All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.
Oligo Security runs an eBPF sensor inside the Linux kernel that tracks which code an application actually executes, flags the vulnerabilities that reach production, and watches AI agents for hijacked behavior. That sensor is reproducible by a funded rival or a cloud platform. The harder-to-copy asset is the triage and compliance work security teams build on its runtime evidence once they adopt it. Named customer references, press-reported Fortune 500 use, and founders from elite military cyber units give Oligo enterprise footing. The proof stays self-reported, with customer figures drawn from Oligo's own pages and no independent test of scale, and the newest AI line extends the same runtime approach rather than defending AI from the ground up.
| Description | Oligo Security runs an eBPF runtime sensor that watches application library and function behavior in production to find exploitable vulnerabilities, detect attacks, and protect applications, cloud workloads, and AI systems. | [f1] |
|---|---|---|
| Founded | 2022 | [f2] |
| HQ | New York, United States, with R&D in Tel Aviv, Israel | [f3] |
| Funding | $80M total | [f1] |
| Latest funding | Series B, $50M (January 2025) | [f1] |
| Product | What it does |
|---|---|
| Cloud Application Detection and Response (CADR) | Runtime detection and response that identifies application and software supply chain exploitation as it happens, profiling library and function behavior to flag and block malicious activity. |
| Runtime Vulnerability Management | Prioritizes vulnerabilities by whether the affected library code actually runs in production, with full call stacks, root-cause analysis, and automated SBOM and VEX reporting. |
| Runtime AI Security | Monitors AI agents, tool calls, and model activity at runtime, adding AI security posture management, AI detection and response, and continuous AI vulnerability and misconfiguration detection. |
Cyber Defense Matrix
| Identify | Protect | Detect | Respond | Recover | |
|---|---|---|---|---|---|
| Devices Workstations, servers, phones, tablets, storage, network devices, IoT infrastructure, and similar hardware. | |||||
| Applications Software, interactions, and application flows on the devices. | |||||
| Networks Connections and traffic flowing among devices and apps, plus communication paths. | |||||
| Data Content at rest, in transit, or in use across devices, apps, and networks. | |||||
| Users The people using the devices, apps, networks, and data. |
Oligo's Cloud Application Detection and Response and Runtime Vulnerability Management use an eBPF sensor to inventory exploitable library vulnerabilities and detect and block application and supply chain attacks in production. This conventional application security maps to the Cyber Defense Matrix. [f4]
AI Defense Matrix
| Govern | Identify | Protect | Detect | Respond | Recover | |
|---|---|---|---|---|---|---|
| AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain. | ||||||
| AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices. | ||||||
| AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD. | ||||||
| AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic. | ||||||
| AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes. | ||||||
| Training Data Datasets used for training, fine-tuning, and continued learning. | ||||||
| Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history. | ||||||
| AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools. |
Oligo Runtime AI Security inventories the models and agents in use, monitors agent actions and tool calls at runtime to catch hijacked or rogue agents, and adds model protection. These capabilities are mapped to the AI Defense Matrix. Runtime AI Security is in private preview (Nov 2025), not yet GA. [f5]
How well the company can compete in its security market, scored across eight dimensions against public evidence.
| Dimension | Score |
|---|---|
| Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. | 3/5 |
| Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs, demos, and third-party validation. | 3/5 |
| Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. | 3/5 |
| Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. | 3/5 |
| GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. | 4/5 |
| Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. | 3/5 |
| Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. | 3/5 |
| Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. | 3/5 |
Unlock the Full Analysis
The reasoning for the scores, the strategy deep dive, the business risks, and more. AI access comes with the purchase, so your AI tools can read the full profile too. You keep 12 months of access.
One-time purchase: $20 per profile.
UnlockReading several? Unlock the entire catalog.
A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.
reinforce or reposition
| Dimension | Score |
|---|---|
| Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. | 1/3 |
| Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. | 2/3 |
| Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. | 1/3 |
| Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. | 3/3 |
| Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. | 3/3 |
| Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. | 2/3 |
| Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. | 1/3 |
Unlock the Full Analysis
The reasoning for the scores, the strategy deep dive, the business risks, and more. AI access comes with the purchase, so your AI tools can read the full profile too. You keep 12 months of access.
One-time purchase: $20 per profile.
UnlockReading several? Unlock the entire catalog.
| Id | Source | Tier | Accessed |
|---|---|---|---|
| f1 | Business Wire: Oligo Security Raises $50M Series B to Redefine Security for Modern Applications | press | 2026-06-24 |
| f2 | SecurityWeek: Oligo Raises $50M to Tackle Application Detection and Response | press | 2026-06-24 |
| f3 | Calcalist: Oligo Security raises $50M Series B to stop cloud application attacks in real time | press | 2026-06-24 |
| f4 | Oligo Security: Cloud Application Detection and Response | official | 2026-06-24 |
| f5 | Oligo Security: AI Runtime Defense | official | 2026-06-24 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | Oligo Security: Runtime AI Security homepage “Don't just scan passively. Protect actively with Oligo.” | official | 2026-06-24 |
| s2 | Oligo Security: Runtime AI Solutions Overview “The Oligo eBPF Sensor. By seeing directly into the Linux kernel, it can detect all your application's library and function executions.” | official | 2026-06-24 |
| s3 | Oligo Security: Cloud Application Detection and Response “CADR is runtime detection and response built to instantly identify application and software supply chain exploitation.” | official | 2026-06-24 |
| s4 | Oligo Security: AI Runtime Defense “Oligo monitors all actions and code generated by agents, protecting against agents that go rogue and attackers that hijack them.” | official | 2026-06-24 |
| s5 | Business Wire: Oligo Security Raises $50M Series B to Redefine Security for Modern Applications “The round brings Oligo to $80 million in total funding in less than two years. The platform delivers rapid time-to-value through easy deployment, uses less than 1% of CPU resources, and can scale to thousands of nodes.” | press | 2026-07-02 |
| s6 | SecurityWeek: Oligo Raises $50M to Tackle Application Detection and Response “Founded in 2022, the Tel Aviv-based Oligo provides deep application inspection at runtime. Leveraging the eBPF technology that runs sandboxed code in privileged contexts.” | press | 2026-06-24 |
| s7 | GovInfoSecurity: Oligo Security Raises $50M to Tackle App Detection, Response “Czerninski's technology has demonstrated success with Fortune 500 and Fortune 100 companies. He previously spent more than six years leading the Israeli Military's cyber research team. We've uncovered many attack campaigns that we published. Oligo, founded in 2022, employs 68 people.” | press | 2026-06-24 |
| s8 | TechCrunch: Oligo raises $28M to secure open source libraries at runtime “Co-founded by Nadav Czerninski (CEO), Gal Elbaz (CTO) and Avshalom Hilu (CPO), Oligo works across clouds and supports all major modern programming languages.” | press | 2026-06-24 |
| s9 | Greenfield Partners: Why We Invested in Oligo Security “Oligo's breakthrough lies in its runtime-first approach, leveraging eBPF, a lightweight, kernel-level sensor enhanced with their proprietary IP. Best friends since childhood and veterans of Unit 8200.” | press | 2026-06-24 |
| s10 | Calcalist: Oligo Security raises $50M Series B to stop cloud application attacks in real time “The three are childhood friends and officers who graduated from the cyber units of IDF military intelligence (8200, 81) and Matzov.” | press | 2026-06-24 |
| s11 | Oligo Security: Runtime Vulnerability Management customer testimonials “We were able to reduce our vulnerability numbers over 99% by limiting our focus to those with an executed vulnerable function with Oligo. Robert Kugler, Head of Security & Compliance, Cresta.” | official | 2026-06-24 |
| s12 | Oligo Security: Proving Compliance at Runtime “Customers like Sage and Cato Networks have used this runtime context to reduce vulnerability backlogs by up to 90% and 70%, respectively. Oligo addresses this with a non-intrusive sensor that maintains near-zero overhead (under 0.5% CPU).” | official | 2026-06-24 |
| s13 | Oligo Security homepage: trust attestation probe “The Runtime Security Platform for the AI Era” | official | 2026-07-02 |
| s14 | Oligo Security /trust page: HTTP 404 trust-center probe “The page you are looking for doesn't exist or has been moved” | official | 2026-07-02 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | Oligo Security: Runtime AI Solutions Overview “By seeing directly into the Linux kernel, it can detect all your application's library and function executions.” | official | 2026-07-08 |
| s2 | Oligo Security: Cloud Application Detection and Response “CADR is runtime detection and response built to instantly identify application and software supply chain exploitation ... It deploys in hours and can be maintained by a single security professional in just a few hours per week.” | official | 2026-07-08 |
| s3 | Oligo Security: AI Runtime Defense “Oligo monitors all actions and code generated by agents, protecting against agents that go rogue and attackers that hijack them.” | official | 2026-07-08 |
| s4 | Oligo Security: Runtime Vulnerability Management “We were able to reduce our vulnerability numbers over 99% ... with Oligo. Robert Kugler, Head of Security & Compliance, Cresta ... Naor Penso, FICO ... Alex Nayshtut, Cellebrite ... Yaron Blachman, CTO & CISO, OpenWeb.” | official | 2026-07-08 |
| s5 | Oligo Security: Proving Compliance at Runtime “Leading compliance frameworks, such as FedRAMP, PCI DSS 4.0, and SOC 2 ... Consumes under 0.5% CPU and less than 500MB of RAM ... Customers like Sage and Cato Networks have used this runtime context to reduce vulnerability backlogs by up to 90% and 70%, respectively.” | official | 2026-07-08 |
| s6 | SecurityWeek: Oligo Raises $50M to Tackle Application Detection and Response “Founded in 2022, the Tel Aviv-based Oligo provides deep application inspection at runtime ... Leveraging the eBPF technology that runs sandboxed code in privileged contexts.” | press | 2026-07-08 |
| s7 | GovInfoSecurity: Oligo Security Raises $50M to Tackle App Detection, Response “Oligo Security, founded in 2022, employs 68 people ... Oligo's runtime security technology has already demonstrated real-world success with Fortune 500 and Fortune 100 companies ... Czerninski, who previously spent more than six years leading the Israeli Military's cyber research team.” | press | 2026-07-08 |
| s8 | TechCrunch: Oligo raises $28M to secure open source libraries at runtime “Co-founded by Nadav Czerninski (CEO), Gal Elbaz (CTO) and Avshalom Hilu (CPO), Oligo works across clouds and supports all major modern programming languages, including Python, Go, Java and Node.” | press | 2026-07-08 |
| s9 | Greenfield Partners: When Shift Left Isn't Always Right, Why We Invested in Oligo Security “Best friends since childhood and veterans of Unit 8200, Israel's elite cybersecurity unit ... Oligo Security Co-Founders (Left to Right): Gal Elbaz - CTO, Nadav Czerninski - CEO, Avshalom Hilu - CPO.” | press | 2026-07-08 |
| s10 | Calcalist: Oligo Security raises $50M Series B to stop cloud application attacks in real time “has raised $50 million in a Series B round, bringing the company's total investments to $80 million in less than two years. The round was led by Greenfield Partners ... The three are childhood friends and officers who graduated from the cyber units of IDF military intelligence (8200, 81) and Matzov.” | press | 2026-07-08 |
| s11 | Oligo Security: About, leadership and advisers “Gal Elbaz Co-founder & CTO Nadav Czerninski Co-founder & CEO Avshalom Hilu Co-founder & CPO ... Shlomo Kramer CEO Cato Network Moti Gindi Former Chief Strategy Officer Microsoft Security Adi Sharabani Former CTO Snyk” | official | 2026-07-08 |
| s12 | Oligo Security trust-attestation probe 2026-07-08: footer badges, /trust, /security, /compliance, and trust. and security. subdomains, none found “The /trust, /security, and /compliance paths return HTTP 404, the trust. and security. subdomains do not resolve, and the served homepage footer shows no compliance badge, as of 2026-07-08.” | official | 2026-07-08 |
This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.
The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.
Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.
The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.
To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.
Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.
Do not republish its content or share access without the operator's permission.