Press release
Endor Labs Receives Strategic Investment from Citi Ventures
Endor Labs, a leader in software supply chain security, announced a strategic investment from Citi Ventures. In a further validation of Endor Labs' unique approach to securing the software supply chain, this comes less than a year after the company received $70M in oversubscribed Series A financing from Lightspeed Venture Partners (LSVP), Coatue, Dell Technologies Capital, Section 32 and more than 30 industry-leading CEOs, CISOs and CTOs.Endor Labs was founded in 2022 by industry veterans and serial entrepreneurs Varun Badhwar and Dimitri Stiliadis to solve a massive yet largely neglected market need in application security. With the goal of shipping products faster, development teams rely on more and more dependencies as they develop their applications. These dependencies include Open Source Software (OSS), LLMs, containers, code repositories and arbitrary tools in CI/CD pipelines, which can introduce risks that development and security teams have no visibility into.
Today, application security teams spend countless hours investigating which risks should be prioritized, while developers drown in waves of uncontextualized security alerts. Endor Labs surfaces meaningful, reachable risks across dependencies in the software development lifecycle, helping teams get the evidence they need to fix only what matters.
Since its inception, Endor Labs has quickly gained traction with Fortune 500 enterprises as well as emerging cloud-native companies. Endor Labs was named a finalist at the 2023 RSA Conference Innovation Sandbox and 2023 Black Hat Startup Spotlight, a SINET16 Innovator Award Winner, and has been cited several times as one of the Best Places to Work.
"Financial institutions employ tens of thousands of developers, and often outpace technology companies with innovation and shipping new applications," said Endor Labs CEO and co-founder, Varun Badhwar. "Software supply chain security is now a board-level concern for these organizations, because ignoring it or getting it wrong not only exposes the organization to significant risk, but costs hundreds of millions in lost developer productivity. Endor Labs already serves some of the largest financial institutions in the US, and our work with Citi gives us even better insights into how to solve problems at this scale."
Citi Ventures, which has a presence in regions ranging from Palo Alto to Singapore and Tel Aviv, invests in the category-defining startups helping revolutionize financial services.
"Citi runs one of the largest software development organizations in the world," said Clark Smith, Head of Engineering and Architecture for CISO & Managing Director at Citi. "At this scale, lost productivity due to false positive alerts is a compounding issue. Endor Labs integrates seamlessly into the developer workflow and helps pinpoint supply chain risks that may affect our business."
"Endor Labs represents the next major innovation in application security," said Matt Carbonara, Head of Enterprise Tech Investing at Citi Ventures. "Their platform represents a technological step change in how vulnerabilities are analyzed. For a long time now, developers have had to manually analyze vulnerabilities to assess if they are exercised in production. We believe that the reachability analysis provided by Endor Labs will be a must-have technology for enterprises, focusing developers' efforts on only the most critical and reachable vulnerabilities and saving them countless hours. We're extremely excited to become investors and partner with Varun and team."
Meet Endor Labs at Black Hat August 6 in Las Vegas: https://www.endorlabs.com/events/black-hat-usa-2024
Try the Endor Labs Software Supply Chain Security Platform free for 30 days:
Select Better Open Source Software
Select better open source dependencies with 150+ checks and scoring based on security, legal, popularity, activity, and quality. Defend against OWASP OSS Top 10 Risks such as typosquatting, malicious and abandoned dependencies.
Prioritize Open Source Vulnerabilities (SCA)
Cut over 90% of vulnerability noise with function-level reachability analysis across both direct and transitive dependencies. Codify highly customizable policies to provide developers feedback in PR comments, break builds in CI, or simplify notify them via Jira tickets.
Secure Repositories and CI/CD Pipelines
Gain visibility into security tool coverage across your CI/CD pipelines and continuously monitor the security posture of source code repositories. Detect repo and GitHub Actions misconfigurations, best practices, and risks with over 50 out-of-the-box policies, including coverage for CIS best practices for GitHub.
Trust What You Ship with Artifact Signing
Ensure the authenticity of software artifacts with a single GitHub action. Artifact signing is a hassle-free alternative to Sigstore that confirms code provenance and lack of tampering. Cryptographic artifact signatures are a powerful tool to enable strong admission control and traceability to support effective security, quality, and compliance programs.
Ensure compliance across the SDLC
Detect legal and licensing risk, and centrally create, manage, and analyze SBOM & VEX. Prioritize applicable vulnerabilities for PCI-DSS and FedRamp and accelerate compliance with CIS, NIST, SSDF, SLSA, EO 14028, and more.
444 High St Ste 300, Palo Alto, CA 94301
The pace and complexity of software development is rapidly intensifying. Developers are trying to keep up by maximizing reuse of code (internally developed as well as open source), adopting microservices architectures, and relying on a vast array of third party tools and services to automate bits and pieces of the CI-CD process. However, this can quickly sprawl and become untenable, only causing more headaches for development and security teams in the long term. Our mission is to deliver the impossible - create secure software supply chains that actually make developers more productive, rather than drowning in useless alerts. For more information, visit https://www.endorlabs.com.
This release was published on openPR.
Permanent link to this press release:
Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.
You can edit or delete your press release Endor Labs Receives Strategic Investment from Citi Ventures here
News-ID: 3582024 • Views: …
More Releases from Endor Labs
GitHub Advanced Security Integrates Endor Labs Software Composition Analysis for …
GitHub Advanced Security now integrates Endor Labs Software Composition Analysis (SCA); Development teams can dismiss up to 92% of low-risk dependency security alerts, and focus on greatest threats and new capabilities
Endor Labs, the leader in open source software security, announced a critical partnership with GitHub, the platform for software developers to create and share code, that makes it easier than ever for application security teams and developers to accurately…

Endor Labs Helps Organizations Identify and Select Secure Open Source Artificial …
Endor Scores for AI Models ranks available options for security, popularity, quality and activity; in step forward for AI governance, developers can now start clean with AI models
Endor Labs, the leader in open source software security, today announced Endor Scores for AI Models, a unique capability that makes it easier than ever for companies to identify the most secure open source AI models currently available on Hugging Face, the popular…
Endor Labs Named a CRN 2023 Stellar Startup
Endor Labs, creator of the Code and Pipeline Governance Platform, has been named to the CRN 2023 Stellar Startups list in the application development category. This annual list, previously known as CRN Emerging Vendors, recognizes fast-rising technology manufacturers committed to delivering leading-edge solutions that propel innovation and growth in the IT channel.
Jennifer Follett, vice president of U.S. Content and Executive Editor of CRN at The Channel Company, said: "With…

Endor Labs Receives Intellyx Digital Innovation Award
Endor Labs, creator of the Code Governance platform helping development and security teams maximize the use of open source software (OSS), has been named a winner of the 2023 Intellyx Digital Innovator Award. Created by Intellyx, an industry analysis and advisory firm focused on digital transformation, it recognizes technology providers who make it through the company's rigorous briefing selection process - leading-edge vendors driving enterprise digital…
More Releases for Citi
Citi Packaging Expands Custom Packaging Solutions for Businesses Across the U.S
Citi Packaging, a leading U.S.-based provider of premium custom packaging, is revolutionizing the industry with high-quality, affordable, and fully customizable packaging solutions tailored to businesses of all sizes. Specializing in custom mailer boxes, rigid boxes, and eco-friendly packaging, Citi Packaging is committed to helping brands enhance their unboxing experience and establish a stronger market presence.
Meeting the Growing Demand for Custom Packaging
With the rise of e-commerce and brand-focused packaging strategies, businesses…
Bike Sharing Market is Booming Worldwide | Jump Bikes, Citi Bike, Nextbike
Advance Market Analytics added research publication document on Worldwide Bike Sharing Market breaking major business segments and highlighting wider level geographies to get deep dive analysis on market data. The study is a perfect balance bridging both qualitative and quantitative information of Worldwide Bike Sharing market. The study provides valuable market size data for historical (Volume** & Value) from 2018 to 2023 which is estimated and forecasted till 2028*. Some…
Blaqsbi Citi: A New Beacon and Legacy for the next Generation
In the spirit of economic freedom and empowerment a group of professional men and women, comprised of engineers, lawyers, and marketing experts, have teamed up to embark on a project to create a 21st Century city version of the booming Greenwood District in Tulsa Oklahoma known as “Black Wall Street.”
The team believes this is possible because black spending power remains strong even as the racial wealth gap continues to widen.…
Kore.ai Names Former Citi CAO Don Callahan to its Board
ORLANDO, Fla., August 13, 2019 — Kore.ai, a leading conversational AI platform provider, today announced that former Citigroup Chief Administrative Officer (CAO) Daniel (Don) Callahan has joined its Board of Directors as a strategic advisor and independent board member with immediate effect.
“Don Callahan is a transformative leader with broad experience in driving strategic change across large global organizations, as well as dealing with multiple stakeholders in local and national governments…
CITI Partners with IIM LUCKNOW on “Demystifying Banking” Workshop
In the first of a workshop series to engage with students to prepare them for the changing demands of the banking industry, Citi India partnered with IIM Lucknow for a “Demystifying Banking” weekend workshop conducted by senior business leaders from Citi for 60 select students from the institute.
The first of the workshop series, to build capability amongst young potential talent to prepare them for the dynamic banking world, was…
BRIXTON PARK goes to Citi Property Investors
Three logistics properties have now changed hands under the name BRIXTON PARK. A Luxembourg SPV (special purpose vehicle) controlled by Citi Property Investors (CPI) has acquired the buildings from Deka Immobilien GmbH for a middle-sized double-digit million figure with the intention of investing in high-yielding logistics properties in the German market. The properties previously belonged to the real estate assets of the WestInvest I open-ended public fund. Colliers Trombello Kölbel…