Armadin
-
Kevin Mandia, Travis Lanham, Evan Peña and David Slater
-
2025
-
Palo Alto, CA
-
51-200 Employees
-
$189.9M, Seed and Series A
Overview
Armadin is an AI-native offensive-security company whose autonomous "attacker swarm" hunts for real, exploitable kill chains around the clock.
Key Technology Insights
The platform deploys a swarm of AI agents attacks like a genuine adversary, reasoning and adapting rather than following scripts, to map and rank the kill chains that reach critical assets. It then pinpoints which single fix closes the most paths, with an edample of one MFA change shown to close twelve at once. Integrations with CrowdStrike and Palo Alto let it auto-deploy compensating controls, and three safety modes govern how far it can act. At present the platform is early growth, with an on-premise option under discussion for government.
Industry Application
The lead use is continuous red teaming for critical infrastructure and regulated industries, where it replaces periodic pen tests. Beyond finding kill chains, it separates vulnerable from genuinely exploitable code and auto-deploys compensating controls. In one demonstration, the swarm penetrated a network serving 75% of the world's airports.
Strategic Perspective
Armadin’s main advantage lies in genuinely AI-native attacks that customers treat as real incidents, reinforced by Kevin Mandia's standing in the field and the platform's integrated remediation. The most immediate opportunity lies across critical infrastructure and government.

