Tel Aviv-based Oligo Security, which offers security and observability tools to find and prevent open-source vulnerabilities, raised $28M in seed and Series A
Oligo Security, a Tel Aviv-based startup that focuses on runtime application security and observability to detect …
Context & Ripple Effects
Oligo's $50M Series B and its later $60M raise that brought total funding to $140M both trace back to this seed-and-Series A moment, when the company bet on runtime application security rather than pre-deployment scanning.
The raise also planted a flag in an increasingly crowded Tel Aviv niche: Ox Security had just taken $34M for software supply chain security, Sweet Security would follow with a $33M Series A for cloud runtime tools, and Act Security emerged from stealth with $60M across two rounds.
First-order effects
- Oligo gets the capital to build out its runtime detection and observability product for enterprises monitoring applications in production.
- Oligo pairs the funding with vulnerability research — disclosing RCE flaws in TorchServe and tracking tens of thousands of exposed instances — using findings as proof its runtime approach catches real attacks.
Second-order effects
- Fellow Tel Aviv runtime-security startups Sweet Security, Act Security, and supply-chain-focused Ox Security now compete with a funded rival for the same enterprise budgets and security engineering talent.
- Enterprises evaluating open-source risk gain a new buying category — runtime observability — forcing incumbent scanner vendors to justify static analysis alone against tools that see exploitation attempts live.
Third-order effects
- If the funding pattern holds through Oligo's later rounds, application security consolidates around production-runtime telemetry, making open-source component risk something monitored continuously rather than audited at build time.
- Tel Aviv emerges as a structural hub for this category, with multiple venture-backed runtime and access-surface security firms drawing on the same talent pool and buyer base.
The trend: Application security is shifting from build-time scanning of open-source dependencies to funded runtime observability platforms, with Tel Aviv startups leading the category's capital formation.