Endor Labs
Edit

Endor Labs

http://endorlabs.com/
Last activity: 23.05.2026
Active
Categories: AIAutomationDevOpsSecuritySoftware
Dependency lifecycle management that makes it way easier for teams to select, secure and maintain OSS.
Followers
52
Website visits
27.4K /mo.
Mentions
50
Location: United States
Employees: 51-200
Total raised: $188M
Founded date: 2021

Investors 4

Funding Rounds 3

DateSeriesAmountInvestors
23.04.2025Series B$93M-
03.08.2023Series A$70M-
11.10.2022Seed$25M-

Mentions in press and media 50

DateTitleDescription
23.05.2026Valid certificates, stolen accounts: how attackers broke npm's last trust signalOn May 19, 633 malicious npm package versions passed Sigstore provenance verification. They were cleared by the system because the attacker had generated valid signing certificates from a compromised maintainer account. Sigstore worked exac...
20.05.2026GitHub confirms 3,800 internal repos stolen through poisoned VS Code extension as supply chain worm hits Microsoft’s Python SDKGitHub confirmed on May 20 that a poisoned VS Code extension installed on an employee’s device gave attackers access to roughly 3,800 internal repositories at the Microsoft-owned code storage and authorship platform. The threat group TeamPC...
12.05.2026Protect your enterprise now from the Shai-Hulud worm and npm vulnerability in 6 actionable stepsAny development environment that installed or imported one of the 172 compromised npm or PyPI packages published since May 11 should be treated as potentially compromised. On affected developer workstations, the worm harvests credentials fr...
06.04.2026Open-Source Software Malware Surging: Endor LabsMalware in open source software is no longer a fringe threat–it’s accelerating at an unprecedented rate. In 2025 alone, more than 90% of open source vulnerability (OSV) malware advisories were reported, a 14x increase over the past two year...
01.04.2026Hackers slipped a trojan into the code library behind most of the internet. Your team is probably affectedAttackers stole a long-lived npm access token belonging to the lead maintainer of axios, the most popular HTTP client library in JavaScript, and used it to publish two poisoned versions that install a cross-platform remote access trojan. Th...
07.03.2026Агент под прикрытием: Как один заголовок-промпт на GitHub помог взломать 4000 компьютеров17 февраля 2026 года в репозитории npm была опубликована версия cline@2.3.0. С виду – ничего особенного: исполняемый файл был идентичен предыдущему байт в байт. Лишь в файле package.json притаилась одна лишняя строчка: "postinstall&quo...
07.03.2026Endor Labs launches AURI to secure AI-driven coding-
06.03.2026Endor Labs launches free tool AURI after study finds only 10% of AI-generated code is secureEndor Labs, the application security startup backed by more than $208 million in venture funding, today launched AURI, a platform that embeds real-time security intelligence directly into the AI coding tools that are reshaping how software ...
12.02.2026Endor Labs Acquires Autonomous PlaneEndor Labs, a Palo Alto, CA-based provider of AI-native application security solution, acquired Autonomous Plane, a Palo Alto, CA-based developer of cloud-native application security and container reachability solutions. The amount of the d...
12.02.2026BriefCatch Acquires WordRakeBriefCatch, a Washington, D.C.-based provider of a legal-writing and expert editing platform, acquired WordRake, a Seattle, Washington-based developer of patented editing software for clarity and concision. The amount of the deal was not di...
Show more

Reviews 0

Sign up to leave a review

Sign up Log In