RunSybil
Also known as: RunSybil, Sybil, runsybil.com
AI-native offensive security platform whose autonomous agent, Sybil, continuously tests applications and infrastructure by reasoning like an elite attacker across the whole stack on every deployment, chaining vulnerabilities into real exploitable paths rather than scanning for signatures. Owns CTEM Phase 4 (Validation): proves whether findings are actually exploitable, delivering pre-validated results with zero triage burden as a replacement for bug bounties and point-in-time pentests. Founded 2023 by OpenAI's first security researcher and Meta's former offensive security lead; $40M raised; Fortune 500 and financial-institution customers.
RunSybil is an AI-native offensive security platform built around Sybil, an autonomous agent that continuously tests applications and infrastructure for exploitable vulnerabilities by reasoning about a system the way an elite human researcher would, across the entire stack, on every deployment. Rather than scanning for signatures, Sybil reasons like an attacker: it interacts with systems dynamically, explores authentication boundaries, finds and validates vulnerabilities, and chains them across layers to surface real exploitable paths, the way an application vulnerability becomes the entry point for full infrastructure compromise. The company frames its role as owning Phase 4 of CTEM, Validation: where most exposure-management programs stop at discovery and prioritization, Sybil continuously attacks applications and infrastructure with real adversarial reasoning to prove whether findings from other tools are actually exploitable, delivering pre-validated findings with zero triage burden. It positions itself as a replacement for both bug bounties (expensive, unpredictable, cherry-picked targets) and point-in-time pentests (stale the moment you ship), offering continuous coverage at predictable cost across application and infrastructure layers, testing for cross-tenant data access, privilege escalation, transaction manipulation, broken authorization, IAM misconfigurations, container escapes, CI/CD secret exposure, and lateral movement. RunSybil describes Sybil as the only platform running live exploitation with AI agents that learn about a target and get more efficient with experience; in one financial-platform engagement Sybil exploited a low-severity flaw, then used that knowledge to probe endpoints and find a critical unauthenticated flaw exposing all customer data that black-box tools missed. Founded in 2023 by OpenAI's first security researcher and Meta's former offensive security lead with a team from Mandiant, NCC Group, and Trail of Bits, backed by a $40M Series A, RunSybil sits in the offensive cluster alongside XBOW, Horizon3, and Terra, differentiated by continuous per-deployment black-box testing that chains vulnerabilities across the full application-to-infrastructure stack.
Vendor details
Canonical URL
https://www.runsybil.com
Category
Security / SOC agent
Funding status
Independent Palo Alto company founded 2023 by CEO Ari Herbert-Voss (OpenAI's first security researcher) and CTO Vlad Ionescu (former Meta offensive security lead), with a team drawn from OpenAI, Meta, Mandiant, NCC Group, and Trail of Bits; raised a $40M Series A (announced 2026), bringing total funding to $40M; serves select startups plus undisclosed financial institutions and Fortune 500 enterprises
Company status
independent
Use cases & customers
Primary use cases
Target customers
Deployment options
Integrations
Maps the entire stack across code, APIs, cloud, and infrastructure, integrating with CI/CD pipelines to deliver security feedback on every pull request so vulnerabilities are caught at the commit rather than after a breach. Works with popular security platforms and major cloud providers, with custom API access for tailored workflows. Requires no access to source code, operating as a black-box tester the way an external attacker would.
Sources & related URLs
Capability coverage
7.0 / 14 capabilities · 50%
| Integrations & Tool CallingMaps code, APIs, cloud, and infrastructure, integrates with CI/CD pipelines, major cloud providers, and popular security platforms, with custom API access, RunSybil site and Futurepedia 2026-07-22 | Full |
|---|---|
| Workflow OrchestrationSybil autonomously reasons across the full stack, chaining vulnerabilities across layers into real exploitable attack paths and running live exploitation end to end, RunSybil site and funding blog 2026-07-22 | Full |
| Knowledge Grounding & RAGMaps the entire stack (code, APIs, cloud, infrastructure) to ground its reasoning on the target system's structure and connective points, RunSybil site 2026-07-22 | Partial |
| Human Oversight & GuardrailsSybil performs pentesting without human intervention and delivers pre-validated findings with zero triage burden; human oversight or approval gating is not documented as a product feature, KuCoin and RunSybil materials 2026-07-22 | Unable to verify |
| Security, Identity & GovernanceNo attestations, RBAC, or product governance features retrieved despite financial-institution and Fortune 500 customers, upgrade on refresh, RunSybil materials 2026-07-22 | Unable to verify |
| Observability & AuditabilityDelivers pre-validated findings with real-time results instead of static PDF reports and proves exploitability with documented exploit paths, moving away from delayed report formats, RunSybil site and Futurepedia 2026-07-22 | Full |
| Memory & State PersistenceAgents learn about the target and get better and more efficient with experience, retaining knowledge across an engagement (exploiting one flaw then using that knowledge to probe endpoints), RunSybil funding blog 2026-07-22 | Partial |
| Deployment & Data ResidencyContinuous black-box testing operates against live applications and infrastructure without needing source-code access; explicit on-premise or options not documented, RunSybil funding blog 2026-07-22 | Partial |
| Prebuilt Agents, Templates & PacksNo prebuilt template, playbook, or pack library documented; Sybil operates through open-ended adversarial reasoning rather than predefined test packs, RunSybil materials 2026-07-22 | Unable to verify |
| Triggers & Channel CoverageRe-evaluates continuously on every deployment, providing security feedback on every pull request and reflecting the attack surface as it exists right now, RunSybil site 2026-07-22 | Full |
| Model Flexibility & RoutingThe LLM-powered agents are internal to the platform; no customer-facing model choice or routing documented, RunSybil materials 2026-07-22 | Unable to verify |
| APIs, SDKs & MCP ExtensibilityCustom API access and CI/CD integration are offered; a full public SDK or MCP surface was not retrieved, Futurepedia and RunSybil materials 2026-07-22 | Partial |
| Testing, Debugging & OptimizationAttack replay allows instant re-testing of fixes to validate that vulnerabilities are effectively remediated, RunSybil site and G2 2026-07-22 | Partial |
| Browser & Computer UseSybil interacts with live systems dynamically, exploring authentication boundaries and web applications the way an attacker would rather than statically scanning, implying interactive application use, RunSybil funding blog 2026-07-22 | Partial |
Pricing
Contact sales
scope of applications and infrastructure under continuous testing
What is public
The platform approach (continuous black-box testing, cross-layer chaining, CTEM validation, attack replay) and the predictable-cost positioning are public; no plans, tiers, or dollar amounts are disclosed.
Variable cost rationale
Positioned explicitly as predictable-cost continuous coverage in contrast to unpredictable bug bounties, suggesting a fixed subscription rather than per-finding or heavily volume-metered billing.
Sales call required
Yes — required for paid access
Free / trial
Not published
Related vendors
- 7AI — Swarming agentic SOC from the Cybereason founders: sixty plus domain…
- AirMDR — AI-native MDR built around a Virtual Analyst that triages 95% of…
- Airrived — Agentic OS that unifies SOC, GRC, IAM, vulnerability management, IT,…
- Andesite — Bionic SOC: a human-AI collaboration platform that automates triage,…
- Assail — Autonomous red teaming platform (Ares) whose AI agents discover,…
- Astelia — AI native exposure management platform from Israeli National Red…