Skip to content

RunSybil

AI-native continuous penetration testing platform built around an autonomous offensive security agent, backed by a $40M Khosla Ventures-led round.

Visit Website ↗ + Add to Compare
63/100Incremental Innovator

Overview

RunSybil builds an AI-native offensive security platform, centered on an autonomous agent called Sybil, that runs continuous automated penetration testing against live enterprise environments rather than the traditional point-in-time pentest engagement. Instead of a scheduled annual or quarterly test, Sybil runs continuously against every new deployment, re-evaluates only what changed, and validates findings through live exploitation, an approach the company says reduces false positives substantially compared with conventional vulnerability scanning, a vendor claim not yet independently benchmarked.

Founded in 2023 by former OpenAI security researcher Ari Herbert-Voss and former Meta offensive security lead Vlad Ionescu, and based in San Francisco, RunSybil raised a $40 million round led by Khosla Ventures, with participation from Menlo Ventures and angel investors from OpenAI, Palo Alto Networks, Stripe, and Google. That is a substantial raise for a two-year-old company and reflects strong investor conviction in AI-native offensive security as a category, though it is not itself evidence of product efficacy.

RunSybil states it serves select startups along with undisclosed financial institutions and Fortune 500 customers, but does not publicly name reference customers, and has not participated in independent evaluations such as MITRE ATT&CK Evaluations (which in any case are oriented toward detection products rather than offensive testing tools). Its claims of continuous, low-false-positive validated exploitation should be treated as vendor-reported pending independent, named case studies.

Innovation Matrix Assessment

Innovation Velocity 7/10

Built a continuous, agent-driven offensive testing model rather than a static scanning tool within about two years of founding, and moved quickly from founding to a $40M Series A.

Operational Value 6/10

Runs continuously against new deployments and re-evaluates only what changed, a real operational advance over point-in-time pentest engagements, though real-world deployment breadth across customer types is not independently documented.

Market Momentum 7/10

A $40M round led by Khosla Ventures with participation from Menlo Ventures and notable named angels (from OpenAI, Palo Alto Networks, Stripe, Google) is a substantial, independently reported raise for a two-year-old company.

Category Disruption 7/10

Reframes penetration testing from a periodic, manual engagement into a continuous, AI-agent-driven process, a meaningfully different operating model from traditional pentest firms and most automated scanners.

Real-World Efficacy 4/10

The claimed 90%+ false-positive reduction versus conventional scanning is a vendor-reported figure with no independent benchmark found; the company has not participated in independent evaluations like MITRE ATT&CK Evaluations, and no named customer case studies are public.

Enduring Relevance 7/10

AI-driven, continuous offensive testing addresses a real gap between infrequent traditional pentests and the pace of modern continuous deployment, a growing area of CISO interest.

Why CISOs Should Care

Offers continuous, agent-driven validation of exploitable risk on every new deployment, rather than a point-in-time snapshot that ages quickly between annual pentest cycles.

What Makes It Different

Uses an autonomous AI agent (Sybil) that learns across engagements and validates findings through live exploitation, rather than static vulnerability scanning or manual periodic testing.

The Matrix Verdict

63/100 — INCREMENTAL INNOVATOR

A well-funded, technically ambitious entrant reframing offensive security testing around continuous AI agents; strong investor conviction and a genuinely different operating model, but efficacy claims remain vendor-reported and unverified by independent benchmarks.

Editorial Note: Claims vs. Verified Findings

The $40M funding, investor list, and founder backgrounds (OpenAI, Meta) are independently reported by SiliconANGLE and other trade press; the false-positive-reduction and customer-scale claims (Fortune 500, financial institutions) are vendor-stated and not independently named or verified.

Sources