunday, October 11, 2026Cybersecurity news without the noise80 reports
Cyber Attacks

Criminal IP Launches AITEM to Automate Attack Surface Risk Prioritization

Criminal IP introduces an AI-driven tool that links asset discovery with incident response to address visibility gaps in traditional ASM.

Criminal IP Launches AITEM to Automate Attack Surface Risk Prioritization
Illustration: Payload Report

Key points

  • Criminal IP released AITEM to bridge the gap between exposure discovery and response.
  • The tool uses AI to prioritize risks and connect findings with incident response workflows.
  • Traditional ASM provides visibility but lacks the mechanism to address identified threats effectively.

Criminal IP has introduced AITEM, a new AI-powered approach designed to evolve attack surface management practices. According to a report by BleepingComputer, the tool aims to connect exposure discovery directly with investigation, risk prioritization, and response capabilities for security teams.

The release addresses a specific limitation in current security operations where visibility alone is insufficient. While traditional attack surface management helps organisations discover exposed assets, it does not inherently provide the means to address the associated threats. AITEM seeks to automate the prioritization of these risks to streamline incident response efforts.

Context and Background

Traditional attack surface management tools focus primarily on identifying and listing exposed digital assets within an organisation’s perimeter. However, security operations teams often struggle with the volume of data generated by these discovery processes. Criminal IP’s AITEM attempts to solve this by adding an investigative and prioritization layer on top of standard discovery functions.

The vendor positions this release as the next evolution in the field, moving beyond simple asset inventorying. By integrating artificial intelligence, the platform connects the initial discovery phase with subsequent response actions. This integration is intended to reduce the time between identifying a vulnerability and taking action to mitigate it.

Who Is Affected

Organisations relying on traditional attack surface management solutions are the primary audience for this update. These entities often face challenges in translating raw asset data into actionable security intelligence. Security leaders who find that visibility does not equate to protection may find value in tools that automate risk prioritization and response coordination.

The tool is relevant for enterprises that need to manage complex digital footprints efficiently. It targets the operational gap where discovered exposures remain unaddressed due to resource constraints or lack of automated triage. Teams responsible for incident response and asset management are the key stakeholders in adopting such integrated platforms.

What happens next

Security teams should evaluate whether their current ASM tools provide sufficient context for incident response. Organisations may need to integrate new platforms that offer automated risk scoring and workflow connections. Monitoring vendor announcements for updates on AI-driven security tools will help teams stay ahead of evolving threat management strategies.

Background: Attack surface

The attack surface is the total sum of all points where an untrusted system interacts with your trusted environment. It includes network ports, application endpoints, user interfaces, and physical access points. Reducing it means removing unnecessary access paths, not just patching known flaws.

Read the full guide: Attack Surface Definition: How to Measure and Reduce Exposure

What to do and how to stay safe: Criminal IP

  • Review current attack surface management workflows to identify gaps between discovery and response actions.
  • Assess the volume of exposed assets to determine if manual prioritization is causing operational bottlenecks.
  • Investigate tools that integrate AI for automated risk scoring to reduce mean time to response.
  • Ensure incident response teams have clear protocols for handling prioritized exposures from ASM platforms.

General security guidance from the Payload Report newsroom. It is not confirmed advice from the organisations named in this story.

Frequently asked questions

What is Criminal IP AITEM?

AITEM is an AI-powered tool introduced by Criminal IP that connects exposure discovery with investigation, risk prioritization, and response capabilities.

Why is traditional ASM considered insufficient?

Traditional attack surface management helps discover exposed assets, but visibility alone is not enough to address the threats associated with those assets.

How does AITEM improve security operations?

It automates the process of prioritizing risks and connects asset discovery directly with incident response workflows to address threats more efficiently.

Sources

  1. BleepingComputer
Criminal IPAITEMAttack Surface ManagementAI SecurityIncident Response

Related stories