Skip to content
Technology Innovation

XBOW Raises $120M to Scale its Autonomous Hacker

XBOW 4 mins read

Valued at over $1B, XBOW is Accelerating AI-powered Offensive Security to Help Defenders Outpace Modern Attackers


SEATTLE--BUSINESS WIRE--

XBOW, the leader in autonomous offensive security, today announced it has raised $120 million in Series C financing. The round, led by DFJ Growth and Northzone, values the company at over $1 billion.

As part of DFJ Growth’s investment, Ramin Sayar, Venture Partner, will join the XBOW Board of Directors. Drawing on his experience as the former CEO of Sumo Logic, he will help the company scale operations and expand in the enterprise market. The round also includes participation from new investors Sofina and Alkeon Capital, as well as existing investors Altimeter, NFDG Ventures, and Sequoia Capital.

Until now, attackers were constrained by talent. Even the most sophisticated adversaries could not target every system, every version, all the time. With AI, that constraint is gone. Attackers now operate continuously and at scale, probing every release, every environment, and every exposed surface. At the same time, engineering teams are shipping faster than ever. Traditional human-led penetration testing cannot keep pace with AI-driven attackers and modern development cycles.

“When I founded XBOW in January 2024, few believed AI could truly think like a hacker and operate at machine speed. We proved it. XBOW reached the top of the HackerOne leaderboard and is now deployed at some of the most security-forward companies in the world,” said Oege de Moor, Founder and CEO, XBOW. “Attackers are already using AI. Defenders need to move just as fast. XBOW provides that continuous speed, and this funding enables us to bring it to the entire industry.”

Cybersecurity Enters the Autonomous Era

Autonomous offensive security is emerging as the next evolution of security testing. Rather than relying on point-in-time manual pentests, organizations are shifting toward continuous, intelligent coverage that mirrors how modern attackers operate.

XBOW applies AI reasoning and adversarial workflows modeled on real-world attack techniques to identify and validate vulnerabilities at machine speed. Its platform continuously tests applications, uncovering deep exploits often missed by manual testing, while maintaining a low false-positive rate.

​​“XBOW was the first to demonstrate how large language models could be applied to offensive security at scale,” said Barry Schuler, Co-founder and Managing Partner, DFJ Growth. “The company didn’t just prove the technology, it also proved market demand. By combining AI reasoning with real-world adversarial expertise, XBOW is bringing the autonomous hacker to life.”

“XBOW is rapidly emerging as a category leader, with Fortune 500 and global enterprises already relying on the platform as a mission-critical layer in their security stack,” said Sanjot Malhi, Partner, Northzone. “Oege and the team have built an extraordinarily capable AI-driven security platform in a remarkably short time, and we’re thrilled to partner with them as they scale.”

Proof Achieved. Now Scaling.

Over the past year, XBOW proved that autonomous systems can operate safely and effectively in live production environments. This investment will accelerate the company’s expansion across enterprise markets, continued product innovation, and international growth.

From day one, XBOW has paired autonomous systems with some of the world’s top hackers, who help train its autonomous hacker to think like a real adversary. The company was founded by Oege de Moor, creator of GitHub Copilot and GitHub Advanced Security, and built alongside a core group of engineers from the original Copilot team. Chief Information Security Officer Nico Waisman, formerly CISO at Lyft, joined from the outset and has helped shape XBOW’s approach to deploying autonomous systems safely in complex environments. Nico assembled a team of some of the best human hackers in the world to teach the XBOW system its trade.

The company has further strengthened its leadership by naming Ron Gabrisko to its Board, Jonaki Egenolf as Chief Marketing Officer, Dean Breda as General Counsel, and Niro Rajadurai as Chief Revenue Officer. As part of its global expansion strategy, XBOW also appointed WonLae Lee as General Manager, South Korea, at the beginning of 2026.

For more information about XBOW’s autonomous offensive security platform, visit xbow.com or stop by booth #1843 at RSAC™ 2026 next week.

About XBOW

XBOW is the autonomous offensive security company redefining cyber defense for the AI era. Combining AI reasoning with offensive security workflows, the XBOW platform delivers expert-level security testing at machine speed. XBOW empowers security teams to transform from reactive to proactive defense at AI scale. For XBOW customers, autonomous offense is the best defense.

About DFJ Growth

DFJ Growth is a prominent investor in emerging technology leaders during their scaling phase of development. Founded in 2005, DFJ Growth partners with extraordinary, mission-driven entrepreneurs disrupting the status quo with game-changing innovations that become iconic companies. Our investments include Anaplan, Anduril, Box, Cellares, Coinbase, Commonwealth Fusion Systems, Neuralink, OpenAI, Patreon, Ring (Amazon), ScaleAI, SolarCity (Tesla), SpaceX, Stripe, Tesla, Twitter, and Unity. DFJ Growth is a fearless investor and steadfast partner to founders who imagine the future and execute on their bold visions to define it.

About Northzone

Northzone is a global venture capital fund built on experience spanning multiple economic and disruptive technology cycles. Founded in 1996, Northzone has raised more than ten funds to date, with its most recent fundraise in excess of $1.2 billion and has invested in more than 175 companies, including category-defining businesses such as Trustpilot, Spotify, Klarna, iZettle, Kahoot!, Personio, TrueLayer, Spring Health, and Zopa.

Northzone is a full-stack investor from Seed to Growth stage, with transatlantic hubs out of London, New York, Amsterdam, Berlin, Stockholm and Oslo.


Contact details:

Cara Foley
[email protected]

Media

More from this category

  • Technology Innovation
  • 21/05/2026
  • 01:37
TestMu AI

TestMu AI Expands Real Device Testing With Multi-Language Playwright Support and Advanced Audio Testing for iOS

The latest updates enable Playwright automation across Java, Python, and C#, and introduce real-time audio injection capabilities on real iOS devices SAN FRANCISCO & NOIDA, India--BUSINESS WIRE-- TestMu AI (formerly LambdaTest), the world’s first full-stack Agentic AI Quality Engineering platform, today announced two major enhancements to its Real Device Cloud: expanded support for Playwright automation across multiple programming languages and the introduction of Audio Injection and Live Audio Input capabilities for real iOS devices. These updates address a growing need for testing modern applications that are not only cross-platform but also increasingly multimodal, involving voice, audio, and real-time user interactions.…

  • Technology Innovation
  • 20/05/2026
  • 23:32
Visa Inc.

Visa Threats Report: As Network Security Strengthens, Criminals Accelerate Shift to AI-Enabled Social Engineering

Spring 2026 Biannual Threats Report shows how strengthening payment security is pushing criminals toward AI-enabled social engineering SAN FRANCISCO--BUSINESS WIRE-- Visa (NYSE: V), a world leader in digital payments, today released its Spring 2026 Biannual Threats Report, revealing that scams have become the fastest-growing source of consumer harm as criminals increasingly use artificial intelligence and social engineering to manipulate people into authorizing payments themselves. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260520153924/en/ The report draws on intelligence from Visa’s global network and underscores a critical shift in the fraud landscape: while core payment security continues to strengthen…

  • Contains:
  • Technology Innovation
  • 20/05/2026
  • 23:17
1GLOBAL

1GLOBAL Launches Verint Communications Analytics to Enhance Cloud Compliance for Financial and Regulated Industries

1GLOBAL now offers transcription with insights into mobile calls in 10 countries on Verint Communications Analytics, built specifically for financial markets and trading environments…

  • Contains:

Media Outreach made fast, easy, simple.

Feature your press release on Medianet's News Hub every time you distribute with Medianet. Pay per release or save with a subscription.