Security Experts:

Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybersecurity Funding

Firmware Security Startup Binarly Raises $3.6 Million in Seed Funding

Firmware security company Binarly on Wednesday announced that it has raised $3.6 million in a seed funding round led by Westwave Capital and Acrobator Ventures.

Several angel investors also took part in the seed round, which will help the startup speed up R&D initiatives, expand its engineering team, and scale adoption of its technologies.

Firmware security company Binarly on Wednesday announced that it has raised $3.6 million in a seed funding round led by Westwave Capital and Acrobator Ventures.

Several angel investors also took part in the seed round, which will help the startup speed up R&D initiatives, expand its engineering team, and scale adoption of its technologies.

The Los Angeles, California-based Binarly has developed a SaaS platform designed for firmware threat identification and response. The company says its solutions are used by security teams to identify vulnerabilities and malicious firmware modifications. Its platform can also be used to gain firmware SBOM visibility without access to source code.

Binarly has also created technology for firmware vulnerability management and supply chain protection.

“The current approach in the industry is to detect risks related to the firmware by leveraging the current version number of the firmware update against a public database of vulnerabilities and threats. This leads to firmware supply chain failures because known vulnerabilities that are not associated with a certain version number of a firmware release will not be detected, thus keeping the ‘doors’ open for an attacker,” said Alex Matrosov, co-founder and CEO of Binarly.

Claudiu Teodorescu, Binarly co-founder and CTO, added, “Assessing the impact of a known firmware-based vulnerability in a customer environment, at scale, is a problem without a viable solution. We have developed the FwHunt technology that adds semantic context around a known vulnerability to ensure detection while reducing false positives.”

Binarly has identified firmware vulnerabilities in products from major manufacturers such as AMI, AMD, Dell, Fujitsu, HP, Insyde, Intel and Lenovo. The startup claims to have identified more than 100 new flaws this year alone.

Last year, the company’s researchers described new attack methods that could be used to “blind” cybersecurity products.

Related: 16 Vulnerabilities Found in Firmware of HP Enterprise Devices

Related: High-Severity UEFI Vulnerabilities Patched in Dell Enterprise Laptops

Related: Enterprise Device Security Company Eclypsium Raises $13 Million

Written By

Eduard Kovacs (@EduardKovacs) is a contributing editor at SecurityWeek. He worked as a high school IT teacher for two years before starting a career in journalism as Softpedia’s security news reporter. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Click to comment

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this webinar to learn best practices that organizations can use to improve both their resilience to new threats and their response times to incidents.

Register

Join this live webinar as we explore the potential security threats that can arise when third parties are granted access to a sensitive data or systems.

Register

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Management & Strategy

SecurityWeek examines how a layoff-induced influx of experienced professionals into the job seeker market is affecting or might affect, the skills gap and recruitment...

Cybersecurity Funding

SecurityWeek investigates how political/economic conditions will affect venture capital funding for cybersecurity firms during 2023.

Risk Management

The supply chain threat is directly linked to attack surface management, but the supply chain must be known and understood before it can be...

Funding/M&A

More than 450 cybersecurity-related mergers and acquisitions were announced in 2022, according to an analysis conducted by SecurityWeek

Funding/M&A

Twenty-one cybersecurity-related M&A deals were announced in December 2022.

Management & Strategy

Industry professionals comment on the recent disruption of the Hive ransomware operation and its hacking by law enforcement.

Funding/M&A

Forty cybersecurity-related M&A deals were announced in January 2023.