Latka logo

Top 2 Breach and Attack Simulation Software Companies With $5M–$10M Revenue (September 2026)

As of September 2026, Latka tracks 2 breach and attack simulation software companies with $5M–$10M in annual revenue. They have combined revenues of $15.2M and employ 222 people. They have raised $53M.

Every company below sells breach and attack simulation software to other businesses and is ranked by its most recent annual revenue. Revenue, funding, headcount and customer figures come from CEO interviews on the Latka podcast, public company filings, and Latka estimates where a company has not disclosed a number.

What Breach and Attack Simulation Software Companies do

Breach and Attack Simulation (BAS) software is a cybersecurity tool designed to proactively assess and enhance an organization's security posture by simulating real-world cyberattacks. It automates the process of testing security measures, enabling organizations to identify vulnerabilities and validate the effectiveness of their defenses. Key use cases include continuous monitoring of security readiness, validating security controls, and complementing traditional penetration testing efforts. Typically, BAS solutions provide features such as automated attack simulations, detailed reporting on vulnerabilities, and guidance on remediation strategies. They cater to a variety of organizations focusing on cybersecurity, including IT departments, security operations teams, and compliance professionals. By facilitating routine testing, BAS software helps organizations prepare for potential breaches, thereby strengthening their overall cybersecurity framework.

Companies
2
Revenue
$15.2M
Funding
$53M
Employees
222

Filters

Sorting: Highest -> Lowest

Filters

Top Breach and Attack Simulation Software Companies With $5M–$10M Revenue

Showing 2 of 2 companies ranked by annual revenue.

1CyCognito logo
CyCognito

Palo Alto, California, United States

Developer of a cloud-based network security analysis platform designed to discover an organization's security weak spots. The company's platform is an external and automatic attack simulation platform that provides organizations with a clear and continuous external analysis of their IT ecosystem in the eyes of a sophisticated attacker, including the primary potential attack vectors that lead to data breaches, enabling security analysts and management to prioritize remediation actions and eliminate cybersecurity threats.

Revenue
$8.4M
Year founded
2017
Funding
$53M
Team size
159
2OnDefend logo
OnDefend

Jacksonville, Florida, United States

OnDefend provides preventative cybersecurity testing and advisory services within the cybersecurity industry, offering services including breach and attack simulations, ransomware defense validation, security control validation, compliance consulting, and security program maturity consulting.

Revenue
$6.8M
Team size
63

Frequently asked questions about Breach and Attack Simulation Software Companies With $5M–$10M Revenue

How many breach and attack simulation software companies with $5M–$10M in annual revenue are there?

Latka tracks 2 breach and attack simulation software companies with $5M–$10M in annual revenue. Together they generate $15.2M in annual revenue and employ 222 people.

Which breach and attack simulation software company with $5M–$10M in annual revenue is the largest?

CyCognito is the largest, with $8.4M in annual revenue, founded in 2017.

How much revenue does a typical breach and attack simulation software company with $5M–$10M in annual revenue make?

The average breach and attack simulation software company in this list makes $7.6M a year, across 2 companies with reported revenue.

Who are the leading Breach and Attack Simulation software vendors with $5M–$10M in annual revenue?

Ranked by annual revenue, the leaders are CyCognito and OnDefend.

How much funding have breach and attack simulation software companies with $5M–$10M in annual revenue raised?

The 2 breach and attack simulation software companies with $5M–$10M in annual revenue tracked here have raised $53M in disclosed funding between them.

Related Security Software categories

Inclusion Criteria

- The product must automate the simulation of real-world cyberattacks. - It should provide detailed reports on vulnerabilities and security posture. - The software must facilitate ongoing monitoring and assessment of security controls. - It needs to support various attack scenarios to test different components of the security infrastructure. - Not just focused on compliance; must also improve proactive threat detection and response capabilities.