.jpg)
Product Release 4.41
Overview
IriusRisk 4.41 has even more improvements, we are thrilled to share this latest update! Some advancements include:
- Filters on Technical Threat Report
- Ordering options in threats and countermeasures comments
- Weaknesses with no Countermeasures now shown in the Threat Detail modal
- 182 components in security content
Take a look at the full list below, or go directly to the Release Notes.
Filtering of the Technical Threats Report
Building on the recent introduction of filtering for the Current Risk report, we have now expanded this functionality to the Technical Threat report, giving users even more control over the data included in their reports. We have added new filter options to the Technical Threat report that allow users to select Critical, High, Medium, Low or Very Low risk. As a result, only the selected risk will be shown in the final report. In addition, Risk mitigation filters also let users select by Mitigated or unmitigated threat and Mitigation or no mitigation planned. Moreover, users can also export all the content of the report if no filters are selected.

Ordering options in threats and countermeasures comments
Comments are now consistently displayed from newest to oldest in both threat and countermeasure details. This is helpful for users especially where there have been a high number of comments, and it is required to have the most recent remarks seen first in order to be informed or see context straight away.

Weaknesses with no Countermeasures now shown in the Threat Detail modal
Weaknesses with no countermeasures are now displayed in the Threat Detail modal. Prior to this update, users who manually added a weakness couldn’t view or delete it from the Threat Detail modal. This change is to remove frustration and make it clearer within this modal where there may be countermeasures to be added or included against a weakness.

Security Content
New content across the categories AWS, SAP, Microservices, Docker, Kubernetes and many more. A total of 182 components.
Client Side - Components
- Adobe Flash
- Android Device Client
- iOS Device Client
- Java Applet
- Java Web Start
- Microsoft Silverlight
- Mobile Device Client
- Rich Client
Network - Components
- gNB
- NGINX Ingress
Hardware - Components
- Analog Component Port
- Antenna
- ATM
- Bare Metal Server
- Battery Monitor
- Bluetooth Port
- C Arm
- Cable Modem
- Card Reader
- Cash Dispenser
- Cellular Gateway
- Check Reader
- Dial-up Modem
- Digital Audio Out Port
- Drone
- Emergency Stop
- Ethernet Port
- FPGA (Field Programmable Gate Array)
- Generic Hardware
- HDMI Port
- Imaging Device
- IntelSGX
- Intrusion Sensors
- Ionizing Radiation Source
- Key Pad
- Laptop
- LCD Display
- Mainframe
- Motherboard
- Moving GantryPump
- Pharmaceutical Pump
- RAM (Random Access Memory)
- Receipt Printer
- RF Transceiver
- Sensor
- Speaker
- STM32 Microcontroller
- Switch Button
- Tablet
- Thermostat
- Transmitter
- USB Drive
- USB Port
- Video Camera
- Wi-Fi Port
Functional - Components
- Empty Component
- Out Of Scope
Amazon Web Services - Components
- AWS Gateway Load Balancer
- AWS Subnet
Microservice Architecture - Components
- Apache ZooKeeper
Alibaba Cloud - Components
- Alibaba Cloud ActionTrail
- Alibaba Cloud API Gateway
- Alibaba Cloud Auto Scaling
- Alibaba Cloud CloudBox
- Alibaba Cloud Compute Nest
- Alibaba Cloud Dedicated Host
- Alibaba Cloud Disaster Recovery
- Alibaba Cloud DNS
- Alibaba Cloud Elastic GPU
- Alibaba Cloud KMS
- Alibaba Cloud VMWare
- Alibaba Cloud VPC
- Alibaba Cloud Web Application Firewall
- Alibaba Cloud WUYING Workspace
Generic - Components
- Apache Kafka
- eBPF Tracer
- Matching Engine Component
- Post-Trade Processing Component
- Pre-Trade Analysis Component
- Telephony System
- Gramine
- IBM API Connect Enterprise as a Service
- IBM Cloud Activity
- IBM Cloud Event Streams
- IBM Cloud Hyper Protect Virtual Server
- MISP (Malware Information Sharing Platform)
- Real-Time Data Feed
- Reporting/Analytics Dashboard
- Settings
- Third Party Bundle
Data Store - Components
- Active Directory
- Cassandra NoSQL
- CouchDB
- Hazelcast
- IBM Db2 on Cloud
- InfluxDB
- Informix
- MariaDB
- Microsoft SQL Server
- MongoDB NoSQL
- MySQL
- Neo4J
- Oracle DB
- Other Data Store
- Other Database
- Other SQL Database
- PostgreSQL
- Redis Server
- Riak NoSQL
- SQLite
Machine Learning /Artificial Intelligence - Components
- Flower Framework
- XAI (Explainable AI)
Kubernetes - Components
- Kubernetes External Services
- Kubernetes worker node
- OpenShift Cluster
- Orchestration
SAP - Components
- SAP ABAP (Advanced Business Application Programming)
- SAP ALE (Application Link Enabling)
- SAP Analysis for Microsoft Office
- SAP API Management
- SAP Application Server
- SAP Ariba
- SAP BOBJ (BusinessObjects Business Intelligence Platform)
- SAP BODS (BusinessObjects Data Services)
- SAP Business Objects Explorer
- SAP Cloud Connector
- SAP Commerce
- SAP Concur
- SAP Content Server
- SAP Customer Data Cloud
- SAP Data Services
- SAP DMS (Document Management Service)
- SAP Enterprise Portal
- SAP Field Service Management (FSM)
- SAP Fiori
- SAP GUI (Graphical User Interface)
- SAP HANA
- SAP HANA Cloud
- SAP HCM (Human Capital Management)
- SAP HR (Human Resources)
- SAP NetWeaver
- SAP NetWeaver Application Server
- SAP NetWeaver Gateway
- SAP OData service
- SAP Process Orchestration
- SAP SLT (Landscape Transformation Replication Server)
- SAP Solution Manager
Salesforce - Components
- Salesforce Experience Cloud
- Salesforce Health Cloud
- Salesforce Marketing Cloud
- Salesforce MCI (Marketing Cloud Intelligence)
- Salesforce MuleSoft
- Salesforce Sales Cloud
- Salesforce Service Cloud
- Salesforce Tableau
- Salesforce Veeva CRM
Docker - Components
- Docker Client
- Docker Container
- Docker Linux Host
- Docker Registry
Openstack - Components
- OpenStack Adjutant
- OpenStack Keystone
- OpenStack Vitrage
- OpenStack Watcher
- OpenStack Zaqar
Virtual - Components
- Horizon View (Desktop virtualization)
- NSX (Network virtualization)
- Virtual Appliance
- Virtual Machine
- VMware Workstation
- vSphere (Server Virtualization)
Iot - Components
- IoT Application
- IoT Mobile Application
- IoT Operating System
- MQTT Broker
- MQTT Client
Blockchain - Components
- Blockchain Network
- Blockchain Oracle
- Consensus Mechanisms
- Distributed Ledger
- Smart Contract
Release Notes and Documentation
For more information, see Version 4.41 Release Notes or check out our Documentation.
Shape the future of Threat Modeling with us!
Join IriusRisk Horizon - Customer Research, Product Discovery, and Early Access. Join today.
Swaggerhub & Github
Find out more of what you need in GitHub and Swaggerhub Repos:
https://app.swaggerhub.com/apis/continuumsecurity/IriusRisk/1.24.0 - We provided this featured API to allow for deeper customer integrations as well as enable very flexible automations within the many varied environments IriusRisk needs to operate.
https://app.swaggerhub.com/apis/iriusrisk/IriusRiskV2/2.0.0-beta.8 - Please note that this version of the API is currently in beta. While it offers advanced features for deeper integrations and flexible automations, we reserve the right to make breaking changes during this phase and encourage caution in production environments.
https://github.com/iriusrisk/IriusRisk-Central - Provides content useful for IriusRisk threat modelling, including templates, API scripts, libraries and more.
