-

Horizon3.ai’s NodeZero®, the World’s Most Experienced AI Hacker, Drives 102% ARR Growth

Best-in-class sales and operational efficiency, with more than 5,200 organizations worldwide relying on NodeZero

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3.ai, the AI-native proactive security leader, today announced strong FY2026 growth, with annual recurring revenue (ARR) increasing 102% year over year. This momentum is driven by rapid enterprise and MSSP adoption, as organizations turn to NodeZero to identify and eliminate exploitable attack paths in production environments.

More than 5,200 organizations globally, from Fortune 10 enterprises to local school districts, hospitals, manufacturers, financial institutions, defense contractors, and government agencies, rely on NodeZero to continuously validate and harden their defenses in production environments.

Key business and operational metrics include:

  • 125% Net Dollar Retention, reflecting expansion from pentesting into broader exposure management use cases
  • 94% Gross Dollar Retention, demonstrating strong customer retention and increasing testing frequency
  • 32% of Q4 bookings originated by channel partners

Approximately 70% of customers are serviced through Managed Security Service Providers (MSSPs), one of the company’s fastest-growing segments. MSSPs are using NodeZero to deliver continuous validation services while expanding into higher-value offerings such as remediation, threat hunting, SOC optimization, and advisory services.

“MSSPs play a critical role, especially in international markets where local relationships and trust matter,” said Snehal Antani, CEO and Co-Founder of Horizon3.ai. “They allow us to scale globally while enabling partners to build high-margin service offerings on top of NodeZero.”

“Vulnerability prioritization has never been more critical,” Snehal continued. “AI is accelerating vulnerability research, and defenders are overwhelmed deciding what not to fix. Pentesting remains the most effective way to identify what is actually exploitable and focus remediation on what matters.”

NodeZero: Built Through Real-World Execution

NodeZero stands apart as the world’s most experienced AI hacker, having autonomously executed more than 225,000 production-safe pentests across enterprise environments. These are not simulated or lab-based exercises, but real-world assessments across hospitals, manufacturing environments, financial services networks, and critical infrastructure.

NodeZero continuously chains multi-domain attack paths across web applications, Active Directory, cloud environments, and identity systems, exposing exploitable weaknesses that traditional tools and manual pentesting approaches miss.

“NodeZero has operated at a scale and in environments that others simply have not,” Snehal added. “You earn the right to operate in production by delivering results safely and consistently. That experience compounds over time and creates a structural advantage.”

Operating in a Rapidly Evolving Threat Environment

This growth comes as organizations face escalating real-world threats, including recent Horizon3.ai guidance on Iranian cyber activity targeting critical infrastructure sectors. NodeZero enables organizations across the Defense Industrial Base, financial services, utilities, telecommunications, and manufacturing sectors to identify exploitable weaknesses in production environments and disrupt attack paths before nation-state and other adversaries can act.

“The future isn’t humans reacting to AI-driven attacks. It’s AI fighting AI, with humans directing by exception,” said Antani. “We built the most experienced AI hacker first, and we are now using that experience to help organizations defend themselves at machine speed.”

About Horizon3.ai

Horizon3.ai’s AI-native Proactive Security Platform is trusted by four of the Fortune 10, the world’s largest banks, top global pharmaceutical and semiconductor manufacturers, critical infrastructure operators around the globe, and the U.S. Defense Industrial Base to proactively find, fix, and verify exploitable vulnerabilities to continuously fortify cyber defenses and improve cyber resilience. The fastest-growing cybersecurity company in America (Inc. 5000, Deloitte Fast 500), Horizon3.ai was founded by a mix of U.S. Special Operations veterans and industry experts and is headquartered in San Francisco.

Follow Horizon3.ai on LinkedIn and X.

Contacts

Media Contact
Stephen Gates
press@horizon3.ai

Horizon3.ai


Release Versions

Contacts

Media Contact
Stephen Gates
press@horizon3.ai

Social Media Profiles
More News From Horizon3.ai

Horizon3 Accelerates Partner-Led Growth with $20 Million Investment

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3, the AI-native proactive security company, today announced a $20 million investment in its global partner ecosystem. The investment expands channel leadership, enablement, strategic alliances, and go-to-market programs so partners can continue delivering security their customers can prove, while building high-margin practices of their own. "Cybersecurity is a last-mile trust business," said Snehal Antani, Co-Founder and CEO of Horizon3. "The technology m...

Horizon3 Raises $250M Series E at $2B+ Valuation to Lead the “AI vs. AI” Cybersecurity Era

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3, the AI-Native Proactive Security Company behind NodeZero®, the World’s Best AI Hacker™, today announced a $250 million Series E at a valuation of more than $2 billion, tripling its valuation from $650 million at Series D in just over a year. The oversubscribed round was co-led by existing investors NightDragon and NEA, with participation from seven new investors and five returning backers. The capital underscores accelerating global demand for safe, aut...

Horizon3's NodeZero® AI Hacker Extends Production-Safe Autonomous Pentesting to Web Applications

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3 today announced the expansion of its NodeZero® platform with AI-powered web application pentesting capabilities. NodeZero, the world’s most experienced AI hacker, can now autonomously and safely test web applications the way real attackers operate, chaining vulnerabilities from application abuse through credential theft, lateral movement, cloud pivots, and sensitive data exposure. Web applications have never been more exposed or more critical to secure....
Back to Newsroom