Binarly
- Company typePrivate
- Founded2021
- HeadquartersSanta Monica, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Binarly does
Binarly is a US-based, venture-backed software company founded in 2021 and headquartered in California that builds automated supply-chain security tooling focused on firmware and compiled software. Its core product, the Transparency Platform, performs binary-level analysis of compiled software and firmware to detect vulnerabilities, generate Software Bills of Materials (SBOMs), and map full software dependencies — capabilities that operate without source code access, a key technical differentiator in environments where source is unavailable (devices, third-party components, acquired codebases). The platform has been extended over time to include cryptographic dependency analysis, post-quantum compliance readiness, Java ecosystem support, and enterprise-scale YARA rule integration; a separate open-source offering, VulHunt Community Edition, provides cross-platform binary vulnerability detection for community users.
The company monetizes primarily through subscription-based SaaS access to the Transparency Platform, sold via an enterprise field-sales motion targeting device manufacturers and large enterprises that need to discover and remediate firmware supply-chain risk and produce SBOM documentation for auditors. Named customers include Meta and Dell, and the company announced a strategic partnership with CIQ in May 2026 to embed Binarly's analysis into CIQ's Enterprise Linux distribution, opening a co-sell channel. The company holds a granted patent on CBOM (Component Bill of Materials) generation from binaries, reinforcing a defensible technical position. To date Binarly has raised approximately $14.1M in aggregate funding across a $3.6M seed in 2022 (Westwave Capital, Acrobator Ventures) and a $10.5M round in July 2024 led by Two Bear Capital. In March 2026 founder Alex Matrosov stepped down as CEO to join the Board, and Gwenyth Castro (formerly Chief of Staff at Bishop Fox) was appointed CEO to lead global go-to-market expansion.
Binarly firmographics
Firmographics- Name
- Binarly
- Legal name
- Binarly Inc
- Website
- https://binarly.io
- Company type
- Private
- Founded year
- 2021
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Ownership category
- akta.pro rank
Binarly industry classification
Industry- Product category
- Firmware Supply Chain Security
- NAICS
- Software Publishers (5132), Custom Computer Programming Services (541511), Computer Systems Design and Related Services (54151)
- SIC
- Services-Computer Programming Services (7371)
- akta.pro primary industry
- Software Supply Chain & Dependency Security (SBOM, Signing) (HDADACAD)
- akta.pro secondary industries
- Application Security Testing (SAST/DAST/IAST/SCA) (HDADACAC), Code & Repository Security (Git Security, Code Integrity) (HDADACAG)
Keywords
Where Binarly is headquartered
LocationHeadquarters
- HQ city
- Santa Monica
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
Binarly business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Infrastructure
Revenue model
- SaaS Platform Subscription: Provides a SaaS platform helping device manufacturers and enterprises discover and fix firmware supply chain security issues. Revenue is generated through subscription-based access to the Transparency Platform.
Go-to-market motion1 record
Distribution channels1 record
Marketing channels3 records
Binarly product offering
Product offeringCore offering
Binarly provides a SaaS-based platform for firmware and software supply chain security. Its Transparency Platform performs binary-level analysis to detect vulnerabilities in compiled software without requiring source code access, generates Software Bills of Materials (SBOMs), maps full software dependencies, and enables post-quantum compliance readiness for enterprises and device manufacturers.
Product overview
Binarly offers a unified platform architecture centered on the Transparency Platform, which provides binary-level analysis and firmware vulnerability detection for supply chain security. The platform helps organizations identify third-party software risks, generate SBOMs (Software Bills of Materials), and map cryptographic dependencies. VulHunt Community Edition extends this capability as an open-source component for community-driven vulnerability detection in compiled binaries. The platform is trusted by major enterprises including Meta and Dell for identifying and mitigating third-party software risks.
Differentiator
Problem solved
Functional benefit
Brands
- VulHunt Community Edition: Open-source framework for detecting vulnerabilities in compiled software with cross-platform binary analysis and rule-based detection
- Transparency Platform
Products and services
- Transparency Platform A SaaS platform helping device manufacturers and enterprises discover and remediate firmware supply chain security issues. Provides binary-level analysis, vulnerability detection, SBOM generation, full dependency mapping, and post-quantum compliance readiness. Trusted by enterprises including Meta and Dell for third-party software risk identification.
- VulHunt Community Edition An open-source framework for detecting vulnerabilities in compiled software. Supports cross-platform binary analysis and rule-based detection, integrating with the Transparency Platform for extended vulnerability scanning capabilities across multiple platform architectures.
Quantifiable outcome
- CVE-2025-12006 and CVE-2025-12007 - new Supermicro BMC vulnerabilities discovered and disclosed
- +1 more outcomes
Companies that use Binarly
Customer profileNamed customers3 records
Segments3 records
Ideal customer profiles2 records
Binarly technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability4 records
Feature9 records
Binarly partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- CIQcoreStrategic partnership to extend binary-level analysis and firmware vulnerability detection into Enterprise Linux environments. The combined offering integrates CIQ's commercially supported, hardened Enterprise Linux platform with Binarly's Transparency Platform to provide supply chain documentation, SBOM generation, and full dependency mapping. The partnership is in active development with integration milestones planned across the CIQ product portfolio.
Scale indicators4 records
Recent moves6 records
Expansion highlights6 records
Binarly competitors and assessment
Company assessmentDirect peers
- ReversingLabs: ReversingLabs provides binary analysis and software supply chain security, including file and firmware threat detection. It is one of the closest direct competitors to Binarly's Transparency Platform in the binary-level analysis and SBOM space.
- Chainguard: Chainguard focuses on software supply chain security with hardened container images and SBOM tooling. It competes with Binarly in the broader supply chain security and SBOM generation category serving enterprise developers.
- Sonatype: Sonatype's Nexus platform provides SBOM generation, dependency analysis, and software supply chain security. It directly overlaps with Binarly's SBOM, dependency mapping, and third-party software risk identification capabilities.
- Anchore: Anchore provides SBOM generation and software supply chain compliance for containerized and enterprise software. It is a direct peer in the SBOM and supply chain documentation category that Binarly targets.
Broad incumbents
- Snyk: Snyk is a broad application security platform covering SCA, SAST, and container security. While not specializing in firmware binaries, its SCA and dependency scanning capabilities overlap with Binarly's supply chain analysis offerings.
- JFrog: JFrog offers a software supply chain platform including Artifactory and Xray for binary management and vulnerability scanning. Its broader DevOps portfolio competes with Binarly's supply chain security value proposition for enterprise customers.
- CrowdStrike: CrowdStrike is a large endpoint and supply chain security incumbent with growing SBOM and software bill of materials capabilities. It is a broad competitor that could absorb Binarly's use cases within its Falcon platform.
Emerging players
- Cyera: Cyera focuses on data security posture management and data inventory, partially overlapping with Binarly's component inventory (CBOM) and data discovery capabilities in enterprise environments.
- Legit Security: Legit Security provides software supply chain security with SDLC visibility and SDLC security posture management. It overlaps with Binarly's supply chain security and SBOM generation capabilities at a different layer of the stack.
- Socket Supply Co. Socket focuses on open source dependency and supply chain risk detection for developers. It is an emerging peer that competes in the third-party software risk and dependency mapping space adjacent to Binarly's offerings.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks5 records
Key highlights7 records
Customer concentration
Binarly social profiles
Digital presenceBinarly financial estimates
Financial estimateRevenue estimate
Valuation estimate
Binarly leadership team
Management profileNumber of profiles
Profiles5 records
Binarly funding detail
Funding detailFunding overview
Funding rounds2 records
Investors9 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Binarly M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Binarly
What does Binarly do?
Binarly provides a SaaS-based platform for firmware and software supply chain security. Its Transparency Platform performs binary-level analysis to detect vulnerabilities in compiled software without requiring source code access, generates Software Bills of Materials (SBOMs), maps full software dependencies, and enables post-quantum compliance readiness for enterprises and device manufacturers.
Is Binarly a public or private company?
Binarly is a private company. It is classified as venture growth investor backed and is currently operating.
When was Binarly founded?
Binarly was founded in 2021. It employs 11 to 50 people.
Where is Binarly based?
Binarly is headquartered in Santa Monica, United States, in the North America region.
How does Binarly make money?
One revenue line is on record: saaS Platform Subscription.
Who are Binarly's main competitors?
Direct peers on record are ReversingLabs, Chainguard, Sonatype and Anchore. Broad incumbents are Snyk, JFrog and CrowdStrike. Emerging players are Cyera, Legit Security and Socket Supply Co..
Does Binarly have an API?
No public API is recorded for Binarly.
What industry is Binarly in?
Binarly's product category is Firmware Supply Chain Security. Its primary akta.pro industry code is HDADACAD, Software Supply Chain & Dependency Security (SBOM, Signing), with a secondary code of HDADACAC, Application Security Testing (SAST/DAST/IAST/SCA). Its NAICS code is 5132 and its SIC code is 7371.