Morningstar RAVEN.IO Secures $20 Million to Combat Cyberattacks with Innovative Runtime Security
Article Content
- •RAVEN.IO raised $20 million to enhance its runtime application security platform.
- •The platform is deployed in 11 enterprise customers, focusing on insurance and finance sectors.
- •Traditional CVE-based defenses are becoming obsolete due to the rapid rise of AI-generated exploits.
RAVEN.IO, a cybersecurity firm, announced a $20 million funding round to enhance its application security platform that operates at runtime. The funding, led by Norwest and Elron Ventures, aims to accelerate product development and expand market reach in the U.S. The company's technology analyzes code behavior in real time, moving away from traditional reliance on known vulnerabilities (CVEs) and external defenses. RAVEN.IO's platform is currently deployed in 11 enterprise customers, primarily in the insurance and financial sectors, which are highly vulnerable to application layer and supply chain attacks. The rise of AI-generated exploits has created a significant gap in traditional security measures, necessitating a new approach to threat detection. RAVEN.IO's method generates unique behavioral fingerprints for application execution paths, allowing for immediate detection of malicious activity. This shift in focus is critical as Time-to-Exploit (TTE) for vulnerabilities approaches zero, rendering conventional defenses inadequate.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…