Skip to content

Build1 publisher2 min readPublished

Kevin Mandia's Armadin raises $255.5 million to run red-team work as continuous AI software

Kevin Mandia's AI cybersecurity startup Armadin raised a $255.5 million Series B at a valuation above $2.5 billion. Security teams comparing its AI agents with periodic human pentests have only Armadin's own platform figures to go on.

The Engineer · Build desk

Illustration accompanying Kevin Mandia's Armadin raises $255.5 million to run red-team work as continuous AI software

What happened

  • Armadin says the round lifts its total funding to $445 million, including a $189.9 million combined seed and Series A that Accel led in March.
  • In a March post introducing Armadin, Mandia argued that attackers will use AI to automate and scale attacks, so defenders must find attack paths continuously.
  • Armadin says it already runs attack campaigns in production for Fortune 500 enterprises and government customers.
  • Horizon3, which sells continuous autonomous testing in the same market, announced a $250 million Series E at a valuation above $2 billion on August 3rd.

Compiled by The EngineerSomething wrong?How this is made

Why it matters

  • decision A team deciding whether Armadin replaces or supplements its periodic pentest has to build its own comparison on its own estate, since the published metrics come from unnamed customer networks.
  • exposure Agents that probe and chain weaknesses on live systems bring test safety into the buyer's change-control process, and RuntimeWire lists safe, reliable tests as a condition of customer value.
  • precedent A Series B priced $500 million above Horizon3's stated Series E floor tells later autonomous-testing founders that team pedigree can be priced ahead of operating history.

Armadin calls its product the "Ultimate Attacker" [5]. A name like that sets its own acceptance test. Under the name, specialized AI agents map an organization's attack surface, probe its systems and chain individual weaknesses into paths that could end in compromise [5]. I think the chain is the right unit of output, because remediation teams rank fixes by what an attacker can reach. The output shows how separate vulnerabilities combine into a working attack. A scanner would hand over a list of findings [6].

The pitch is about scale. Armadin's proposition is that autonomous software can reproduce red-team work at a scale that periodic, human-led assessments cannot match [7]. A human red team grows by hiring. Evan Pena, Armadin's chief offensive security officer, spent 13 years at Mandiant building one, and Armadin says it grew past 200 consultants under his leadership [8].

The evidence that software can match those people is on Armadin's platform page. It lists 443,000 agents launched against real targets, zero false-positive findings and a fastest path to domain compromise of 119 seconds [13]. The round announcement does not name the customers behind those figures or cite independent performance testing [14].

Each number describes someone else's network. A false-positive count needs a miss rate beside it. A tool that reports only the paths it actually walked can hold false positives at zero and still skip paths it never tried. Those skipped paths are the ones an attacker would use. For the 119 seconds to carry over, a buyer's domain would need the same weakness as the fastest environment Armadin tested. A fastest time is a best case by definition. The 443,000 figure counts activity across all deployments. It does not measure how much of any one customer's estate was covered.

RuntimeWire's account says the investor case rests on both the software thesis and the people building it [20]. Mandia founded Mandiant in 2004 and later led FireEye, and Google completed its acquisition of Mandiant in September 2022 [4]. The Series B came 205 days after the seed and Series A was announced in March [2]. RuntimeWire describes Armadin as still early in its operating history [19]. The company says it will spend the money on its platform, research, training and go-to-market work [17].

What to watch

  • Armadin naming production customers, or an independent test that runs its agents and a human red team against the same environment.
  • Whether Armadin publishes miss rates or per-customer coverage figures beside its zero false-positive count.
  • Published pricing that lets a security team set a continuous-testing subscription against a periodic engagement budget.
Loading claim ledger
Loading source directory links
Loading share composer
Loading topic controls
Loading related stories