AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing

Date:

AI-Powered Spear Phishing: A Growing Cybersecurity Challenge

Hackers are increasingly leveraging artificial intelligence to orchestrate large-scale cyberattacks, with email emerging as a prime vector for these threats. AI’s ability to rapidly gather and synthesize personal information—including details about coworkers, ongoing projects, and recent travel—enables attackers to craft highly convincing and authentic-looking messages. This sophisticated targeting, known as spear phishing, poses a significant challenge to traditional email security systems.

Introducing AegisAI: A New Frontier in Email Security

Recognizing the limitations of existing rule-based email protection, former Google security experts Cy Khormaee and Ryan Luo, who contributed to safe browsing and reCAPTCHA technologies, co-founded AegisAI. Launched less than a year ago, the startup harnesses AI agents designed to detect spear phishing by analyzing emails much like a human would—spotting subtle irregularities that evade conventional “if-then” logic filters.

With over a decade of experience combating email hacks, Khormaee and Luo understood that legacy systems are too slow and rigid to counter AI-enhanced attacks effectively. Instead, their AI-driven agents perform dynamic investigations of each message, scrutinizing content beyond surface-level indicators to identify malicious intent.

Rapid Adoption and Strong Investor Confidence

AegisAI’s innovative approach has attracted a growing customer base, including notable companies such as crypto payments firm Mesh, AI developer LangChain, and privacy compliance platform Lokker. This traction recently enabled the startup to secure $36 million in a Series A funding round led by Battery Ventures, alongside existing investors Accel and Foundation Capital. The infusion brings AegisAI’s total funding to $49 million, underscoring strong market confidence in its technology.

According to Khormaee, “AI-powered attacks bypass existing controls more than half the time now, which means they’re almost twice as effective as they used to be. They’ve researched you, they understand everything about you, and they’re targeting attacks that are perfectly bespoke to you.” This personalized nature of AI-driven spear phishing necessitates equally sophisticated defenses.

Advanced Detection Capabilities Beyond Traditional Systems

One of AegisAI’s standout features is its ability to detect threats that conventional email security systems often miss. For example, its AI agents can identify malicious PDF attachments that initially appear legitimate, including those protected with passwords or CAPTCHA challenges—tactics commonly used to trick standard spam filters. This depth of inspection significantly raises the bar in protecting users against increasingly deceptive attacks.

Battery Ventures’ general partner Dharmesh Thakker, motivated by the surge in email attacks, sought to invest in a company that could leverage AI defensively against AI-driven threats. “The bad guys are using email to attack us using AI at a much faster pace than we can keep up with,” Thakker told TechCrunch. “Defending against that is going to be a number one priority for a lot of companies.”

Competitive Landscape and Future Outlook

AegisAI is part of a growing cohort of startups applying AI to scrutinize the context of incoming emails to prevent fraud and impersonation. For instance, Lightspeed-backed Ocean is also challenging established players such as Proofpoint, Mimecast, and newer entrants like Abnormal Security. However, with leadership that includes veterans who helped secure Gmail—the world’s most widely used email platform—AegisAI is well positioned to become a leading force in next-generation email security.

Looking ahead, AegisAI plans to expand beyond email protection into broader data security domains. Khormaee envisions that “building customized, highly advanced agents that can do investigations is going to [determine] who becomes the next dominant security company.” This strategy highlights the increasing importance of adaptive, intelligent defense mechanisms in the evolving cybersecurity landscape.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

Source: Here

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Share post:

Popular

More like this
Related