Table of Contents
IriusRisk Team
|
The Threat Modeling Experts
April 10, 2025

Product Release 4.41

Overview

IriusRisk 4.41 has even more improvements, we are thrilled to share this latest update! Some advancements include:

  • Filters on Technical Threat Report
  • Ordering options in threats and countermeasures comments
  • Weaknesses with no Countermeasures now shown in the Threat Detail modal
  • 182 components in security content

Take a look at the full list below, or go directly to the Release Notes.

Filtering of the Technical Threats Report

Building on the recent introduction of filtering for the Current Risk report, we have now expanded this functionality to the Technical Threat report, giving users even more control over the data included in their reports. We have added new filter options to the Technical Threat report that allow users to select Critical, High, Medium, Low or Very Low risk. As a result, only the selected risk will be shown in the final report. In addition, Risk mitigation filters also let users select by Mitigated or unmitigated threat and Mitigation or no mitigation planned. Moreover, users can also export all the content of the report if no filters are selected.

Report Filters

Ordering options in threats and countermeasures comments

Comments are now consistently displayed from newest to oldest in both threat and countermeasure details. This is helpful for users especially where there have been a high number of comments, and it is required to have the most recent remarks seen first in order to be informed or see context straight away.

Reordered Comments

Weaknesses with no Countermeasures now shown in the Threat Detail modal

Weaknesses with no countermeasures are now displayed in the Threat Detail modal. Prior to this update, users who manually added a weakness couldn’t view or delete it from the Threat Detail modal. This change is to remove frustration and make it clearer within this modal where there may be countermeasures to be added or included against a weakness.

Threat Detail Modal

Security Content

New content across the categories AWS, SAP, Microservices, Docker, Kubernetes and many more. A total of 182 components.

Client Side - Components

  • Adobe Flash
  • Android Device Client
  • iOS Device Client
  • Java Applet
  • Java Web Start
  • Microsoft Silverlight
  • Mobile Device Client
  • Rich Client

Network - Components

  • gNB
  • NGINX Ingress

Hardware - Components

  • Analog Component Port
  • Antenna
  • ATM
  • Bare Metal Server
  • Battery Monitor
  • Bluetooth Port
  • C Arm
  • Cable Modem
  • Card Reader
  • Cash Dispenser
  • Cellular Gateway
  • Check Reader
  • Dial-up Modem
  • Digital Audio Out Port
  • Drone
  • Emergency Stop
  • Ethernet Port
  • FPGA (Field Programmable Gate Array)
  • Generic Hardware
  • HDMI Port
  • Imaging Device
  • IntelSGX
  • Intrusion Sensors
  • Ionizing Radiation Source
  • Key Pad
  • Laptop
  • LCD Display
  • Mainframe
  • Motherboard
  • Moving GantryPump
  • Pharmaceutical Pump
  • Print
  • RAM (Random Access Memory)
  • Receipt Printer
  • RF Transceiver
  • Sensor
  • Speaker
  • STM32 Microcontroller
  • Switch Button
  • Tablet
  • Thermostat
  • Transmitter
  • USB Drive
  • USB Port
  • Video Camera
  • Wi-Fi Port

Functional - Components

  • Empty Component
  • Out Of Scope

Amazon Web Services - Components

  • AWS Gateway Load Balancer
  • AWS Subnet

Microservice Architecture - Components

  • Apache ZooKeeper

Alibaba Cloud - Components

  • Alibaba Cloud ActionTrail
  • Alibaba Cloud API Gateway
  • Alibaba Cloud Auto Scaling
  • Alibaba Cloud CloudBox
  • Alibaba Cloud Compute Nest
  • Alibaba Cloud Dedicated Host
  • Alibaba Cloud Disaster Recovery
  • Alibaba Cloud DNS
  • Alibaba Cloud Elastic GPU
  • Alibaba Cloud KMS
  • Alibaba Cloud VMWare
  • Alibaba Cloud VPC
  • Alibaba Cloud Web Application Firewall
  • Alibaba Cloud WUYING Workspace

Generic - Components

  • Apache Kafka
  • eBPF Tracer
  • Matching Engine Component
  • Post-Trade Processing Component
  • Pre-Trade Analysis Component
  • Telephony System
  • Gramine
  • IBM API Connect Enterprise as a Service
  • IBM Cloud Activity
  • IBM Cloud Event Streams
  • IBM Cloud Hyper Protect Virtual Server
  • MISP (Malware Information Sharing Platform)
  • Real-Time Data Feed
  • Reporting/Analytics Dashboard
  • Settings
  • Third Party Bundle

Data Store - Components

  • Active Directory
  • Cassandra NoSQL
  • CouchDB
  • Hazelcast
  • IBM Db2 on Cloud
  • InfluxDB
  • Informix
  • MariaDB
  • Microsoft SQL Server
  • MongoDB NoSQL
  • MySQL
  • Neo4J
  • Oracle DB
  • Other Data Store
  • Other Database
  • Other SQL Database
  • PostgreSQL
  • Redis Server
  • Riak NoSQL
  • SQLite

Machine Learning /Artificial Intelligence - Components

  • Flower Framework
  • XAI (Explainable AI)

Kubernetes - Components

  • Kubernetes External Services
  • Kubernetes worker node
  • OpenShift Cluster
  • Orchestration

SAP - Components

  • SAP ABAP (Advanced Business Application Programming)
  • SAP ALE (Application Link Enabling)
  • SAP Analysis for Microsoft Office
  • SAP API Management
  • SAP Application Server
  • SAP Ariba
  • SAP BOBJ (BusinessObjects Business Intelligence Platform)
  • SAP BODS (BusinessObjects Data Services)
  • SAP Business Objects Explorer
  • SAP Cloud Connector
  • SAP Commerce
  • SAP Concur
  • SAP Content Server
  • SAP Customer Data Cloud
  • SAP Data Services
  • SAP DMS (Document Management Service)
  • SAP Enterprise Portal
  • SAP Field Service Management (FSM)
  • SAP Fiori
  • SAP GUI (Graphical User Interface)
  • SAP HANA
  • SAP HANA Cloud
  • SAP HCM (Human Capital Management)
  • SAP HR (Human Resources)
  • SAP NetWeaver
  • SAP NetWeaver Application Server
  • SAP NetWeaver Gateway
  • SAP OData service
  • SAP Process Orchestration
  • SAP SLT (Landscape Transformation Replication Server)
  • SAP Solution Manager

Salesforce - Components

  • Salesforce Experience Cloud
  • Salesforce Health Cloud
  • Salesforce Marketing Cloud
  • Salesforce MCI (Marketing Cloud Intelligence)
  • Salesforce MuleSoft
  • Salesforce Sales Cloud
  • Salesforce Service Cloud
  • Salesforce Tableau
  • Salesforce Veeva CRM

Docker - Components

  • Docker Client
  • Docker Container
  • Docker Linux Host
  • Docker Registry

Openstack - Components

  • OpenStack Adjutant
  • OpenStack Keystone
  • OpenStack Vitrage
  • OpenStack Watcher
  • OpenStack Zaqar

Virtual - Components

  • Horizon View (Desktop virtualization)
  • NSX (Network virtualization)
  • Virtual Appliance
  • Virtual Machine
  • VMware Workstation
  • vSphere (Server Virtualization)

Iot - Components

  • IoT Application
  • IoT Mobile Application
  • IoT Operating System
  • MQTT Broker
  • MQTT Client

Blockchain - Components

  • Blockchain Network
  • Blockchain Oracle
  • Consensus Mechanisms
  • Distributed Ledger
  • Smart Contract

Release Notes and Documentation

For more information, see Version 4.41 Release Notes or check out our Documentation.

Shape the future of Threat Modeling with us!

Join IriusRisk Horizon - Customer Research, Product Discovery, and Early Access. Join today.

Swaggerhub & Github

Find out more of what you need in GitHub and Swaggerhub Repos:

https://app.swaggerhub.com/apis/continuumsecurity/IriusRisk/1.24.0 - We provided this featured API to allow for deeper customer integrations as well as enable very flexible automations within the many varied environments IriusRisk needs to operate.

https://app.swaggerhub.com/apis/iriusrisk/IriusRiskV2/2.0.0-beta.8 - Please note that this version of the API is currently in beta. While it offers advanced features for deeper integrations and flexible automations, we reserve the right to make breaking changes during this phase and encourage caution in production environments.

https://github.com/iriusrisk/IriusRisk-Central - Provides content useful for IriusRisk threat modelling, including templates, API scripts, libraries and more.

FAQs

keyboard_arrow_down

keyboard_arrow_down

keyboard_arrow_down

keyboard_arrow_down

keyboard_arrow_down