Onit Security, an agentic exposure management firm, has raised $11 million in seed funding. The round was led by Hetz Ventures and Brightmind Partners, with angel investor participation.
The company emerges from stealth to tackle the overwhelming backlog of vulnerabilities that plague organizations. This backlog, often exceeding 100,000 issues, allows critical exposures to remain unaddressed for months.
The impetus for Onit Security's founding stemmed from a real-world incident where a state-sponsored Iranian attack exploited a known vulnerability in co-founder Ofer Amitai's previous company. This vulnerability was lost within a massive backlog, highlighting the critical failure of existing prioritization systems.
Traditional vulnerability management is a losing battle. Attackers can exploit flaws almost instantly, while security teams average 32 days for remediation, with nearly half of vulnerabilities unresolved after a year. With the projected surge in Common Vulnerabilities and Exposures (CVEs) to over 1 million by 2030, this problem is set to intensify.
This delay is largely due to manual processes involved in identifying asset ownership, assessing business context, and coordinating fixes across disparate teams. These bottlenecks create blind spots that attackers readily exploit.
