Runtime security startup Oligo Security has raised $60 million in new funding to accelerate product innovation and expand global go-to-market operations. The round, announced today, comes as attackers increasingly use AI to find vulnerabilities and build exploits at machine speed, making runtime protection a critical line of defense for production systems.
How Oligo's runtime approach works
Oligo's software sits alongside applications in production. A sensor built on eBPF, the Linux kernel feature, tracks which library functions a workload actually calls. Most vulnerabilities flagged by scanners are never called at all, and Oligo tells customers they can leave those alone. The ones that do get called can be blocked mid-exploit at the application layer, without killing the container or the process behind it.
That last capability arrived in April with Runtime Exploit Blocking, which defends against classes of attack techniques rather than individual CVEs. A single rule can cover zero-day and n-day exploits that share a pattern. Oligo also pitches the approach as a way to buy time through virtual patching between patch cycles.
Interest in runtime defenses has climbed since unauthorized access to Anthropic's restricted Claude Mythos model sharpened concern about how quickly vulnerability discovery and exploit development can be automated.
AI changes the economics of exploitation
"AI has fundamentally changed the economics of exploitation," said Nadav Czerninski, co-founder and chief executive of Oligo. "When attackers can find vulnerabilities and build exploits at machine speed, runtime becomes the only place you can definitively understand true risk and stop real attacks without breaking production."
This shift is directly relevant for professionals looking to stay ahead of threats. A dedicated AI for IT & Development resource can help teams understand how machine-speed attacks change defense strategies.
Growth, partnerships, and funding details
Oligo put annual recurring revenue growth at 300% for the past year. Valuation has more than doubled since Greenfield Partners led a $50 million Series B in January 2025, though the company gave no dollar figure for either.
In February, AWS named Oligo as the exclusive AI runtime security partner for the extended plan of AWS Security Hub. In June, Oligo joined Palantir's FedStart program to speed its path to FedRAMP High and Department of Defense Impact Level 5 authorization - a prerequisite for selling into federal agencies and defense customers.
Brad Arkin, a cybersecurity adviser and former chief trust officer at Salesforce, said in the announcement that runtime is "the one place where security teams can accurately determine what's truly exploitable."
Backing the round were Ballistic Ventures, Canon Capital, Greenfield Partners, Lightspeed Management, Red Dot Capital Partners and TLV Partners, along with investor Eyal Waldman, who co-founded Mellanox Technologies. Oligo first surfaced publicly in February 2023 with $28 million from Lightspeed, Ballistic and TLV. The company puts its funding to date at $140 million.
Why this matters for IT and Development professionals
Traditional vulnerability scanning produces noise - most CVEs never lead to real exploitation. Oligo's runtime approach cuts that noise by identifying only the code paths actually in use, then blocking exploitation in real time. For development and IT teams, this means less time triaging false positives and more confidence that fixes can be scheduled without leaving production exposed. As AI accelerates exploit development, understanding runtime defenses will become a core skill for security-minded engineers. An AI Learning Path for Cybersecurity Analysts can help build that expertise.
Your membership also unlocks: