The Venture Codex Logo

The Venture Codex

Wallarm

188 King St Unit 508, San Francisco, CA, 94107, United States

Overview

Wallarm offers a unified platform for API and agentic AI security that provides real-time blocking, a complete API inventory, and patented AI/ML-based abuse detection. The company recently introduced Agentic AI Protection to monitor AI interactions and protect against prompt injection, jailbreaks, API logic abuse, and other AI-specific attacks. Wallarm has also launched a Penetration Testing Service for Agentic AI Systems and published an API Honeypot Report revealing growing API attack trends. The firm released a next‑gen Security Edge product to deliver resilience, observability, and performance for API security and plans to extend its offering to further protect APIs in the AI era. Wallarm closed 2024 with record growth, net revenue retention of 134% across enterprise accounts, and nearly zero churn. Its platform is deployed in complex enterprise environments across financial services, manufacturing, technology, and other industries. Wallarm provides an AI-powered application security platform that automates protection and security testing for websites, microservices and APIs running on public and private clouds. Its AI engine generates application-specific WAF rules and vulnerability security tests. The technology secures hundreds of enterprises and SaaS companies. Led by co-founder and CEO Ivan Novikov with Johan Nordstrom and Renata Budko in senior roles, the company plans to accelerate growth of its Application Security Platform and build go-to-market infrastructure and services using the new funding. Wallarm is based in South San Francisco, California. Post-financing the company has raised a total of $10.8M. Wallarm builds AI-driven web-application security that learns about hacker attacks and replays them safely so systems can become more robust. The team consists of ex-white hat hackers who previously helped Russian companies such as Mail.ru, Yandex and Parallels to block threats. The company graduated from Y Combinator’s S16 batch and re-appeared in the U.S. after its earlier activity. Wallarm claims it became profitable this summer. It serves about 100 paying clients, including enterprises such as Automattic, Parallels, Wargaming and Yandex. The product is positioned as enterprise-focused protection against application-level attacks using attack replay and AI-based detection. Wallarm is a web security company built by ex‑white‑hat hackers that provides a next‑generation platform to protect online businesses from application‑level attacks. The startup is releasing its first product and is transitioning from a service model (the team has provided white‑hat security audits since 2009) to a product business model. Its platform is built on top of nginx, designed for very high loads, and supports Ruby, PHP, .NET, Perl, Python and other popular web platforms while integrating with common bug trackers. Wallarm says the product "learns" from application and user behavior, can protect against 0‑day attacks, and reduces noise so security teams see only attacks that represent real threats. The company plans partnerships with managed service providers, public and private clouds, PaaS/IaaS providers, monitoring and log management systems, and cloud IPS/IDS services. Runa Capital’s $500,000 seed will be used to develop the product and support the shift to a product‑led business.

Total raised
$66M
Funding rounds
4
Latest round
Series C
Latest activity
Jul 2025

Industries

  • Artificial Intelligence (AI)
  • Compliance
  • Cyber Security
  • DevOps
  • Generative AI
  • Risk Management
  • SaaS
  • Security
Visit website

Recent funding

  1. Series C

    Jul 2025

    $55M

  2. Series A

    Oct 2018

    $8M

  3. Equity

    Dec 2016

    $2M

  4. Seed

    Nov 2013

    $1M

Team