Criminal IP Introduces AITEM as the Next Evolution of Attack Surface Management
Criminal IP by AI SPERA is launching AITEM (AI-Powered Threat Exposure Management), an advanced solution designed to move Attack Surface Management beyond mere asset discovery to proactive threat response.
Intelligence analysis by Gemini 2.5 Flash

AITEM aims to bridge the critical gap between detecting cyber threats and taking effective action, leveraging AI to filter noise, enrich context, and guide investigations. This evolution is crucial as automated attacks and AI-assisted vulnerability discovery accelerate the speed at which threat actors can target exposed assets.
Imagine your house has many doors and windows, and some might be left open by mistake. AITEM is like a super-smart detective robot that not only finds all those openings but also figures out which ones bad guys are most likely to use right now, tells you exactly how to close them, and even helps you do it quickly. It helps grown-ups keep their computer systems safe by finding weak spots and fixing them fast, before sneaky hackers can get in.
Analysis
AITEM
Criminal IP's introduction of AITEM marks a strategic shift in how organizations approach cybersecurity, moving beyond the foundational task of asset discovery. AITEM, or AI-Powered Threat Exposure Management, is designed to integrate threat intelligence with artificial intelligence to provide a comprehensive view of an organization's risk landscape. This includes not only external assets but also open-source intelligence, dark web data, internal infrastructure, Shadow AI, leaked data, and emerging vulnerabilities, offering a more holistic approach to exposure management.
The platform applies AI across four critical stages: detection, investigation, prioritization, and automation. In detection, it connects emerging threats to an organization's specific assets. For investigation, it allows security teams to use natural language queries to gather relevant context. Prioritization is enhanced by evaluating exposure based on real-world exploitability and attacker activity, moving beyond generic risk scores. Finally, AITEM automates the conversion of prioritized findings into actionable alerts and workflow actions, streamlining the response process and ensuring critical exposures are addressed efficiently.
Byungtak Kang
Byungtak Kang, CEO of AI SPERA, emphasizes the necessity of evolving Attack Surface Management from mere visibility to decisive action. He highlights that while organizations now possess unprecedented visibility into potential threats, many still struggle with effectively prioritizing and responding to the risks identified. Kang asserts that AI is pivotal in this transformation, enabling security teams to cut through the noise, gain richer context, and focus on the most critical exposures, thereby converting insights into tangible security improvements.
Kang's perspective underscores a broader industry trend where the competitive edge in ASM is no longer about who can discover the most assets, but rather who can operate with greater speed and effectiveness in response. He advocates for AI to handle the repetitive analytical tasks, freeing human security professionals to concentrate on critical judgment, accountability, and prioritization. This strategic allocation of resources aims to optimize security operations in an increasingly complex threat landscape.
GovWare 2026
The launch of AITEM coincides with Criminal IP's participation in GovWare 2026 in Singapore, a significant platform for showcasing advancements in cybersecurity. At this conference, AI SPERA CEO Byungtak Kang is scheduled to deliver a session titled “From Visibility to Threat Hunting: A Case Study of AI-Driven Attack Surface Management.” This presentation will delve into real-world examples, illustrating how integrated threat intelligence and attack surface visibility can facilitate faster investigations and more robust security operations.
The session at GovWare 2026 will specifically explore the transition from simply discovering exposures to deeply understanding and actively responding to them. This aligns with the broader industry shift observed at events like RSAC 2026, where themes such as agentic AI, AI SOC, and Shadow AI dominated discussions. Criminal IP's presence and presentation at GovWare 2026 serve to highlight AITEM as a leading solution in this evolving landscape, demonstrating its practical application in enhancing cyber defense capabilities.
Key points
- Criminal IP introduces AITEM (AI-Powered Threat Exposure Management) to evolve Attack Surface Management beyond asset discovery.
- AITEM leverages AI to connect emerging threats to an organization's assets, enrich context for investigations, prioritize risks based on real-world exploitability, and automate response workflows.
- The solution expands visibility to include external assets, OSINT, dark web data, internal infrastructure, Shadow AI, and leaked data.
- AI SPERA CEO Byungtak Kang emphasizes the shift from mere visibility to actionable response, highlighting AI's role in filtering noise and guiding investigations.
- AITEM reflects a broader industry trend towards integrated, AI-driven security operations, moving away from siloed security tools.
AITEM's AI-powered approach could significantly reduce the time between threat detection and response, allowing organizations to proactively defend against sophisticated attacks. By prioritizing real-world exploitability, security teams can allocate resources more effectively, leading to a stronger overall security posture.
Despite the advancements, the increasing sophistication of AI-powered attacks means defenders must constantly evolve, and even advanced tools like AITEM might struggle to keep pace with rapidly emerging, novel threats. Over-reliance on automation could also lead to a false sense of security if human oversight and critical judgment are diminished.



