A Security
Autonomous offensive security platform that continuously validates which attack paths are exploitable before AI-driven attackers can chain them.
Visit Website ↗ + Add to CompareOverview
A Security has built an autonomous offensive-security platform designed to find and validate real, exploitable attack paths before adversaries — increasingly AI-driven ones — can chain them into a breach. Rather than relying on periodic penetration tests or manual risk assessments, the platform runs offensive and defensive AI agents under scoped, audited execution to continuously test whether a given exposure is actually reachable and exploitable in a specific environment, then helps drive remediation at the source.
The Tel Aviv-based company was founded in 2025 by CEO Yossi Torati, a former Director of Enterprise Security at incident-response firm Sygnia with roots in Israeli Navy cybersecurity, alongside CTO Yuval Itzchakov and CPO Omer Gal. A Security emerged from stealth in mid-2026 with $37 million in funding from Lightspeed Venture Partners, Cyberstarts, and Cerca Partners, with personal investment from Wiz CEO Assaf Rappaport and Cyera CEO Yotam Segev.
The company’s thesis is that frontier AI models have compressed the time between vulnerability discovery and exploitation to a matter of minutes, and that traditional point-in-time assessments can no longer keep pace — making continuous, automated exploit-path validation a defensive necessity rather than a nice-to-have.
Innovation Matrix Assessment
Shipped a working autonomous offensive-security platform and secured a $37M round within roughly a year of founding.
Continuous exploit-path validation gives security teams a way to prioritize remediation by what's actually reachable, rather than triaging by CVSS score alone.
Backed by Lightspeed and Cyberstarts with personal investment from the CEOs of Wiz and Cyera — a strong signal from operators who have built category-leading companies themselves.
Automating what was previously manual, periodic penetration testing into a continuous offensive loop is a meaningful shift, though breach-and-attack-simulation vendors have moved in a similar direction.
Founded in 2025 with no public named-customer case studies or independent red-team validation yet; claims of finding real exploit paths are currently vendor-asserted.
AI-accelerated exploitation timelines are a well-documented industry trend, and continuous exploitability validation is likely to become more, not less, important over the next several years.
Why CISOs Should Care
It tells a CISO which of their thousands of open findings are actually exploitable right now, rather than adding another list of theoretical vulnerabilities to triage.
What Makes It Different
It runs autonomous offensive and defensive AI agents continuously, under audit, rather than relying on scheduled human-led penetration tests.
The Matrix Verdict
65/100 — INCREMENTAL INNOVATOR
A Security is an Incremental Innovator: strong founding pedigree and investor conviction from recognized security operators, but still pre-track-record on independently verified real-world efficacy.
Editorial Note: Claims vs. Verified Findings
Funding amount, investors, and founder backgrounds are independently corroborated across SecurityWeek, Fortune, Globes, and the Jerusalem Post. Specific exploit-detection and remediation-speed claims are vendor-sourced and not yet independently benchmarked.
Sources
- SecurityWeek — https://www.securityweek.com/a-security-raises-37-million-for-autonomous-offensive-security-platform/
- Fortune — https://fortune.com/2026/06/08/lightspeed-wiz-assaf-rappaport-37-million-ai-powered-cyberattacker-a/
- Jerusalem Post — https://www.jpost.com/business-and-innovation/tech-and-start-ups/article-898741
Alternatives to A Security
Unknown Cyber Inc.
CISO ReviewedMalware genomics platform using automated deep static analysis and code-lineage comparison to identify unseen malware, variants, and supply-chain…
Synack Inc
A penetration-testing-as-a-service platform pairing a vetted researcher community with AI-driven attack surface discovery for continuous security validation.
Horizon3.ai
Autonomous penetration testing company whose NodeZero platform self-attacks networks without persistent agents, aiming to replace annual manual pentests…
Airlock Digital
Application allowlisting (deny-by-default) platform that blocks unapproved executables, scripts, and processes to prevent ransomware and malware execution.
Cogent Security
Agentic AI platform that autonomously triages, investigates, and remediates vulnerabilities as a force multiplier for security teams.
ReversingLabs
Software supply chain security and binary analysis vendor that inspects compiled software and packages for malware and unauthorized…