Funding/M&A

Fortinet Acquires AI Security Company Virtue AI

Fortinet will use Virtue AI technology to enhance its AI security portfolio, including for AI models, applications, and agentic systems.

Cybersecurity giant Fortinet on Monday announced the acquisition of AI security company Virtue AI.

The enterprise security and governance platform made by Virtue AI provides automated testing, real-time protection, and compliance oversight specifically built for AI models, conversational applications, and autonomous agents.  

One of the platform’s components conducts automated red-teaming to uncover vulnerabilities using over 100 proprietary attack algorithms across hundreds of attack vectors and risk categories. 

For autonomous systems, the testing environment simulates dozens of enterprise scenarios to evaluate agent tool usage, system access, and multi-step execution workflows. 

During live operations, the platform applies real-time runtime guardrails across text, code, audio, video, and image processing. It also actively monitors agents to block unsafe actions before execution, scans generated code and tools for vulnerabilities, and enforces customizable security policies. 

Fortinet said the acquisition of Virtue AI enables it to enhance its AI security offering, including for models, applications, and agentic systems. Specifically, Fortinet will leverage Virtue’s agentic system red teaming, agent protection and governance, continuous AI validation, and real-time guardrail capabilities. 

Advertisement. Scroll to continue reading.

Financial terms of the deal have not been disclosed, but Fortinet noted that the amount paid was immaterial to its business.

Virtue AI raised $30 million in seed and Series A funding in 2025. 

“AI is fundamentally changing enterprise computing, and security must evolve just as quickly,” said Ken Xie, founder and CEO of Fortinet. “Virtue AI’s technology will advance our vision for continuous AI assurance, helping customers govern and protect AI systems throughout their lifecycle while operating them confidently at enterprise scale.”

SecurityWeek’s cybersecurity M&A tracker has cataloged more than 240 deals to date this year. 

Related: Cyera Acquiring Oasis Security in $1 Billion Deal

Related: Cybersecurity M&A Roundup: 21 Deals Announced in July 2026

Related: Bank of America to Acquire Cybersecurity Firm MDSec

Related: Okta to Acquire Identity Threat Detection Firm Permiso

Related Content

Vulnerabilities

CVE-2026-104286 is a critical-severity path traversal vulnerability that could allow attackers to write arbitrary files to the system.

M&A Tracker

The transaction is part of the $4.1 billion deal in which Accenture acquired a majority stake in Dragos in an OT cybersecurity push.

Malware & Threats

The hackers staged numerous scripts for reconnaissance and CVE probing, along with brute-force utilities and privilege escalation tools.

Data Protection

Financials have not been disclosed, but the estimated cost is in the tens of millions of dollars.

Funding/M&A

Significant cybersecurity M&A deals announced by Brinqa, Cribl, Echo, Fortinet, Kiteworks, Palo Alto Networks, and Visa.

Malware & Threats

The high-severity, unauthenticated vulnerability tracked as CVE-2025-25249 was patched in January 2026.

Network Security

The critical, unauthenticated bugs allow attackers to bypass authentication and proxy a user’s browser traffic.

M&A Tracker

Significant cybersecurity M&A deals announced by Barracuda, CrowdStrike, Cyera, Okta, Palo Alto Networks, and Qualcomm.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version