Business Anthropic's IPO Prospectus Puts Dario Amodei's 2025 Pay at $18 Million — Mid-Pack Among Big-Tech CEOs Productivity Atlassian Puts GPT-6 Across Jira, Confluence and Rovo as Its 3,000-Developer Codex Bet Goes Company-Wide Security Hadrian Raises $40 Million to Stress-Test the New Attack Surface: AI Agents That Can Be Talked Into Leaking Data Business Vinci Raises $250 Million at $1.5 Billion to Automate the Physics Behind Chip Design News NVIDIA Ships a 30-Billion-Parameter Open Telco Model as 89% of Operators Call Open AI Core Strategy Coding Assistants Day 2 of OpenAI's 28-Day Shipping Streak Brings Four Updates at Once: Free Auto-Review, Simpler API Tiers, ChatGPT Meeting Notes and a Public Decisions API Claude Claude Moves Into Google Docs, Sheets and Slides: Public Beta Brings In-Place Editing to All Paid Plans Security Anthropic's Revamped Cyber Verification Program Has Surfaced 129,000 Vulnerabilities — and Now Loosens the Leashes in Three Tiers Business Anthropic's IPO Prospectus Puts Dario Amodei's 2025 Pay at $18 Million — Mid-Pack Among Big-Tech CEOs Productivity Atlassian Puts GPT-6 Across Jira, Confluence and Rovo as Its 3,000-Developer Codex Bet Goes Company-Wide Security Hadrian Raises $40 Million to Stress-Test the New Attack Surface: AI Agents That Can Be Talked Into Leaking Data Business Vinci Raises $250 Million at $1.5 Billion to Automate the Physics Behind Chip Design News NVIDIA Ships a 30-Billion-Parameter Open Telco Model as 89% of Operators Call Open AI Core Strategy Coding Assistants Day 2 of OpenAI's 28-Day Shipping Streak Brings Four Updates at Once: Free Auto-Review, Simpler API Tiers, ChatGPT Meeting Notes and a Public Decisions API Claude Claude Moves Into Google Docs, Sheets and Slides: Public Beta Brings In-Place Editing to All Paid Plans Security Anthropic's Revamped Cyber Verification Program Has Surfaced 129,000 Vulnerabilities — and Now Loosens the Leashes in Three Tiers

Hadrian Raises $40 Million to Stress-Test the New Attack Surface: AI Agents That Can Be Talked Into Leaking Data

Hadrian Raises $40 Million to Stress-Test the New Attack Surface: AI Agents That Can Be Talked Into Leaking Data

Dutch offensive-security startup Hadrian has raised $40 million in a round backed by Forgepoint Capital International and SmartFin, bringing total funding to roughly $55 million. The company says the money will push its Atlas and Nova platforms from external scanning into internal networks — and into the threat class growing fastest: AI agents manipulated into disclosing data they should not.

Hadrian, an Amsterdam-based offensive security company founded in 2021, has raised $40 million in a round backed by Forgepoint Capital International and SmartFin, bringing its total funding to roughly $55 million — a figure that includes an initial seed round of $11.73 million led by HV Capital in June 2022. The company employs about 105 people.

Its existing products, Atlas and Nova, use AI for continuous exposure testing and on-demand penetration testing — effectively running attacker logic against a customer's external footprint on a schedule, rather than once a year. The new capital funds expansion across EMEA and the US plus further engineering and research.

The strategic shift the money pays for is from outside the perimeter to inside it. Co-founder and CEO Rogier Fischer said the goal is to move beyond "we can get into system X" toward mapping what an attacker does next: "We can show you not just, 'Hey, we can get into any system X, Y, Z,' but rather, 'Hey, we can get into system X, and then we can propagate inside your network to that database that has all your customers in there.'" That view requires customer permission and, unlike external scanning, installing agents or routers inside the network — a genuine deployment change, not just a product checkbox.

The most interesting part of the thesis is qualitative rather than technical. Fischer argued the threat landscape is shifting away from purely technical vulnerabilities toward manipulating automated workflows, and described a case in which a customer used agentic workflows for customer support and the company was able to influence the agent into inadvertently sharing sensitive information about other customers. "It's really about deceiving our agents, deceiving technology," he said. Testing for that class of failure requires dynamic engagement with live endpoints rather than static scanning, which is precisely where an AI red team has an edge over a checklist.

The same agents are also being pointed at remediation. Hadrian plans to build agents that implement fixes — adjusting firewall configurations, correcting misconfigurations — rather than only reporting them, which matters most for third-party software customers cannot patch at the source. Fischer said the company expects to reach profitability in the coming year, and framed the round as a buffer rather than a war chest: "You don't want to over-raise because you might end up with a lot of cash in the bank that you're not going to use and dilute a lot more."

The wider read: penetration testing has long been a services business priced in consultant-days, and AI-driven continuous testing is turning it into software. As enterprises give agents real permissions over internal systems, "can your agent be socially engineered into handing over data" is becoming a board-level question — and, for vendors like Hadrian, a new product category to sell.

Comments (0)

Log in to join the discussion

Log In

No comments yet