2 Sources
[1]
AI Security Startup Xbow Valued at More Than $1 Billion
Xbow, a startup that builds AI software to probe applications for security vulnerabilities, has raised a new round of funding that values it at more than $1 billion, a sign of investor enthusiasm for using artificial intelligence in cybersecurity. DFJ Growth and Northzone led the $120 million
[2]
Automated vulnerability detection startup Xbow nabs $120M - SiliconANGLE
Xbow USA Inc., a startup that helps enterprises find cybersecurity issues in their software, has closed a $120 million funding round at a valuation exceeding $1 billion. The company disclosed today that DFJ Growth and Northzone were the lead investors. The Series C raise follows a $75 million
Share
Copy Link
Xbow, an AI security startup that automates penetration testing, has raised $120 million in Series C funding at a valuation exceeding $1 billion. Led by DFJ Growth and Northzone, the investment signals strong investor confidence in using AI to combat cybersecurity threats as malicious actors increasingly leverage the same technology to scale attacks.
Xbow, an AI security startup founded in 2024, has closed a $120 million funding round that propels the company to a billion dollar valuation, marking a significant milestone in the cybersecurity industry
1
. DFJ Growth and Northzone led the Series C financing, with participation from Alkeon Capital, Sofina, and previous backers including Sequoia Capital, Altimeter Capital and NFDG1
. The Seattle-based cybersecurity startup previously raised $75 million in June, demonstrating rapid growth in investor enthusiasm for AI-driven security solutions2
.The company uses AI agents to automate the function of penetration testers and red teams, which traditionally probe for weak points in enterprise systems before hackers can exploit them
1
. Xbow's platform can reduce cybersecurity evaluations from weeks to just hours or days, addressing a critical bottleneck in application security2
. The automated vulnerability detection system analyzes edge cases and user interaction scenarios that manual testers often can't cover due to time constraints, enabling more comprehensive risk assessment2
.Xbow trains its AI models using human hackers to identify security vulnerabilities in applications, a growing need as more developers rely on AI coding tools
1
. CEO Oege de Moor, former head of GitHub's pioneering Copilot code-generation product, explained that apps built with AI typically "output insecure coding patterns" because "they've been trained on publicly available source code, and unfortunately, a lot of publicly available source code was not well secured"1
.
Source: SiliconANGLE
The platform's AI agents can develop highly elaborate, multi-step exploit chains that filter false positives without realistic breach potential
2
. In one penetration test, Xbow executed a simulated cyberattack comprising 48 different exploits, using a specially-crafted image file to simulate a server-side request forgery attack2
. In another demonstration, the platform successfully decrypted a cookie protected with AES-128 encryption in just 17.5 minutes by analyzing error messages from server requests to infer the cookie's contents2
.Users can customize automated penetration testing by providing instructions or optionally sharing application source code for more comprehensive vulnerability analysis
2
. The company offers three editions: Plus and Premium for one-time application scans, and Xbow Enterprise for continuous workload monitoring with API integration to stream results to other cybersecurity tools2
.Related Stories
Xbow employs roughly 150 people and expects to have several hundred on staff by year's end
1
. The company has signed up more than 100 customers, including Moderna Inc. and Samsung Electronics Co., and is seeing strong demand in South Korea where businesses face threats from nation-state groups1
. The startup plans to use its newly raised funding to expand its presence in international markets and the enterprise segment while investing in feature development2
.While AI tools help companies protect themselves, hackers are also using the technology to scale the volume and severity of attacks. De Moor warned that "the world at large has not yet fully realized what is coming," predicting "swarms of malicious attacks" that organizations must prepare for
1
. Despite expectations that AI models will improve at avoiding insecure coding patterns, security flaws stemming from AI's failure to understand business logic or data-sharing protocols will remain a persistent challenge1
. This arms race between defensive and offensive AI capabilities makes Xbow's approach to software vulnerabilities increasingly critical for enterprise security teams navigating an evolving threat landscape where both defenders and attackers leverage the same technological advances.Summarized by
Navi
08 May 2025•Technology

12 May 2026•Startups

04 Aug 2026•Startups

1
Science and Research

2
Policy and Regulation

3
Technology