Horizon3.ai
Autonomous penetration testing company whose NodeZero platform self-attacks networks without persistent agents, aiming to replace annual manual pentests with continuous automated ones.
Visit Website ↗Overview
Horizon3.ai, founded in 2019 by Snehal Antani (former Splunk CTO) and Anthony Pillitiere (formerly of U.S. Special Operations Command) and headquartered in San Francisco, built NodeZero, a self-service, autonomous penetration testing platform. Unlike traditional pentesting, which is typically a manual, scheduled, human-led engagement performed once or twice a year, NodeZero runs on demand without persistent software agents, making it usable safely in live production environments.
Technically, NodeZero autonomously performs reconnaissance, exploitation, and lateral movement using the same techniques a human attacker would, then reports validated attack paths with proof of impact rather than a static list of theoretical vulnerabilities. The autonomous, no-agent design is the company’s core structural differentiator against both manual pentest firms and agent-based exposure-validation competitors.
The company has raised substantial capital in a short period, including a $100 million Series D led by NEA in 2025 and a $250 million Series E co-led by NightDragon and NEA in August 2026, reportedly valuing the company above $2 billion — one of the fastest funding trajectories in this category.
Innovation Matrix Assessment
Two major funding rounds within roughly a year ($100M Series D, then $250M Series E) alongside continued platform expansion indicate an unusually fast pace of growth and investment.
Self-service, agentless autonomous testing that can run repeatedly and safely in production materially increases how often organizations can validate exposure versus annual manual pentests.
A reported $2B+ valuation and $428M total raised by 2026, backed by NEA and NightDragon, are strong and independently reported momentum signals.
Replacing scheduled, human-led penetration testing with an autonomous, repeatable, agentless platform is a structurally different delivery model, not just a faster version of the old one.
Rapid enterprise and investor adoption implies strong perceived value, though independent named-incident validation of NodeZero's findings was not located in this research.
Autonomous, continuous validation is well positioned to matter more as attack surfaces and exploit timelines accelerate faster than manual pentest cycles can keep pace with.
Why CISOs Should Care
Horizon3.ai lets security teams run realistic, self-service attack validation as often as needed rather than waiting for an annual scheduled pentest engagement, catching newly introduced exposures far sooner.
What Makes It Different
An autonomous, agentless platform that performs actual exploitation and lateral movement on demand, replacing the traditional human-led, scheduled pentest model with a repeatable, always-available one.
The Matrix Verdict
82/100 — MEANINGFUL INNOVATOR
One of the fastest-growing companies in this category by funding and valuation trajectory, with a genuinely different delivery model for penetration testing; a strong upper-tier candidate on velocity, momentum, and disruption.
Editorial Note: Claims vs. Verified Findings
Funding rounds and valuation are corroborated by independent press coverage (BusinessWire, SiliconANGLE); specific claims about NodeZero's exploit success rate and coverage are vendor-sourced.
Sources
Alternatives to Horizon3.ai
Unknown Cyber Inc.
Malware genomics platform using automated deep static analysis and code-lineage comparison to identify unseen malware, variants, and supply-chain…
Pentera
Automated security validation platform that safely runs real attack techniques against production environments to prove which exposures are…
Reality Defender
Deepfake and synthetic media detection company offering real-time detection across voice, video, image, and text for enterprises and…
CrowdStrike
Publicly traded endpoint and cloud security leader whose Falcon Exposure Management module extends its platform into AI-driven vulnerability…
Recorded Future
Threat intelligence platform aggregating open, dark web, and technical sources into real-time risk scoring; acquired by Mastercard in…
Mandiant (Google Cloud)
Incident-response and threat-intelligence firm founded by Kevin Mandia, acquired by Google Cloud in 2022 for $5.4 billion.