Newsroom

Australia Gave British Cyber Expert One of Its Most Exclusive Visas. Six Months Later, He's Launched an Australian Cybersecurity Company

UNITED KINGDOM / AGILITYPR.NEWS / August 14, 2026 / Just six months after receiving permanent residency, Jacob Riggs has founded Australian cybersecurity company Bugtri, with 11 organisations already using the platform following 27 early-access applications in three weeks.


A cybersecurity professional who was granted Australia's ultra-rare 858 National Innovation visa earlier this year has launched an Australian company within six months of receiving permanent residency, building technology to tackle the flood of low-quality and AI-generated vulnerability reports hitting security teams worldwide.


Now based in Sydney, Jacob Riggs has founded Bugtri, an AI-powered platform designed to automatically assess vulnerability reports arriving in company inboxes and help analysts separate genuine threats from spam, duplicates and low-quality submissions.


The launch comes as the cybersecurity industry grapples with a sharp increase in reports created or assisted by generative AI.


Riggs believes vulnerability disclosure is now entering an “AI arms race”, with AI making it easier to generate reports at a scale that traditional human triage processes were never designed to handle. Bugtri uses AI to solve the very problem AI is creating.


The platform connects to an organisation’s shared security mailbox, automatically assesses incoming vulnerability reports and returns a structured decision, risk score and summary to the inbox. Sensitive information including URLs and IP addresses is sanitised before being sent to an AI provider.


Rather than attempting to replace security analysts, Bugtri is designed to filter and prioritise what reaches them. Reports can be automatically categorised and scored, duplicates detected and uncertain assessments sent for human review rather than automatically dismissed. The aim is to reduce the time security teams spend working through noise without risking genuine vulnerabilities being overlooked. Early demand suggests the solution is resonating with organisations. Bugtri opened applications for early access three weeks ago and has already received 27 applications, with 11 organisations now actively using the platform during its early access phase.


The launch comes as cybersecurity teams and open-source maintainers grapple with a new consequence of the generative AI boom: it has become dramatically easier to generate vulnerability reports at scale, while somebody still has to determine which reports represent genuine security issues.

The problem has become serious enough for the Open Source Security Foundation’s Vulnerability Disclosures Working Group to launch dedicated work in 2026 examining the impact of low-quality, AI-generated vulnerability reports and developing guidance to help organisations manage them.


The project has been entirely bootstrapped and self-funded by Riggs. He comments, “Australia welcomed me through the National Innovation Visa program, and I’ve tried to contribute back by creating an innovative Australian company that now aims to solve a global cybersecurity problem,” he said.

Australia’s National Innovation visa, subclass 858, is a permanent visa for people with an internationally recognised record of exceptional and outstanding achievement. Candidates must first be invited by the Australian Government before they can apply.


Riggs, who moved to Sydney from the UK, secured his visa earlier this year.

During the application period, he also responsibly disclosed a vulnerability in a live Australian Government system, which was subsequently acknowledged by the Department of Foreign Affairs and Trade.


The idea behind the platform draws on more than a decade of Riggs’ own experience finding and responsibly disclosing vulnerabilities to organisations around the world. “After responsibly disclosing vulnerabilities to thousands of organisations over the past decade and observing the friction in their processes, I’m simply reconnecting with those teams and offering the automated triage solution they now need,” he said.



The company has also been accepted into the Australian Signals Directorate Partner Program. Riggs said he intends to make Bugtri’s capabilities available on a not-for-profit basis where they can support Australia’s cybersecurity interests.


For more information, visit bugtri.com.


Contacts