Analysis
Horizon3 closed a $250 million Series E at a $2 billion valuation, roughly quadrupling its prior mark, to scale NodeZero, its autonomous penetration-testing platform, as AI tooling increasingly lets attackers scan for and exploit vulnerabilities far faster than the periodic, human-run security audits most enterprises still depend on. The round is one of the largest pure-play cybersecurity raises of the year and a clean signal of how much investor appetite has built for AI-native defensive tooling specifically.
The timing lines up almost too neatly with a separate disclosure this week: Palo Alto Networks' Unit 42 found a China-based operator had wired DeepSeek into an open-source agent framework and run a largely autonomous attack campaign against more than 460 internet-facing systems from a single Telegram instruction. That's precisely the kind of AI-accelerated offense Horizon3's pitch is designed to counter -- if attackers can scan and exploit at machine speed, defenders need continuous, autonomous testing rather than a quarterly pen-test engagement that's stale the day it's delivered.
Horizon3 isn't alone in this financing wave. Groundcover raised a $100 million Series C at a $500 million valuation rebuilding observability around AI-agent consumers; Glow raised $180 million across three rounds in roughly a year to reach a $1.2 billion valuation protecting endpoints against AI-native threats; Onyx Security raised $113 million four months after its stealth launch at a roughly $640 million valuation governing what autonomous agents do once inside enterprise systems. Horizon3's $2 billion mark makes it the largest of this cohort so far, and its continuous-offense-simulation angle is a distinct fourth layer alongside observability, endpoint and in-system governance.
What's notable about the round relative to its peers is the multiple: quadrupling from roughly $500 million to $2 billion in a single round is an unusually steep re-rating even by this cycle's standards, reflecting how urgently enterprise buyers are treating AI-accelerated attack surfaces right now rather than a longer, more measured growth curve.
For security-focused investors, the read-through is that AI-security financing has moved well past the observability-and-endpoint layer into offense-simulation as its own category, and that category is attracting some of the largest single checks in cybersecurity this year.
What to Watch
What to watch: whether Horizon3's valuation holds up against the next wave of AI-security financings, and whether any of Groundcover, Glow or Onyx move to add continuous offensive-testing capability of their own now that Horizon3 has shown the category can support a $2 billion mark.