ACT Security, a Tel-Aviv startup founded in 2025, has raised $60 million to address the challenging landscape of cyber vulnerabilities exacerbated by AI. The firm focuses on minimizing 'access sprawl' in cloud environments, where excessive permissions create exploitable vulnerabilities. With projections suggesting 59,000 new CVEs in 2026, the rapid discovery of vulnerabilities outpaces traditional patching efforts by major vendors like Oracle and Microsoft, which announced record patches recently.
Act Security's solution does not directly patch vulnerabilities; instead, it restricts access paths to prevent misuse by attackers, enhancing compliance with standards like NIST and HIPAA. This approach is essential as around 97% of cloud access permissions remain unused, creating potential security risks.