Cyberhaven

Data SecurityDetection ResponseGovernance Risk Compliance also known as Cyberhaven, Inc.

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure.
Founded 2016
Funding $250M
Last updated 2026-09-01

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

Executive Summary

Cyberhaven's data lineage engine traces sensitive data from its origin through every copy so it can block exfiltration wherever data moves, the product of specialized data-lineage engineering. Cyberhaven builds the lineage from each customer's own telemetry, and the cited record identifies no cross-customer corpus or other irreplaceable dataset behind the Large Lineage Models. Independent reporting confirms a $1 billion valuation on $250 million raised and customers including Snowflake, Motorola, and Cooley, while the revenue behind that price stays undisclosed. In December 2024 attackers hijacked the company's own browser extension to steal user sessions, which independent researchers tied to a wider supply-chain campaign, against a pitch about controlling where data goes.

Sourced Details

Description Cyberhaven sells a unified data security platform that combines DSPM, data loss prevention, insider risk management, and AI security, built on data lineage tracing that maps how sensitive data moves and transforms. [f1]
Founded 2016 [f2]
HQ Palo Alto, California, United States [f3]
Funding $250M total [f3]
Latest funding Series D, $100M, April 2025, $1B valuation (StepStone, Schroders, Industry Ventures) [f4]

Products

Product What it does
Cyberhaven AI & Data Security Platform Unified platform combining DSPM, DLP, insider risk management, and AI security, built on data lineage tracing and the Linea AI agents powered by proprietary Large Lineage Models.
Cyberhaven AI Security Component of the Cyberhaven platform that discovers AI apps and agents across SaaS, endpoints, and developer environments, scores their risk, and applies data-level controls to what they access.

Matrix Coverage

Cyber Defense Matrix

IdentifyProtectDetectRespondRecover
Devices Workstations, servers, phones, tablets, storage, network devices, IoT infrastructure, and similar hardware.
Applications Software, interactions, and application flows on the devices.
Networks Connections and traffic flowing among devices and apps, plus communication paths.
Data Content at rest, in transit, or in use across devices, apps, and networks.
Users The people using the devices, apps, networks, and data.

The Cyberhaven AI & Data Security Platform's DSPM, DLP, and insider risk lines classify, protect, and respond to sensitive data and watch user activity, mapping to the Cyber Defense Matrix. Cyberhaven AI Security applies that same method to data moving to AI tools, so it maps here too. [f5]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Established 25 /40 Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
Dimension Score Rationale
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 3/5 Cyberhaven names a clear enterprise buyer and the Motorola case study quantifies the pain, but those figures are customer-supplied on a vendor page and no independent analyst or research source frames the category, so the quantified pain is present but not independently corroborated. [s3, s9, s5]
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. 3/5 The vendor pages detail the lineage engine and Linea AI agents and the Motorola writeup supplies metrics, but the public record carries no third-party benchmark or independent product evaluation, so external validation is single-sourced and vendor-hosted. [s2, s3, s1]
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 3/5 Data security is an established budget line and the move of corporate data into AI tools is a credible enabler, but buyer-side demand depends on vendor pages and investor enthusiasm without an independent analyst category note or regulatory driver. [s5, s9, s4]
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 3/5 Cyberhaven was founded by five PhD students and Volodymyr Kuznetsov is chief technology officer, but the record shows no prior founder exit or sustained publication standing, and the chief executive seat changed from Howard Ting to Nishant Doshi. [s6, s7, s10]
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 4/5 BleepingComputer independently names enterprise customers including Snowflake, Motorola, Canon, Reddit, and the law firms Cooley and Kirkland & Ellis, corroborating the vendor case studies beyond a reference page. It stays below the top because it discloses no SEC-filed revenue scale. [s8, s3, s11]
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 2/5 Cyberhaven raised $250 million and reached a $1 billion valuation with no disclosed revenue or margin and only case-study commercial proof, so the raise outruns verifiable commercial results. [s4, s10]
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 4/5 Independent outlets place Cyberhaven in data loss prevention and data security without vendor coaching, BleepingComputer as a data loss prevention company and SecurityWeek as a data detection and response platform, an established-category placement that is multiply evidenced. The data-lineage framing remains the vendor's own vocabulary rather than an analyst-recognized category lead. [s4, s8, s9]
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 3/5 The lineage engine is a vendor-claimed technical differentiator with no independent benchmark on the public record, and Cyberhaven builds it from each customer's own telemetry with no cross-customer data asset, so a structural moat that bundling could not replicate is not evidenced. [s2, s1]
Business Risks Microsoft could deepen Purview data classification inside Microsoft 365 tenants until buyers treat Cyberhaven as redundant rather than additive…
  • Microsoft could deepen Purview data classification inside Microsoft 365 tenants until buyers treat Cyberhaven as redundant rather than additive.
  • The data lineage advantage runs per tenant and carries no independent public benchmark, so buyers have no outside measure of how far ahead it is.
  • The December 2024 Chrome extension compromise could resurface in procurement and slow deals with security-sensitive buyers.
  • A $1 billion valuation set in April 2025 could outrun revenue growth and pressure a future round if enterprise traction does not scale.
  • The recent CEO transition could shift go-to-market strategy mid-stride during the enterprise sales build.
  • Varonis sells a comparable unified data security platform to the same regulated buyers, compressing the window to win accounts.
Problem & Market Sensitive data sprawls across endpoints, cloud apps, and AI tools faster than legacy controls can track it, and content-pattern detection generates noise while missing real exfiltration. The Motorola case study makes that pain concrete, describing prior tools that produced false positives and could not stop product designs leaking to competitors. Data security posture management, data loss prevention, and insider risk are recognized security categories, and the move of corporate data into AI tools gives buyers a fresh reason to revisit controls. The market is crowded, with incumbents and a hyperscaler-bundled option competing for the same spend…

Sensitive data sprawls across endpoints, cloud apps, and AI tools faster than legacy controls can track it, and content-pattern detection generates noise while missing real exfiltration. The Motorola case study makes that pain concrete, describing prior tools that produced false positives and could not stop product designs leaking to competitors.

Data security posture management, data loss prevention, and insider risk are recognized security categories, and the move of corporate data into AI tools gives buyers a fresh reason to revisit controls. The market is crowded, with incumbents and a hyperscaler-bundled option competing for the same spend. [s3, s9, s5]

Product Capabilities The product traces data lineage from origin through every copy and transformation, then classifies data by where it came from and blocks exfiltration on that origin rather than on content alone. Cyberhaven describes the lineage technology as available only from it, the foundation the rest of the platform shares. On top of the lineage graph, the Linea AI detection agent applies proprietary Large Lineage Models to flag risky activity, and an analyst agent runs investigations and produces reports. The Motorola deployment reports a 90 percent reduction in false positives and a 98 percent reduction in investigation time, customer-supplied results on a vendor page rather than an independent benchmark…

The product traces data lineage from origin through every copy and transformation, then classifies data by where it came from and blocks exfiltration on that origin rather than on content alone. Cyberhaven describes the lineage technology as available only from it, the foundation the rest of the platform shares.

On top of the lineage graph, the Linea AI detection agent applies proprietary Large Lineage Models to flag risky activity, and an analyst agent runs investigations and produces reports. The Motorola deployment reports a 90 percent reduction in false positives and a 98 percent reduction in investigation time, customer-supplied results on a vendor page rather than an independent benchmark. [s2, s3, s1]

Competitive Positioning Cyberhaven differentiates on data lineage, positioning origin-aware tracing as more accurate than the content classification that traditional data loss prevention relies on. One engine spanning posture management, data loss prevention, insider risk, and AI security lets it contest several categories at once. The position is exposed on two flanks. Other data-security platforms contest the same enterprise buyers, and data-classification controls bundled into the cloud suites those buyers already run press on the same budget, so Cyberhaven has to keep its accuracy lead visible to justify a separate purchase…

Cyberhaven differentiates on data lineage, positioning origin-aware tracing as more accurate than the content classification that traditional data loss prevention relies on. One engine spanning posture management, data loss prevention, insider risk, and AI security lets it contest several categories at once.

The position is exposed on two flanks. Other data-security platforms contest the same enterprise buyers, and data-classification controls bundled into the cloud suites those buyers already run press on the same budget, so Cyberhaven has to keep its accuracy lead visible to justify a separate purchase. [s2, s1, s9]

Go-to-Market & Traction Named enterprise references now carry independent corroboration…

Named enterprise references now carry independent corroboration. BleepingComputer separately lists Snowflake, Motorola, Canon, Reddit, and the law firms Cooley and Kirkland & Ellis among Cyberhaven customers, beyond the case studies and testimonials the company publishes itself.

The funding outpaces disclosed revenue. The April 2025 Series D raised $100 million at a $1 billion valuation and brought the total raised to $250 million, backed by StepStone, Schroders, and Industry Ventures, a capital base sized for a large sales build whose revenue is not public. [s8, s4, s11]

Team & Credibility Cyberhaven was founded by five PhD students, and Volodymyr Kuznetsov is chief technology officer. Commercial leadership has changed at the top. Howard Ting led Cyberhaven as chief executive at the April 2025 Series D, and the chief executive seat has since passed to Nishant Doshi…

Cyberhaven was founded by five PhD students, and Volodymyr Kuznetsov is chief technology officer.

Commercial leadership has changed at the top. Howard Ting led Cyberhaven as chief executive at the April 2025 Series D, and the chief executive seat has since passed to Nishant Doshi. [s6, s7, s10]

Trust Readiness Cyberhaven's own security is the part a buyer will probe hardest…

Cyberhaven's own security is the part a buyer will probe hardest. In December 2024 attackers phished an administrator account and pushed a malicious version of the company's Chrome extension built to exfiltrate user sessions and cookies, and researchers at Sekoia and Secure Annex tied the breach to a wider supply-chain campaign that touched dozens of extensions and millions of users.

The response was fast and documented, with the malicious version removed within an hour of detection and public technical writeups. Cyberhaven also links a Trust Center listing certifications such as SOC 2 Type 2 and ISO/IEC 27001. For a vendor selling control over where data goes, the 2024 incident is the question a security-sensitive buyer will raise in procurement, weighed against that response. [s8, s14, s15, s12, s16]

Competitors Varonis, Cyera, BigID, Microsoft Purview…
Company Relationship Note Compare
Varonis competes with N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable.
Cyera competes with N/AThese companies operate in different domains, so the scores reflect readiness in different markets.
BigID competes with
Microsoft Purview competes with N/AWe scored these companies at different scopes, so the totals measure different things.

Add analyzed competitors to compare them side by side with Cyberhaven.

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Contested 13 /21 Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure. reinforce or reposition

Cyberhaven is durable on a hard technical problem and a regulated buyer base, and exposed on what the customer buys and its data. Tracing data through copies and transformations across endpoints and cloud is years of specialized graph and machine-learning work, and the buyers are regulated enterprises and law firms whose procurement slows replacement. What the customer buys is software it runs rather than a service that accepts accountability. Cyberhaven builds the lineage from each customer's own telemetry, and the cited record identifies no cross-customer corpus or other irreplaceable dataset. In December 2024 attackers hijacked Cyberhaven's own browser extension, which researchers tied to a wider campaign a security-sensitive buyer will raise in procurement.

Dimension Score Rationale
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3 The platform is software the customer deploys and configures, with classification, detection, and the Linea AI agents producing output rather than a service that accepts accountability for the risk judgment.
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3 Lineage baselines and the detection and coaching workflows a customer wires around the platform create real revert friction, and Motorola retired prior tools to standardize on it, but the embedding is younger and less audit-wired than the multi-year customer-implementation depth a 3 needs.
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3 Cyberhaven lists certifications such as SOC 2 Type 2 and ISO/IEC 27001 on a linked Trust Center, table-stakes attestations rather than a moat, and the December 2024 extension compromise that independent researchers documented weighs against a compliance position.
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3 Tracing data lineage through copies and transformations across endpoints and cloud and training Large Lineage Models on data-movement graphs is graph and machine-learning engineering that takes years of specialized work, matching the same-asset cluster top shared by Varonis and Cyera.
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 3/3 Independent reporting confirms large-enterprise and law-firm buyers including Snowflake, Motorola, Cooley, and Kirkland & Ellis, buyers whose procurement and legal review sit between the vendor and replacement.
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 2/3 The platform is a data-governance control plane that classifies, traces, and responds across the estate, a platform with application features rather than infrastructure other applications build on.
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 1/3 Cyberhaven builds the lineage map and activity history from each customer's own telemetry, and the cited record identifies no cross-customer corpus or other irreplaceable dataset, so on that record the proprietary Large Lineage Models read as technology rather than a data holding.
Strategic Market Segmentation Cyberhaven sells to security teams at large, often regulated enterprises that need to know where sensitive data lives and stop it from leaving. Independent reporting names buyers including Snowflake, Motorola, Cooley, and Kirkland & Ellis, so the buyer is a global enterprise protecting intellectual property and regulated records rather than a single application owner. The segmentation rides one capability across several budget lines. The same data lineage engine serves data security posture management, data loss prevention, insider risk, and the newer AI security use case, which lets Cyberhaven enter an account through whichever pain a buyer feels first and expand into the others…

Cyberhaven sells to security teams at large, often regulated enterprises that need to know where sensitive data lives and stop it from leaving. Independent reporting names buyers including Snowflake, Motorola, Cooley, and Kirkland & Ellis, so the buyer is a global enterprise protecting intellectual property and regulated records rather than a single application owner.

The segmentation rides one capability across several budget lines. The same data lineage engine serves data security posture management, data loss prevention, insider risk, and the newer AI security use case, which lets Cyberhaven enter an account through whichever pain a buyer feels first and expand into the others.

Product Capabilities & AI Advantages The platform classifies, traces, and protects data from one place…

The platform classifies, traces, and protects data from one place. Data lineage follows information from its origin through copies and transformations, which lets Cyberhaven classify and block exfiltration based on where data came from rather than on content patterns alone.

Cyberhaven layers agentic AI on top of the lineage graph. The Linea AI detection agent applies proprietary Large Lineage Models to flag risky activity, and an analyst agent runs investigations and produces reports with next steps. The Motorola case study reports a 90 percent cut in false positives and a 98 percent cut in investigation time, customer-supplied results on a vendor page rather than an independent benchmark.

The AI security line points the same machinery at AI usage. It surfaces shadow AI, scores AI apps and agents for risk, monitors MCP servers and agent activity, and prevents data leaks to AI tools. Even there the controls act on the data rather than the model, so it extends data-flow protection into AI-agent observability rather than standing up a separate defense of the AI system.

A latent advantage Cyberhaven has not yet realized would aggregate the data-movement graphs and user-behavior telemetry it records across many customer estates into shared exfiltration-pattern benchmarks and cross-customer detection heuristics that no single tenant could derive from its own data alone, a position the public record does not yet evidence.

Sales Engagement & Go-to-Market Go-to-market runs through a direct enterprise sales motion backed by public customer stories, and the customer base now carries outside corroboration. BleepingComputer separately names Snowflake, Motorola, Canon, Reddit, Cooley, and Kirkland & Ellis among Cyberhaven customers, evidence of references beyond the case studies the company publishes itself. The motion is funded well ahead of disclosed revenue. The company raised a $100 million Series D in April 2025 at a $1 billion valuation, bringing the total raised to $250 million, and named StepStone, Schroders, and Industry Ventures as investors, capital the company said it would put toward aggressive go-to-market investment while its revenue stays undisclosed…

Go-to-market runs through a direct enterprise sales motion backed by public customer stories, and the customer base now carries outside corroboration. BleepingComputer separately names Snowflake, Motorola, Canon, Reddit, Cooley, and Kirkland & Ellis among Cyberhaven customers, evidence of references beyond the case studies the company publishes itself.

The motion is funded well ahead of disclosed revenue. The company raised a $100 million Series D in April 2025 at a $1 billion valuation, bringing the total raised to $250 million, and named StepStone, Schroders, and Industry Ventures as investors, capital the company said it would put toward aggressive go-to-market investment while its revenue stays undisclosed.

Pricing Model Cyberhaven does not publish a public rate card, consistent with a vendor selling negotiated subscriptions to large enterprises rather than self-serve plans. The unit it sells is platform coverage of an organization's data estate across endpoints and cloud applications. The commercial implication is that a buyer scopes a platform purchase rather than a single tool. Because the four lines share one lineage engine, a team that adopts one can reduce the friction of expanding into the others…

Cyberhaven does not publish a public rate card, consistent with a vendor selling negotiated subscriptions to large enterprises rather than self-serve plans. The unit it sells is platform coverage of an organization's data estate across endpoints and cloud applications.

The commercial implication is that a buyer scopes a platform purchase rather than a single tool. Because the four lines share one lineage engine, a team that adopts one can reduce the friction of expanding into the others.

Product Delivery & Operations The product is delivered as software the customer deploys and runs across endpoints and cloud applications. The Motorola story describes a quick rollout that gave immediate visibility, and the customer configures classification and response policy rather than operating a managed service. The AI agents shift work from analysts to software but do not add a human accountability layer. The Linea detection and analyst agents automate detection and investigation, yet the delivered artifact is still a tool the customer operates rather than a service that accepts responsibility for the risk judgment…

The product is delivered as software the customer deploys and runs across endpoints and cloud applications. The Motorola story describes a quick rollout that gave immediate visibility, and the customer configures classification and response policy rather than operating a managed service.

The AI agents shift work from analysts to software but do not add a human accountability layer. The Linea detection and analyst agents automate detection and investigation, yet the delivered artifact is still a tool the customer operates rather than a service that accepts responsibility for the risk judgment.

Earning Customers' Trust Trust is the most exposed part of the story…

Trust is the most exposed part of the story. In December 2024 attackers phished an administrator account and pushed a malicious version of the company's Chrome extension designed to exfiltrate user sessions and cookies, and researchers at Sekoia and Secure Annex tied the breach to a wider supply-chain campaign that touched dozens of extensions and millions of users.

Cyberhaven removed the malicious version within an hour of detection and published technical writeups, and it links a Trust Center listing certifications such as SOC 2 Type 2 and ISO/IEC 27001. For a vendor whose pitch is controlling where data goes, the 2024 incident is the question a regulated buyer will raise in procurement, weighed against that response.

Platform Strategy & Ecosystem Positioning Cyberhaven positions itself as one platform spanning data security posture management, data loss prevention, insider risk, and AI security, with data lineage as the shared foundation. The strategy is to make four data-security jobs run on one engine rather than as separate tools. Outward, the platform watches data across endpoints, web, email, cloud apps, and removable media, and extends to AI tools as a new channel. Inward, standardizing this many data-security functions on one vendor concentrates reliance on Cyberhaven, the consolidation it sells and the single-vendor dependence a cautious buyer weighs…

Cyberhaven positions itself as one platform spanning data security posture management, data loss prevention, insider risk, and AI security, with data lineage as the shared foundation. The strategy is to make four data-security jobs run on one engine rather than as separate tools.

Outward, the platform watches data across endpoints, web, email, cloud apps, and removable media, and extends to AI tools as a new channel. Inward, standardizing this many data-security functions on one vendor concentrates reliance on Cyberhaven, the consolidation it sells and the single-vendor dependence a cautious buyer weighs.

Team & Execution Capability Cyberhaven was founded by five PhD students, and Volodymyr Kuznetsov is chief technology officer. The executive layer has changed at the top. Howard Ting led Cyberhaven as chief executive at the April 2025 Series D, and the chief executive seat has since passed to Nishant Doshi…

Cyberhaven was founded by five PhD students, and Volodymyr Kuznetsov is chief technology officer.

The executive layer has changed at the top. Howard Ting led Cyberhaven as chief executive at the April 2025 Series D, and the chief executive seat has since passed to Nishant Doshi.

Sources

Company Detail Sources (5)
Id Source Tier Accessed
f1 Cyberhaven: Stop Data Exfiltration with the AI and Data Security Platform official 2026-06-28
f2 The Recursive: How Romanian-Ukrainian Founded Cyberhaven Became AI Cybersecurity Unicorn press 2026-06-21
f3 SecurityWeek: Cyberhaven Banks $100 Million in Series D press 2026-06-28
f4 Cyberhaven Raises $100 Million Series D at $1 Billion Valuation official 2026-06-28
f5 Cyberhaven: One unified platform for AI and Data Security official 2026-06-28
Profile Analysis Sources (16)
Id Source Tier Accessed
s1 Cyberhaven: One unified platform for AI and Data Security
“Cyberhaven combines DSPM, DLP, IRM, and AI Security in one solution ... Linea AI Detection Agent applies predictive AI using proprietary Large Lineage Models (LLiM) to instantly detect risky activity.”
official 2026-06-28
s2 Cyberhaven: How data lineage works
“Data lineage is a technology that's only available from Cyberhaven. It traces data from its origin, providing the context we use to more accurately classify what type of data it is and protect it anywhere it goes.”
official 2026-06-28
s3 Cyberhaven: Helping Motorola stop exfiltration of product designs
“90% reduction in false positives ... 98% reduction in investigation time ... 90% reduction in risky events”
official 2026-06-28
s4 SecurityWeek: Cyberhaven Banks $100 Million in Series D, Valuation Hits $1 Billion
“The Palo Alto-based company said the Series D was provided by StepStone, Schroders and Industry Ventures and brings the total raised to $250 million.”
press 2026-06-28
s5 Cyberhaven: AI Security for the Age of Autonomous Agents
“Increase AI adoption securely, understand shadow AI usage, assess AI risk posture, and prevent leaks without blocking teams with AI Security.”
official 2026-06-28
s6 The Recursive: How Romanian-Ukrainian Founded Cyberhaven Became AI Cybersecurity Unicorn
“Cyberhaven Founders: How 5 PhD Students Built A Unicorn”
press 2026-06-28
s7 Cyberhaven: About Us, Mission, Values, Leadership and Investors
“Nishant Doshi CEO Dr. Volodymyr Kuznetsov Chief Technology Officer”
official 2026-06-28
s8 BleepingComputer: Cybersecurity firm's Chrome extension hijacked to steal users' data
“Among Cyberhaven's customers are Snowflake, Motorola, Canon, Reddit, AmeriHealth, Cooley, IVP, Navan, DBS, Upstart, and Kirkland & Ellis.”
press 2026-06-28
s9 Cyberhaven: Stop Data Exfiltration with the AI and Data Security Platform
“Cyberhaven's AI & data security platform unifies DSPM, DLP, Insider Risk, and AI Security to protect data”
official 2026-06-28
s10 Cyberhaven Raises $100 Million Series D at $1 Billion Valuation
“Cyberhaven Raises $100 Million Series D at $1 Billion Valuation”
official 2026-06-28
s11 Cyberhaven: See How Leading Enterprises Protect Their Data
“We could tell you all about the amazing ways organizations use Cyberhaven for data security, but we'd rather let them speak for themselves.”
official 2026-06-28
s12 Dark Reading: Chrome Extension Compromises Highlight Software Supply Challenges
“So far, 36 different extensions, used by as many as 2.6 million people, appear to be linked in some way to the attack, the techniques, or to the infrastructure used by the attackers, according to an analysis by John Tuckner, founder of Secure Annex.”
press 2026-06-28
s13 BankInfoSecurity: 36 Chrome Extensions Compromised in Supply Chain Attack
“Researchers have identified three dozen Chrome extensions, collectively used by 2.6 million people, into which an attacker injected data-stealing malware.”
press 2026-06-28
s14 Sekoia: Targeted supply chain attack against Chrome browser extensions
“Since March 2024, extensionbuysell[.]com and other possible attacker-controlled domains have resolved to this IP address. We assess with high confidence that they have been used in other campaigns involving web browser extensions conducted by the same threat actor.”
press 2026-06-28
s15 Secure Annex (John Tuckner): Cyberhaven Extension Compromise
“Cyberhaven's internal security team detected the attack at 11:54 PM UTC on December 25th, 2024. Cyberhaven removed the malicious package within 60 minutes of detection.”
press 2026-06-28
s16 Cyberhaven Trust Center (SafeBase)
“SOC 2 Type 2 ... ISO/IEC 27001:2022 ... ISO/IEC 27017:2015 ... ISO/IEC 27701:2019 ... PCI DSS v4.0.1”
official 2026-06-28
Deep-Dive Sources (16)
Id Source Tier Accessed
s1 Cyberhaven: One unified platform for AI and Data Security
“Cyberhaven combines DSPM, DLP, IRM, and AI Security in one solution ... Linea AI Detection Agent applies predictive AI using proprietary Large Lineage Models (LLiM) to instantly detect risky activity.”
official 2026-06-28
s2 Cyberhaven: How data lineage works
“Data lineage is a technology that's only available from Cyberhaven. It traces data from its origin, providing the context we use to more accurately classify what type of data it is and protect it anywhere it goes.”
official 2026-06-28
s3 Cyberhaven: Helping Motorola stop exfiltration of product designs
“90% reduction in false positives ... 98% reduction in investigation time ... 90% reduction in risky events”
official 2026-06-28
s4 SecurityWeek: Cyberhaven Banks $100 Million in Series D, Valuation Hits $1 Billion
“The Palo Alto-based company said the Series D was provided by StepStone, Schroders and Industry Ventures and brings the total raised to $250 million.”
press 2026-06-28
s5 Cyberhaven: AI Security for the Age of Autonomous Agents
“Increase AI adoption securely, understand shadow AI usage, assess AI risk posture, and prevent leaks without blocking teams with AI Security.”
official 2026-06-28
s6 The Recursive: How Romanian-Ukrainian Founded Cyberhaven Became AI Cybersecurity Unicorn
“Cyberhaven Founders: How 5 PhD Students Built A Unicorn”
press 2026-06-28
s7 Cyberhaven: About Us, Mission, Values, Leadership and Investors
“Nishant Doshi CEO Dr. Volodymyr Kuznetsov Chief Technology Officer”
official 2026-06-28
s8 BleepingComputer: Cybersecurity firm's Chrome extension hijacked to steal users' data
“Among Cyberhaven's customers are Snowflake, Motorola, Canon, Reddit, AmeriHealth, Cooley, IVP, Navan, DBS, Upstart, and Kirkland & Ellis.”
press 2026-06-28
s9 Cyberhaven: Stop Data Exfiltration with the AI and Data Security Platform
“Cyberhaven's AI & data security platform unifies DSPM, DLP, Insider Risk, and AI Security to protect data”
official 2026-06-28
s10 Cyberhaven Raises $100 Million Series D at $1 Billion Valuation
“Cyberhaven Raises $100 Million Series D at $1 Billion Valuation”
official 2026-06-28
s11 Cyberhaven: See How Leading Enterprises Protect Their Data
“We could tell you all about the amazing ways organizations use Cyberhaven for data security, but we'd rather let them speak for themselves.”
official 2026-06-28
s12 Dark Reading: Chrome Extension Compromises Highlight Software Supply Challenges
“So far, 36 different extensions, used by as many as 2.6 million people, appear to be linked in some way to the attack, the techniques, or to the infrastructure used by the attackers, according to an analysis by John Tuckner, founder of Secure Annex.”
press 2026-06-28
s13 BankInfoSecurity: 36 Chrome Extensions Compromised in Supply Chain Attack
“Researchers have identified three dozen Chrome extensions, collectively used by 2.6 million people, into which an attacker injected data-stealing malware.”
press 2026-06-28
s14 Sekoia: Targeted supply chain attack against Chrome browser extensions
“Since March 2024, extensionbuysell[.]com and other possible attacker-controlled domains have resolved to this IP address. We assess with high confidence that they have been used in other campaigns involving web browser extensions conducted by the same threat actor.”
press 2026-06-28
s15 Secure Annex (John Tuckner): Cyberhaven Extension Compromise
“Cyberhaven's internal security team detected the attack at 11:54 PM UTC on December 25th, 2024. Cyberhaven removed the malicious package within 60 minutes of detection.”
press 2026-06-28
s16 Cyberhaven Trust Center (SafeBase)
“SOC 2 Type 2 ... ISO/IEC 27001:2022 ... ISO/IEC 27017:2015 ... ISO/IEC 27701:2019 ... PCI DSS v4.0.1”
official 2026-06-28

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.