Back to vendors
R

RunSybil

Also known as: RunSybil, Sybil, runsybil.com

Visit site
Security / SOC agentindependentVerified 2026-07-22

AI-native offensive security platform whose autonomous agent, Sybil, continuously tests applications and infrastructure by reasoning like an elite attacker across the whole stack on every deployment, chaining vulnerabilities into real exploitable paths rather than scanning for signatures. Owns CTEM Phase 4 (Validation): proves whether findings are actually exploitable, delivering pre-validated results with zero triage burden as a replacement for bug bounties and point-in-time pentests. Founded 2023 by OpenAI's first security researcher and Meta's former offensive security lead; $40M raised; Fortune 500 and financial-institution customers.

RunSybil is an AI-native offensive security platform built around Sybil, an autonomous agent that continuously tests applications and infrastructure for exploitable vulnerabilities by reasoning about a system the way an elite human researcher would, across the entire stack, on every deployment. Rather than scanning for signatures, Sybil reasons like an attacker: it interacts with systems dynamically, explores authentication boundaries, finds and validates vulnerabilities, and chains them across layers to surface real exploitable paths, the way an application vulnerability becomes the entry point for full infrastructure compromise. The company frames its role as owning Phase 4 of CTEM, Validation: where most exposure-management programs stop at discovery and prioritization, Sybil continuously attacks applications and infrastructure with real adversarial reasoning to prove whether findings from other tools are actually exploitable, delivering pre-validated findings with zero triage burden. It positions itself as a replacement for both bug bounties (expensive, unpredictable, cherry-picked targets) and point-in-time pentests (stale the moment you ship), offering continuous coverage at predictable cost across application and infrastructure layers, testing for cross-tenant data access, privilege escalation, transaction manipulation, broken authorization, IAM misconfigurations, container escapes, CI/CD secret exposure, and lateral movement. RunSybil describes Sybil as the only platform running live exploitation with AI agents that learn about a target and get more efficient with experience; in one financial-platform engagement Sybil exploited a low-severity flaw, then used that knowledge to probe endpoints and find a critical unauthenticated flaw exposing all customer data that black-box tools missed. Founded in 2023 by OpenAI's first security researcher and Meta's former offensive security lead with a team from Mandiant, NCC Group, and Trail of Bits, backed by a $40M Series A, RunSybil sits in the offensive cluster alongside XBOW, Horizon3, and Terra, differentiated by continuous per-deployment black-box testing that chains vulnerabilities across the full application-to-infrastructure stack.

Vendor details

Canonical URL

https://www.runsybil.com

Category

Security / SOC agent

Funding status

Independent Palo Alto company founded 2023 by CEO Ari Herbert-Voss (OpenAI's first security researcher) and CTO Vlad Ionescu (former Meta offensive security lead), with a team drawn from OpenAI, Meta, Mandiant, NCC Group, and Trail of Bits; raised a $40M Series A (announced 2026), bringing total funding to $40M; serves select startups plus undisclosed financial institutions and Fortune 500 enterprises

Company status

independent

Use cases & customers

Primary use cases

continuous autonomous black-box penetration testing on every deploymentcross-layer vulnerability chaining from application to infrastructure compromiseCTEM Phase 4 validation: proving whether findings are actually exploitableper-pull-request security feedback in CI/CDreplacing bug bounties and point-in-time pentests with continuous coverage

Target customers

security-conscious enterprises with critical customer-data systemsfinancial institutions and Fortune 500 companiesengineering teams embedding continuous testing in CI/CDorganizations replacing annual pentests and bug bounties

Deployment options

continuous black-box testing against live applications and infrastructureCI/CD integration providing security feedback on every pull requestcustom API access and integration with major cloud providers

Integrations

Maps the entire stack across code, APIs, cloud, and infrastructure, integrating with CI/CD pipelines to deliver security feedback on every pull request so vulnerabilities are caught at the commit rather than after a breach. Works with popular security platforms and major cloud providers, with custom API access for tailored workflows. Requires no access to source code, operating as a black-box tester the way an external attacker would.

Capability coverage

7.0 / 14 capabilities · 50%

Integrations & Tool CallingMaps code, APIs, cloud, and infrastructure, integrates with CI/CD pipelines, major cloud providers, and popular security platforms, with custom API access, RunSybil site and Futurepedia 2026-07-22 Full
Workflow OrchestrationSybil autonomously reasons across the full stack, chaining vulnerabilities across layers into real exploitable attack paths and running live exploitation end to end, RunSybil site and funding blog 2026-07-22 Full
Knowledge Grounding & RAGMaps the entire stack (code, APIs, cloud, infrastructure) to ground its reasoning on the target system's structure and connective points, RunSybil site 2026-07-22 Partial
Human Oversight & GuardrailsSybil performs pentesting without human intervention and delivers pre-validated findings with zero triage burden; human oversight or approval gating is not documented as a product feature, KuCoin and RunSybil materials 2026-07-22 Unable to verify
Security, Identity & GovernanceNo attestations, RBAC, or product governance features retrieved despite financial-institution and Fortune 500 customers, upgrade on refresh, RunSybil materials 2026-07-22 Unable to verify
Observability & AuditabilityDelivers pre-validated findings with real-time results instead of static PDF reports and proves exploitability with documented exploit paths, moving away from delayed report formats, RunSybil site and Futurepedia 2026-07-22 Full
Memory & State PersistenceAgents learn about the target and get better and more efficient with experience, retaining knowledge across an engagement (exploiting one flaw then using that knowledge to probe endpoints), RunSybil funding blog 2026-07-22 Partial
Deployment & Data ResidencyContinuous black-box testing operates against live applications and infrastructure without needing source-code access; explicit on-premise or options not documented, RunSybil funding blog 2026-07-22 Partial
Prebuilt Agents, Templates & PacksNo prebuilt template, playbook, or pack library documented; Sybil operates through open-ended adversarial reasoning rather than predefined test packs, RunSybil materials 2026-07-22 Unable to verify
Triggers & Channel CoverageRe-evaluates continuously on every deployment, providing security feedback on every pull request and reflecting the attack surface as it exists right now, RunSybil site 2026-07-22 Full
Model Flexibility & RoutingThe LLM-powered agents are internal to the platform; no customer-facing model choice or routing documented, RunSybil materials 2026-07-22 Unable to verify
APIs, SDKs & MCP ExtensibilityCustom API access and CI/CD integration are offered; a full public SDK or MCP surface was not retrieved, Futurepedia and RunSybil materials 2026-07-22 Partial
Testing, Debugging & OptimizationAttack replay allows instant re-testing of fixes to validate that vulnerabilities are effectively remediated, RunSybil site and G2 2026-07-22 Partial
Browser & Computer UseSybil interacts with live systems dynamically, exploring authentication boundaries and web applications the way an attacker would rather than statically scanning, implying interactive application use, RunSybil funding blog 2026-07-22 Partial

Pricing

Contact sales

scope of applications and infrastructure under continuous testing

Contact onlyLow variable cost

What is public

The platform approach (continuous black-box testing, cross-layer chaining, CTEM validation, attack replay) and the predictable-cost positioning are public; no plans, tiers, or dollar amounts are disclosed.

Variable cost rationale

Positioned explicitly as predictable-cost continuous coverage in contrast to unpredictable bug bounties, suggesting a fixed subscription rather than per-finding or heavily volume-metered billing.

Sales call required

Yes — required for paid access

Free / trial

Not published

Verified 2026-07-22

Contact us

Found a vendor we missed? Have feedback on the index? We'd love to hear from you.