Skip to content

Hudson Rock

Turns data harvested from infostealer malware logs into searchable threat intelligence via its Cavalier platform, detecting compromised credentials tied to specific infections.

Visit Website ↗ + Add to Compare
58/100Incremental Innovator

Overview

Hudson Rock built its business on data harvested from infostealer malware logs circulating in cybercrime markets, turning that corpus into a searchable threat-intelligence product called Cavalier. Rather than aggregating generic breach dumps or dark-web forum chatter, Cavalier lets enterprises detect employee, customer, and supply-chain credential compromises tied to specific infostealer infections, often with device- and session-level detail that broader dark-web monitoring services don’t provide.

Founded in 2020 in Tel Aviv by Alon Gal, a veteran of Israeli military intelligence’s Unit 8200, and Roi Carthy, the company has been bootstrapped and profitable since inception rather than venture funded, operating with a lean team. It has continued to expand its research output, including the 2025 launch of CavalierGPT, a free AI assistant built on its infostealer intelligence corpus, and its findings are regularly cited by industry outlets covering infostealer activity.

Its differentiation rests on the specificity of infostealer-log-based data: because infostealer malware is a leading initial-access vector in ransomware and enterprise breaches, intelligence tied directly to actual infections offers more actionable, precise detection than generic credential-leak monitoring.

Innovation Matrix Assessment

Innovation Velocity 6/10

Launched CavalierGPT as a new AI-driven interface to its infostealer corpus and continues to publish original threat research, showing active ongoing product and research output for a small team.

Operational Value 6/10

The core data asset, a continuously updated corpus of infostealer malware logs, requires real operational infrastructure to collect, parse, and search at scale, which is a genuine technical capability rather than a repackaged feed.

Market Momentum 5/10

Growing media coverage and the CavalierGPT launch suggest rising visibility, though the company has disclosed no funding rounds or customer-count milestones to independently gauge growth.

Category Disruption 6/10

Infostealer-log-based intelligence is a genuinely different data source than traditional dark-web or breach monitoring, providing more precise, device-level compromise detail, though still a narrow niche relative to broader threat-intel platforms.

Real-World Efficacy 5/10

The company's research has been cited by third-party outlets such as InfoStealers.com, which lends some independent visibility, but no independent third-party accuracy or coverage testing of the Cavalier dataset was found.

Enduring Relevance 7/10

Infostealer malware is a leading initial-access vector in ransomware and enterprise breaches industry-wide, making credential-compromise intelligence tied specifically to infostealer infections a highly relevant, timely capability.

Why CISOs Should Care

Gives security teams visibility into which employee, customer, or third-party vendor credentials have been harvested by infostealer malware, a leading initial-access vector for ransomware, rather than generic dark-web mentions.

What Makes It Different

Built its intelligence directly from infostealer malware log data rather than aggregating breach dumps or dark-web forum chatter, giving device- and session-level specificity that most breach-monitoring competitors don't offer.

The Matrix Verdict

58/100 — INCREMENTAL INNOVATOR

A focused, technically credible threat intelligence vendor addressing a genuinely important and specific attack vector, still building an independent evidence base beyond vendor-authored research and trade-press coverage.

Editorial Note: Claims vs. Verified Findings

Company history, founders' backgrounds, and bootstrapped/profitable status are independently reported via press coverage and Wikipedia. Specific claims about data corpus scale and detection breadth are vendor-stated and were not independently benchmarked in this research.

Sources