Mandia: AI Attacks Find Logic Flaws, Not Code Bugs
Armadin CEO Kevin Mandia said AI attackers exploit logic flaws, not code defects, in an a16z YouTube interview. Armadin has found over 90 zero-days since January 2026.
Kevin Mandia, founder of Mandiant and CEO of AI security startup Armadin, said in an a16z YouTube interview that AI-based attacks find logic flaws rather than code defects. He described how attackers use AI to exploit these weaknesses.
Armadin provides automated security agents designed to help white-hat security professionals defend against black-hat hackers. The company typically notifies a customer's CISO within 48 hours after finding a remote code execution (RCE) vulnerability in the DMZ.
Since January 2026, Armadin has found more than 90 zero-day vulnerabilities in customer environments, all in production systems at Fortune 500 companies, according to digitaltoday.co.kr.
In March 2026, Armadin raised $189.9 million in seed and Series A funding led by Accel, with participation from GV, Kleiner Perkins, Menlo Ventures, 8VC, Ballistic Ventures and In-Q-Tel. The company was co-founded by Travis Lanham, a former Google Cloud security engineer; Evan Peña, a former Mandiant executive; and David Slater, a Google security operations engineer.
Mandia also recalled that when Anthropic's Mythos AI model came out, people were amazed it could scan source code and find thousands of vulnerabilities, but he dismissed that as noise.
Quick answers
What did Kevin Mandia say about AI-based attacks?
He said AI-based attacks find logic flaws rather than code defects.
How many zero-day vulnerabilities has Armadin found?
More than 90 since January 2026, all in production systems at Fortune 500 companies.
How much funding did Armadin raise?
$189.9 million in seed and Series A funding led by Accel.