Cybersecurity's Vulnerability Tsunami: Why Hackuity Just Landed $19M

ยท
Listen to this article~5 min

Hackuity raises $19M to tackle the 'vulnerability tsunami' โ€” AI-powered discovery is finding 10,000+ flaws in weeks, and 99% remain unpatched. Here's how this Lyon startup plans to help.

### The Vulnerability Tsunami Is Here โ€” And It's Not Slowing Down Imagine waking up to 10,000 new security flaws on your network. That's not a nightmare โ€” it's the reality AI-powered discovery tools are creating. Anthropic's Claude Mythos Preview alone found over 10,000 high or critical severity vulnerabilities in under two months. And here's the kicker: 99% of them are still unpatched. That's what Hackuity calls the "vulnerability tsunami." And it's exactly why this Lyon-based startup just raised $19 million (โ‚ฌ16 million) to help enterprises stay afloat. ### What Hackuity Actually Does Founded in 2018, Hackuity isn't just another cybersecurity tool. It's an AI-powered Vulnerability Operations Center (VOC) โ€” think of it as a command center that takes all the chaotic security alerts flooding your systems and turns them into clear, prioritized action items. Here's how it works in plain English: - It pulls data from over 130 different security tools - It identifies which vulnerabilities actually matter (not just the loudest ones) - It automates remediation at machine speed - It helps security teams focus on what's truly urgent The platform now serves more than 6,000 users, protects over 2 million assets, and manages 1 billion findings. Customers include big names like ENGIE and BPCE. ### The Funding Round That Signals a Shift The $19 million round was led by Forgepoint Capital International, with existing investors Bright Pixel, Bpifrance, and Seventure Partners chipping in. That brings Hackuity's total funding to $38 million (โ‚ฌ32 million). Patrick Ragaru, CEO and co-founder of Hackuity, didn't mince words: "Hackuity was founded on a simple conviction: the volume of vulnerabilities would outpace any human's capacity to respond. Mythos simply validates that thesis, by making the scale of the tsunami impossible to ignore." He added that what they built before the wave arrived is exactly what enterprises need now โ€” an agentic platform that automates prioritization and drives remediation at machine speed. ### Why This Matters for the Broader Market Hackuity's raise isn't happening in a vacuum. European cybersecurity and AI-security startups have been on a tear in 2026. Before this announcement, EU-Startups tracked roughly $430 million (โ‚ฌ395.4 million) across similar rounds. Add Hackuity's $19 million, and that total jumps to about $447 million (โ‚ฌ411 million). Some notable rounds this year include: - Qevlar AI (Paris) โ€” $28 million (โ‚ฌ25.8 million) for agentic security operations - Escape (Paris) โ€” $16.7 million (โ‚ฌ15.4 million) for vulnerability discovery and remediation - MokN (France) โ€” $14 million (โ‚ฌ12.9 million) for credential security - Bynario (Milan) โ€” $2.3 million (โ‚ฌ2.1 million) for vulnerability management - NeuralTrust โ€” $18.7 million (โ‚ฌ17.2 million) seed round for AI-agent security - Cloudsmith โ€” $66.8 million (โ‚ฌ61.5 million) Series C for software supply-chain security - Exein (Rome) โ€” $254 million (โ‚ฌ234 million) for Physical AI cybersecurity France is clearly a hotspot, with Qevlar AI, Escape, and MokN all raising funds this year. Forgepoint Capital International, which led Hackuity's round, also invested in Qevlar AI โ€” a sign they're doubling down on this space. Damien Henault, Managing Director and Partner at Forgepoint, explained the bigger picture: "Cybersecurity has entered a new era where AI is accelerating both attack and defense. Organizations can no longer rely on traditional vulnerability management approaches to keep pace with the speed and scale of modern threats." He added that Hackuity is building the operational platform enterprises need to turn overwhelming amounts of security data into clear, actionable decisions. ### The Bottom Line Security teams are drowning in data. They're getting thousands of alerts a day, and most of them are noise. Hackuity's bet is that AI can cut through that noise and tell you what actually needs fixing โ€” right now. With this fresh $19 million, the company plans to double down on product innovation, AI capabilities, and international expansion across Europe and Asia. If the vulnerability tsunami keeps growing, they might just be the life raft enterprises need.