2 Sources
[1]
AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
Hackers are increasingly using AI to launch attacks on a massive scale, with email emerging as a primary target. AI can quickly aggregate personal information -- such as information about coworkers, active projects, and recent travel itineraries -- allowing bad actors to instantly craft convincing messages that look authentic. Last year, former Google security executives Cy Khormaee and Ryan Luo, who previously worked on developing safe browsing technology and reCAPTCHA, teamed up to launch AegisAI, a startup that uses AI agents to stomp out these threats, known as spear phishing. With a decade of experience preventing email hacks, the AegisAI co-founders realized that existing rule-based systems for preventing hacks -- relying on "if-then" logic -- are too slow and limited to catching AI-crafted malicious emails. So they developed AI agents that quickly analyze each message as a human would, paying attention to small anomalies that even the most elaborate checklist wouldn't catch. Less than a year after its launch, AegisAI says its tech has been adopted by dozens of customers, including crypto payments company Mash, AI startup LangChain, and Google-owned privacy compliance platform Lokker. That demand has just helped AegisAI raise a $36 million Series A led by Battery Ventures, with participation from existing backers Accel and Foundation Capital. The fresh funding brings the startup's total capital to $49 million. "AI-powered attacks bypass existing controls more than half the time now, which means they're almost twice as effective as they used to be," Khormaee told TechCrunch. "They've researched you, they understand everything about you, and they're targeting attacks that are perfectly bespoke to you." Khormaee claims that AegisAI's agents can spot threats traditional email security systems may miss entirely. For instance, the startup's AI can catch malicious PDF attachments that look legitimate at first, including ones with built-in passwords and CAPTCHAs, which are often used to fool standard spam filters. When Dharmesh Thakker, general partner at Battery Ventures, noticed an increase in email attacks, he set out to invest in a startup that could defend against AI with AI, one aiming to replace legacy email security tools with agentic-driven defense. "The bad guys are using email to attack us using AI at a much faster pace than we can keep up with," Thakker told TechCrunch. "Defending against that is going to be a number one priority for a lot of companies." AegisAI isn't the only startup using AI to analyze the context of every incoming email to detect fraud and impersonation attempts. Lightspeed-backed Ocean is also trying to displace established vendors like Proofpoint and Mimecast, along with newer players like Abnormal Security. However, given that AegisAI is led by experts who helped secure Gmail, the most popular email system in the world, Thakker believes the startup has the best shot at becoming the leading new hack-prevention company. While AegisAI is starting with email, the startup has its sights on eventually expanding to other areas of defense, such as data security. "The core idea of building customized, highly advanced agents that can do investigations is going to [determine] who becomes the next dominant security company," Khormaee said.
[2]
AegisAI banks $36M as AI spear phishing surges fivefold in a year
Email security startup AegisAI Inc. today said it has raised $36 million in new funding to counter a fast-growing class of artificial intelligence-generated email attacks that no amount of employee training can reliably stop. The San Francisco company builds its own large language models to guard corporate inboxes. The pitch rests on how much the phishing lure has changed. An attacker used to need time and skill. Now AI does the legwork. It scrapes the web for details about the target. It works out which colleague or vendor that person leans on. Then it drafts a note in that trusted voice, at scale. AegisAI calls the technique AI spear phishing, and it says the capability now runs about the price of a cup of coffee. The company runs a network of autonomous AI agents inside the inbox. Traditional filters look for patterns lifted from past scams. AegisAI's agents read the intent and identity behind each message, an approach it says catches linguistically flawless attacks that clear every technical check. The company claims it cuts false positives by up to 90% against legacy tools. AI-generated spear phishing made up 2.8% of the phishing AegisAI observed in early 2025 and reached 13.9% by the end of the year. That finding comes from a study the company presented at this year's M3AAWG conference, drawn from a pool of more than 20,000 malicious emails. The AI notes were also harder to stop. They reached the inbox at close to twice the rate of human-written attacks. Of the ones that got through, almost 73% had cleared email authentication, sent from real accounts that attackers had quietly taken over. The U.S. Federal Bureau of Investigation's latest Internet Crime Report lands in the same place. Victims reported a record $20.8 billion in losses last year. Business email compromise, which turns on identity rather than malware, made up $11.64 billion of that. Ransomware and malicious software combined did not come close. "The most immediate, catastrophic risk to your organization isn't an AI agent hacking your firewall. It's an AI model manipulating someone in your organization into handing over the keys," said Cy Khormaee, co-founder and chief executive of AegisAI. "You cannot patch human trust. When the attack is AI, the defense has to be AI." Khormaee started the company in 2025 with Ryan Luo. The two spent years in Google LLC's core security group, where they helped build reCAPTCHA, Safe Browsing and Web Risk. AegisAI launched publicly in September and has since signed dozens of customers across fintech and technology, including crypto payments company Mesh Connect Inc. and AI developer platform LangChain Inc.. At web privacy company firm Lokker, it says its agents caught an attack routed through a vendor's compromised Salesforce Inc. systems, a message that carried no malicious link or attachment. The new money will scale AegisAI's roster of defense agents and push toward general availability for Vanguard, the company's threat-hunting agent that works outside the inbox. Introduced in March, Vanguard follows suspicious links and attachments onto the open web and returns a threat report within minutes Battery Ventures LP led the Series A round, with existing backers Accel Partners LP and Foundation Capital joining. Dharmesh Thakker, a general partner at Battery Ventures, said generative AI "just broke every assumption legacy email security was built on," leaving a machine-speed defense as the only viable answer. The financing brings AegisAI's total raised to $49 million, less than a year after its public launch.
Share
Copy Link
Former Google security executives Cy Khormaee and Ryan Luo launched AegisAI to combat the surge in AI-generated email attacks. The startup just raised $36 million in Series A funding led by Battery Ventures to deploy AI agents that analyze messages like humans do, catching threats traditional systems miss. AI-driven spear phishing now represents nearly 14% of all phishing attacks, up from just 2.8% in early 2025.
AegisAI has secured $36 million in Series A funding to address a rapidly escalating threat that traditional email security systems struggle to contain. Founded by former Google security executives Cy Khormaee and Ryan Luo, the startup deploys autonomous AI agents designed to detect and neutralize AI-driven spear phishing attacks that bypass conventional defenses
1
. The round was led by Battery Ventures, with participation from existing backers Accel and Foundation Capital, bringing the company's total raised to $49 million less than a year after its public launch2
.Khormaee and Luo spent years developing core security technologies at Google, including reCAPTCHA, Safe Browsing, and Web Risk. Their decade of experience preventing email hacks revealed a critical gap: existing rule-based systems relying on if-then logic prove too slow and limited to catch AI-crafted malicious emails
1
. This realization drove them to launch AegisAI in 2025, with a public debut in September.
Source: SiliconANGLE
The threat landscape has shifted dramatically. AI-generated spear phishing represented just 2.8% of phishing attacks observed by AegisAI in early 2025, but that figure jumped to 13.9% by year's end, according to research the company presented at the M3AAWG conference
2
. The study analyzed more than 20,000 malicious emails and revealed that these AI-driven attacks prove significantly more effective at evading detection."AI-powered attacks bypass existing controls more than half the time now, which means they're almost twice as effective as they used to be," Khormaee told TechCrunch
1
. The attacks leverage generative AI to scrape personal information about targets, including details about coworkers, active projects, and recent travel itineraries, then instantly craft convincing messages that appear authentic. What once required time and skill now costs about the price of a cup of coffee2
.The financial impact is staggering. The U.S. Federal Bureau of Investigation's latest Internet Crime Report documented a record $20.8 billion in losses last year, with business email compromise accounting for $11.64 billion of that total
2
. Nearly 73% of AI-generated attacks that reached inboxes had cleared email authentication, sent from legitimate accounts that attackers had quietly compromised.
Source: TechCrunch
AegisAI builds its own large language models to guard corporate inboxes, running a network of autonomous AI agents that analyze each message as a human would
2
. Traditional filters search for patterns lifted from past scams, but AegisAI's approach reads the intent and identity behind each message, paying attention to small anomalies that even the most elaborate checklist wouldn't catch1
.The startup claims its technology cuts false positives by up to 90% compared to legacy tools
2
. The AI can catch malicious PDF attachments that appear legitimate, including ones with built-in passwords and CAPTCHAs designed to fool standard spam filters1
. At web privacy firm Lokker, one of AegisAI's customers, the agents caught an attack routed through a vendor's compromised Salesforce systems, a message that carried no malicious link or attachment2
.Related Stories
Less than a year after launch, AegisAI has been adopted by dozens of customers across fintech and technology sectors, including crypto payments company Mash, AI startup LangChain, and Google-owned privacy compliance platform Lokker
1
. The startup faces competition from Lightspeed-backed Ocean and established vendors like Proofpoint and Mimecast, along with newer players like Abnormal Security1
.Dharmesh Thakker, general partner at Battery Ventures, believes AegisAI's leadership by experts who helped secure Gmail gives it the best shot at becoming the leading hack-prevention company. "The bad guys are using email to attack us using AI at a much faster pace than we can keep up with," Thakker said. "Defending against that is going to be a number one priority for a lot of companies" . He noted that generative AI "just broke every assumption legacy email security was built on"
2
.The Series A funding will scale AegisAI's roster of defense agents and push toward general availability for Vanguard, the company's threat-hunting agent that operates outside the inbox
2
. Introduced in March, Vanguard follows suspicious links and attachments onto the open web and returns a threat report within minutes.While AegisAI starts with email security, the company plans to expand into other areas of defense, including data security. "The core idea of building customized, highly advanced agents that can do investigations is going to [determine] who becomes the next dominant security company," Khormaee said
1
. As Khormaee emphasized, "The most immediate, catastrophic risk to your organization isn't an AI agent hacking your firewall. It's an AI model manipulating someone in your organization into handing over the keys. You cannot patch human trust. When the attack is AI, the defense has to be AI"2
.Summarized by
Navi
[1]
05 Dec 2025•Startups

03 Apr 2025•Technology

25 Apr 2025•Technology

1
Technology

2
Policy and Regulation

3
Science and Research
