Irregular
Frontier AI security lab that red-teams advanced models for OpenAI, Anthropic, and Google DeepMind.
Visit Website ↗ + Add to CompareOverview
Irregular is a frontier AI security lab that conducts red teaming, safety evaluations, and misuse testing on advanced AI models. Its client list is about as credible as this space gets: OpenAI, Anthropic, and Google DeepMind, along with government agencies, use its platform to stress-test frontier models for cyberattack capability and unexpected behavior before and after deployment.
Founded in Tel Aviv in late 2023 by CEO Dan Lahav and CTO Omer Nevo, Irregular raised roughly $80 million across two rapid rounds in September 2025, led by Sequoia and Redpoint with participation from Wiz co-founder Assaf Rappaport and Eon founder Ofir Ehrlich among its investors, at a reported valuation near $450 million. The company became profitable during 2025 on the strength of contracts with major AI labs.
Irregular’s client roster is independently confirmed — not just claimed — because Anthropic itself publicly disclosed the relationship in 2026 while describing a serious incident: a misconfiguration in Irregular’s testing environment inadvertently connected sandboxed evaluation systems to the public internet, allowing AI models under test to access real-world systems during cybersecurity evaluations. Anthropic said the earliest incidents dated to April 2026, suspended all cyber model evaluations with Irregular on July 23, and began notifying other affected organizations on July 27. That’s a genuine, independently documented operational security lapse at the core of what Irregular sells — safe testing environments for dangerous capabilities — and it materially tempers what would otherwise be a very strong profile built on elite customers and funding.
Innovation Matrix Assessment
Became profitable and secured contracts with three leading AI labs within about two years of founding.
Core value proposition is safe frontier-model testing, which was itself undermined by a 2026 sandbox-escape incident in Irregular's own testing environment.
Independently confirmed clients (OpenAI, Anthropic, Google DeepMind) plus an $80M raise at a ~$450M valuation are unusually strong momentum signals.
Few vendors operate at this frontier-lab-scale red-teaming tier, but the field is too nascent to call the category settled.
Scored conservatively: an independently documented testing-environment misconfiguration allowed models under evaluation to reach real systems, directly undercutting efficacy confidence despite the elite client base.
Frontier AI red-teaming becomes more critical, not less, as model capabilities increase.
Why CISOs Should Care
One of very few vendors independently trusted by the top AI labs to stress-test frontier models for cyberattack capability before and after release.
What Makes It Different
Operates at frontier-model scale for AI labs themselves, rather than building enterprise-facing AI security tooling.
The Matrix Verdict
62/100 — INCREMENTAL INNOVATOR
An elite, independently validated client base offset by a serious, independently disclosed operational security incident in its own testing infrastructure — Incremental Innovator reflecting that tension.
Editorial Note: Claims vs. Verified Findings
The client relationships and the 2026 sandbox-escape incident are both independently confirmed via Anthropic's own public disclosure, not vendor marketing — making the incident particularly credible evidence rather than a discountable claim.
Sources
- Anthropic incident disclosure — https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals
- Irregular $80M raise — https://techcrunch.com/2025/09/17/irregular-raises-80-million-to-secure-frontier-ai-models
- Irregular linked to AI hacking incidents — https://www.cnbc.com/2026/08/09/israeli-startup-irregular-linked-to-ai-hacks-openai-anthropic-meta.html
Alternatives to Irregular
Quilr
Early-stage agentic AI security startup building a 'Service-as-Software' platform to guard against human-related breaches and secure AI agent…
Adaptive Security
AI-driven platform that simulates deepfake, voice, and multichannel social-engineering attacks to train and test organizations against next-generation phishing.
Zenity
Governance and security platform for AI agents and low-code/no-code development, securing agent identity, permissions and behavior across the…
Tenzai
An agentic AI penetration testing startup building autonomous 'AI hackers' to find and validate exploitable vulnerabilities at a…
Reco
Reco secures the "agentic ecosystem" — mapping what AI agents can access across SaaS and enterprise apps, detecting…
Charm Security
Agentic AI workforce that investigates and intervenes on scams and fraud in real time, reading manipulation and intent…