Hackuity raises $19M to tackle the 'vulnerability tsunami' โ AI-powered discovery is finding 10,000+ flaws in weeks, and 99% remain unpatched. Here's how this Lyon startup plans to help.
### The Vulnerability Tsunami Is Here โ And It's Not Slowing Down
Imagine waking up to 10,000 new security flaws on your network. That's not a nightmare โ it's the reality AI-powered discovery tools are creating. Anthropic's Claude Mythos Preview alone found over 10,000 high or critical severity vulnerabilities in under two months. And here's the kicker: 99% of them are still unpatched.
That's what Hackuity calls the "vulnerability tsunami." And it's exactly why this Lyon-based startup just raised $19 million (โฌ16 million) to help enterprises stay afloat.
### What Hackuity Actually Does
Founded in 2018, Hackuity isn't just another cybersecurity tool. It's an AI-powered Vulnerability Operations Center (VOC) โ think of it as a command center that takes all the chaotic security alerts flooding your systems and turns them into clear, prioritized action items.
Here's how it works in plain English:
- It pulls data from over 130 different security tools
- It identifies which vulnerabilities actually matter (not just the loudest ones)
- It automates remediation at machine speed
- It helps security teams focus on what's truly urgent
The platform now serves more than 6,000 users, protects over 2 million assets, and manages 1 billion findings. Customers include big names like ENGIE and BPCE.
### The Funding Round That Signals a Shift
The $19 million round was led by Forgepoint Capital International, with existing investors Bright Pixel, Bpifrance, and Seventure Partners chipping in. That brings Hackuity's total funding to $38 million (โฌ32 million).
Patrick Ragaru, CEO and co-founder of Hackuity, didn't mince words: "Hackuity was founded on a simple conviction: the volume of vulnerabilities would outpace any human's capacity to respond. Mythos simply validates that thesis, by making the scale of the tsunami impossible to ignore."
He added that what they built before the wave arrived is exactly what enterprises need now โ an agentic platform that automates prioritization and drives remediation at machine speed.
### Why This Matters for the Broader Market
Hackuity's raise isn't happening in a vacuum. European cybersecurity and AI-security startups have been on a tear in 2026. Before this announcement, EU-Startups tracked roughly $430 million (โฌ395.4 million) across similar rounds. Add Hackuity's $19 million, and that total jumps to about $447 million (โฌ411 million).
Some notable rounds this year include:
- Qevlar AI (Paris) โ $28 million (โฌ25.8 million) for agentic security operations
- Escape (Paris) โ $16.7 million (โฌ15.4 million) for vulnerability discovery and remediation
- MokN (France) โ $14 million (โฌ12.9 million) for credential security
- Bynario (Milan) โ $2.3 million (โฌ2.1 million) for vulnerability management
- NeuralTrust โ $18.7 million (โฌ17.2 million) seed round for AI-agent security
- Cloudsmith โ $66.8 million (โฌ61.5 million) Series C for software supply-chain security
- Exein (Rome) โ $254 million (โฌ234 million) for Physical AI cybersecurity
France is clearly a hotspot, with Qevlar AI, Escape, and MokN all raising funds this year. Forgepoint Capital International, which led Hackuity's round, also invested in Qevlar AI โ a sign they're doubling down on this space.
Damien Henault, Managing Director and Partner at Forgepoint, explained the bigger picture: "Cybersecurity has entered a new era where AI is accelerating both attack and defense. Organizations can no longer rely on traditional vulnerability management approaches to keep pace with the speed and scale of modern threats."
He added that Hackuity is building the operational platform enterprises need to turn overwhelming amounts of security data into clear, actionable decisions.
### The Bottom Line
Security teams are drowning in data. They're getting thousands of alerts a day, and most of them are noise. Hackuity's bet is that AI can cut through that noise and tell you what actually needs fixing โ right now.
With this fresh $19 million, the company plans to double down on product innovation, AI capabilities, and international expansion across Europe and Asia. If the vulnerability tsunami keeps growing, they might just be the life raft enterprises need.