AegisAI emerged from stealth on September 10, 2025, with a $13 million seed round co-led by Accel and Foundation Capital. The startup, founded by former Google security leaders Cy Khormaee and Ryan Luo, is building an AI-based platform to detect and respond to email threats. That seed round is no longer its latest funding: on July 23, 2026, AegisAI announced a $36 million Series A led by Battery Ventures, bringing its disclosed total to $49 million.
What AegisAI announced at launch
The September 2025 announcement combined AegisAI’s emergence from stealth with its $13 million seed financing. Accel and Foundation Capital co-led the round. The company said it planned to use the funding for product development, engineering hires and go-to-market expansion. SecurityWeek reported the launch and seed round, while TechCrunch covered the founders and launch.
Founders and company background
Cy Khormaee and Ryan Luo founded AegisAI after security work at Google. The company describes their experience as including work related to Safe Browsing, reCAPTCHA and Web Risk; this is the founders’ background, not an indication that AegisAI is a Google product or endorsed by Google. AegisAI’s current company page lists San Francisco as its headquarters, whereas 2025 coverage described it as New York-based. The locations refer to different reporting at different times, not necessarily a contradiction about where the company was based at launch. AegisAI’s company page
Why the company is targeting email
Email attacks can exploit trust and context rather than rely on an obviously malicious file or newly registered domain. A convincing message might impersonate an executive or supplier, come from a compromised legitimate account, or send a recipient to a phishing page hosted on a reputable service. Business email compromise (BEC) often aims to induce a payment, change bank details or obtain credentials through persuasion rather than malware.
#1 Best Overall
- SPEED-OPTIMIZED, CROSS-PLATFORM PROTECTION: World-class antivirus security and cyber protection for Windows, Mac OS, iOS, and Android. Organize and keep your digital life safe from hackers.
- ADVANCED THREAT DEFENSE: Your software is always up-to-date to defend against the latest attacks, and includes: complete real-time data protection, multi-layer malware, ransomware, cryptomining, phishing, fraud, and spam protection, and more.
- SUPERIOR PRIVACY PROTECTION: including a dedicated safe online banking browser, microphone monitor, webcam protection, anti-tracker, file shredder, parental controls, privacy firewall, anti-theft protection, social network protection, and more.
- TOP-TIER PERFORMANCE: Bitdefender technology provides near-zero impact on your computer’s hardware, including: Autopilot security advisor, auto-adaptive performance technology, game/movie/work modes, OneClick Optimizer, battery mode, and more
A useful distinction is whether an attack depends on a technical payload. Payload-based attacks use a malicious link, file, exploit or code. Payload-less attacks rely primarily on deception, such as a fraudulent payment instruction or an impersonation designed to obtain account access. AI-generated text can make personalized lures easier to produce, but that does not make conventional defenses obsolete. Authentication checks, reputation systems, malware scanning, sandboxing, secure email gateways and staff awareness remain important layers. AegisAI’s pitch is that analysis of intent, sender behavior and social context can add coverage where individual signals look legitimate. TechCrunch’s launch coverage
How AegisAI says its platform works
AegisAI describes a set of autonomous agents that analyze email and related indicators, including message language, sender identity and behavior, links, attachments, metadata and QR codes. The system is intended to flag phishing, malware, impersonation and BEC, then support actions such as quarantine or remediation and provide security teams with a threat report. In the company’s description, specialized models and agents investigate suspicious messages and infer whether their intent or identity context is malicious; this is a vendor account of the product, not independent proof that it detects every threat.
Rank #2
- SPEED-OPTIMIZED, CROSS-PLATFORM PROTECTION: World-class antivirus security and cyber protection for Windows, Mac OS, iOS, and Android. Organize and keep your digital life safe from hackers.
- ADVANCED THREAT DEFENSE: Your software is always up-to-date to defend against the latest attacks, and includes: complete real-time data protection, multi-layer malware, ransomware, cryptomining, phishing, fraud, and spam protection, and more.
- SUPERIOR PRIVACY PROTECTION: including a dedicated safe online banking browser, microphone monitor, webcam protection, anti-tracker, file shredder, parental controls, privacy firewall, anti-theft protection, social network protection, and more.
- TOP-TIER PERFORMANCE: Bitdefender technology provides near-zero impact on your computer’s hardware, including: Autopilot security advisor, auto-adaptive performance technology, game/movie/work modes, OneClick Optimizer, battery mode, and more
- Connect: The platform ingests email data through APIs for Google Workspace or Microsoft 365.
- Analyze: Its agents examine message content and related signals, including links, attachments and sender context.
- Respond: Depending on configuration, the system can quarantine or remediate suspicious messages and surface an explanation for security staff.
- Adapt: AegisAI says the system updates its threat analysis as attack patterns change and can share intelligence across a protected environment.
The company advertises API-based deployment without changing MX records, adding hardware or changing network routing. Its homepage says setup can take about five minutes, while its FAQ gives an administrator estimate of under 30 minutes. These are company estimates, not independently measured installation times; tenant permissions, identity configuration, governance review and response-policy approvals can extend deployment. AegisAI’s product site
What changed after the 2025 launch
By July 2026, AegisAI was also promoting Vanguard, an agent for investigating threats beyond the inbox. The company says Vanguard can follow suspicious links and attachments, inspect cloaked pages and weaponized documents, and handle adversarial CAPTCHA challenges before returning a threat report. The Series A announcement said the funding would help accelerate Vanguard’s general availability; it should not be read as evidence that every capability was generally available to all customers at launch. AegisAI’s Series A announcement
Free tools Windows power users keep installed
One-click scans. No signup required.
Rank #3
- ALL-IN-ONE SCAM DETECTION – Texts, emails, videos, and QR codes all get checked automatically. Sorting real from fake stops being your job.
- KEEP SCAMMERS OUT OF YOUR WALLET – Every click is no longer a gamble. Our scam detection spots suspicious texts, email scams, SMS phishing, and fake alerts before you click.
- QR CODE SCANNING – Point the app at any code and see where it actually leads before you scan it.
- DEEPFAKE DETECTION – When a video sounds like someone you know but isn't, you hear it from us first.
- ON-DEMAND CHECKS – Got a message you're unsure about? Run it through the app and know in seconds, wherever it came from.
Funding and company status as of August 18, 2026
| Date | Round | Amount | Investors |
|---|---|---|---|
| September 2025 | Seed | $13 million | Accel and Foundation Capital, co-leads |
| July 23, 2026 | Series A | $36 million | Battery Ventures, lead; Accel and Foundation Capital also participated |
| Disclosed total by July 23, 2026 | — | $49 million | Combined disclosed rounds |
The Series A announcement said the proceeds would support expansion of the company’s autonomous defense agents, Vanguard’s path to general availability and enterprise go-to-market. The $13 million figure describes the 2025 launch round, not AegisAI’s latest funding. The Series A announcement; TechCrunch’s coverage
What the performance claims establish—and what they do not
AegisAI markets its platform as reducing false positives by up to 90% compared with traditional solutions, alongside claims of always-on agents and real-time adaptation. The “up to” figure is a company claim, not an independently established average or guarantee. The cited public coverage does not provide a test methodology, sample size, evaluation period, comparison products or a definition of false positive that would let a buyer reproduce the result. A reduction in false alarms also needs to be assessed alongside detection misses and the consequences of incorrectly quarantining legitimate business mail.
Rank #4
- THREAT DETECTION – Stay one step ahead. Suspicious links, risky sites, viruses, and scams, caught automatically before they reach you.
- PERSONAL INFO PROTECTION – Keep your personal info safer. Identity monitoring watches for your exposed info and tells you what to do about it.
- SECURE CONNECTIONS – Just a few easy clicks, and we'll automatically protect your info on public Wi‑Fi, every time you connect.
- GUIDED ACTION – Know what matters and what to do next. Clear alerts and simple guidance make it easy to take action.
- MORE THAN ANTIVIRUS – Scam protection, identity monitoring, VPN, web protection, and antivirus work together to protect you, all in one place.
For an enterprise buyer, the relevant evidence is performance in a representative environment: which threats were detected, which were missed, how many legitimate messages were disrupted, and how results compare with existing Microsoft, Google or third-party controls. AI-based analysis can add useful signals, but modern incumbent products also use machine learning, behavioral analytics, sandboxing and cloud threat intelligence. “AI-native” alone does not demonstrate superior protection.
Customer traction and evidence
In July 2026, AegisAI said it had deployments at dozens of customers and named Mesh, LangChain and Lokker; current company materials also list Spacetil. The company and customers have described examples involving AI-generated phishing, BEC and an attack routed through compromised Salesforce infrastructure. These examples indicate the kinds of incidents the product is intended to address, but customer anecdotes and vendor-reported outcomes are not controlled comparative tests. TechCrunch’s Series A coverage; AegisAI customer and product materials
The Tool Desk
Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Outbyte Driver Updater FREEScan for outdated or missing drivers - takes under a minuteDriver Scan →Best Value
- SPEED-OPTIMIZED, CROSS-PLATFORM PROTECTION: World-class antivirus security and cyber protection for Windows, Mac OS, iOS, and Android. Organize and keep your digital life safe from hackers.
- ADVANCED THREAT DEFENSE: Your software is always up-to-date to defend against the latest attacks, and includes: complete real-time data protection, multi-layer malware, ransomware, cryptomining, phishing, fraud, and spam protection, and more.
- SUPERIOR PRIVACY PROTECTION: including a dedicated safe online banking browser, microphone monitor, webcam protection, anti-tracker, file shredder, parental controls, privacy firewall, anti-theft protection, social network protection, and more.
- TOP-TIER PERFORMANCE: Bitdefender technology provides near-zero impact on your computer’s hardware, including: Autopilot security advisor, auto-adaptive performance technology, game/movie/work modes, OneClick Optimizer, battery mode, and more
What buyers should establish before granting mailbox access
An API-connected email defense avoids a mail-routing change, but it still creates a meaningful access and data-processing relationship. Security and procurement teams should establish the permission scope, information handling and operational boundaries before deployment.
- Which mailboxes and message fields can the integration read, and can access be limited to selected users or groups?
- Are messages, attachments, prompts, embeddings or model outputs retained? Where are they processed and stored, and are they used to train shared models?
- What retention, deletion, encryption and data-processing terms apply, especially for regulated or privileged communications?
- What happens during a service outage: does mail protection fail open or fail closed, and how are delayed or quarantined messages recovered?
- Can analysts inspect the evidence behind a classification, appeal a false positive and track policy or model changes?
- Does the product cover outbound BEC and data exfiltration, or primarily incoming threats? How does it handle shared mailboxes, aliases, distribution lists and forwarding rules?
- How are links and attachments investigated outside the inbox, and what isolation controls apply when Vanguard visits websites or downloads files?
- What are the detection and false-positive results in a representative evaluation, including the baseline, message volume, period and miss rate?
AegisAI says it is SOC 2 Type II certified and encrypts data in transit and at rest; buyers should review current supporting documentation and contractual commitments rather than treating a public statement as a substitute for their own diligence. The company does not display public pricing on the cited product pages and directs prospects to book a demo, so cost, contract minimums, implementation charges, support terms and whether Vanguard is separately priced need to be confirmed with sales. AegisAI’s product site
Where AegisAI may—and may not—fit
The publicly advertised integrations focus on Google Workspace and Microsoft 365. That is relevant for cloud-first organizations using those platforms, but the public materials cited here do not establish equivalent support for other mail systems or on-premises deployments. A company with strict requirements against sending mailbox content to an outside processor, or one needing archiving, e-discovery, continuity or outbound data-loss prevention, should assess those needs separately.
Comparison should be based on architecture and evidence rather than the label “AI.” Microsoft Defender for Office 365 and Google Workspace provide native controls within their respective ecosystems; Proofpoint and Mimecast offer broader email-security and resilience portfolios; Abnormal Security and Sublime Security are closer specialist comparisons for cloud email defense. Buyers should compare integration scope, policy controls, independent or customer-validated detection evidence, response workflow, data terms and total cost against the protections they already license. Microsoft Defender for Office 365; Google Workspace security; Proofpoint email security; Mimecast email security; Abnormal Security; Sublime Security
What the funding signals
The two rounds show investor backing for AegisAI’s plan to build an AI-focused email-security business, with the later Series A financing its expansion beyond the original launch product. Funding is not evidence of security efficacy or product-market fit by itself. For buyers, the meaningful test remains performance on their own mail, sound privacy and access controls, reliable response behavior and a cost that makes sense alongside existing defenses.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




