档案库 · AI 与模型 · 产品决策 · 2025
AegisAI押注AI代理而非规则来阻止AI鱼叉式网络钓鱼;前谷歌高管筹集3600万美元
谷歌安全高管创立AegisAI,押注基于规则的过滤器无法捕捉AI制作的电子邮件;Battery领投3600万美元A轮表示认可
AegisAI
做的是什么生意
AegisAI is a San Francisco email-security startup whose autonomous AI agents analyze every inbound message for intent and identity, catching AI-crafted spear phishing, malicious PDFs and account-takeover attacks that rule-based filters miss.
启动资金:$49M total: $36M Series A led by Battery Ventures (July 2026), with existing backers Accel and Foundation Capital participating
起因
Cy Khormaee and Ryan Luo, who helped build reCAPTCHA, Safe Browsing and Web Risk inside Google's core security group, founded AegisAI in 2025 after a decade of preventing email hacks. They concluded AI had changed the attack itself, and launched the product publicly in September 2025.
经过
By July 2026 AegisAI had dozens of customers across fintech and tech, including crypto payments company Mesh, AI developer platform LangChain, and privacy firm Lokker. Research it presented at the M3AAWG conference — drawn from 20,000+ malicious emails — showed AI spear phishing growing from 2.8% to 13.9% of observed phishing during 2025, with the attacks reaching inboxes at nearly twice the rate of human-written ones. In March 2026 it introduced Vanguard, a threat-hunting agent that follows suspicious links and attachments onto the open web.
结果
Still running. The July 2026 Series A funds scaling its roster of defense agents and moving Vanguard toward general availability; the founders plan to expand beyond email into data security.
背景
AegisAI是一家电子邮件安全初创公司,由赛·科马伊和瑞安·罗于2025年创立,他们是前谷歌安全高管,曾负责reCAPTCHA、安全浏览和Web风险。他们的赌注是:AI制作的鱼叉式网络钓鱼使得基于规则的防御过时,因此防御必须由阅读每条消息的AI代理来完成,就像人类调查员一样。
该公司于2025年9月公开发布,并建立了一个自主代理网络,分析每条入站邮件背后的意图和身份,捕捉无懈可击、通过所有技术检查的攻击。它声称这种方法将误报率比传统工具降低多达90%,并引用了Lokker客户案例,其中代理捕获了通过供应商受损的Salesforce系统路由的攻击。
AegisAI在M3AAWG会议上展示的研究(来自超过20000封恶意电子邮件)显示,AI生成的鱼叉式网络钓鱼在2025年初占观察到的钓鱼邮件的2.8%,到年底增长到13.9%,其中近73%到达收件箱的AI邮件来自真实、被入侵的账户。这一趋势是该产品的证据基础:攻击者现在只需一杯咖啡的价格就能制作定制的诱饵。
2026年7月,AegisAI获得了由Battery Ventures领投的3600万美元A轮融资,Accel和Foundation Capital参与,公开发布不到一年,总融资达到4900万美元。这笔资金用于扩大其防御代理,并将Vanguard(一个跟踪可疑链接和附件到开放网络的威胁狩猎代理)推向普遍可用性;创始人计划下一步扩展到数据安全领域。
这件事要成立,得有什么
- 这个故事是一个清晰的由市场验证理论的案例:创始人看到AI改变了攻击,建立了不同的检测模型,并在一年内获得客户和3600万美元融资的认可。
- M3AAWG数据——2025年观察到的钓鱼邮件从2.8%增长到13.9%——为这一赌注提供了具体、可引用的证据,而不是模糊的感觉。
- 吸引力是具体且可验证的:数十位指名客户(Mesh、LangChain、Lokker),筹集了4900万美元,并且TechCrunch和SiliconANGLE同日报道。
- 这是一个可转移的教训,适用于任何面对现有厂商的初创公司:当威胁类别改变时,匹配过去的模式是负担,而不是资产。
可借鉴之处
当AI改变攻击本身时,现有厂商的检测逻辑就成了负担:切入点是不同的推理模型——调查意图的代理,而不是匹配模式的规则。
后续进展
截至2026年9月2日,AegisAI正在A轮后扩展:它继续签约电子邮件安全客户,正在将Vanguard(其于2026年3月推出的威胁狩猎代理)推向普遍可用,并计划扩展到数据安全领域。Khormaee的既定论点是,定制的、高度先进的调查代理将决定哪家公司成为下一个主导安全厂商。
资料来源
- AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
- AegisAI banks $36M as AI spear-phishing surges fivefold in a year
发现哪里写错了?告诉我们。
轮到你了
你刚读完一家。说说你在做什么,看看谁在赌同一件事。
免费账号 · 3 次免费提问 · 不用绑卡