Developer docs
API playgroundTry for free, no card

Search company profiles

Mayhem

Full company profile

uuid0008pmw

Namestring
Mayhem
Legal namestring
ForAllSecure Inc.
Websiteurl
mayhem.security
Company typeenum
Private
Founded yearint
2012
Descriptiontext

Mayhem Security (operating company ForAllSecure Inc., formerly known as ForAllSecure until a October 2024 rebrand) is a Pittsburgh-based security testing software vendor founded in 2012 by Carnegie Mellon professor David Brumley. The company offers an AI-powered automated security testing platform that combines fuzz testing, a native symbolic execution engine, and generative AI to identify and prove vulnerabilities across application code, APIs, and software supply chains, with a stated goal of delivering zero false positives through proof-of-vulnerability generation.

The product surface is organized into three offerings: Mayhem for Code (AI-powered fuzzing, symbolic execution, and intelligent triage), Mayhem for API (stateful, agentless, differential API pentesting against OWASP Top 10 API weaknesses), and Mayhem Dynamic SBOM (reachability-based SBOM noise reduction of 60-90%). The platform is delivered as a cloud service, integrates natively with the major CI/CD systems (GitHub Actions, Jenkins, GitLab, CircleCI, Azure DevOps, Travis CI), and emits vendor-neutral SARIF reports. Target customers are enterprise organizations in regulated verticals including aerospace (ED-203A/DO-356A), automotive (ISO 21434, UN 155/6, ISO 26262), federal and defense (NIST SSDF, EO 14028), and medical and healthcare (FDA/MDA guidance). Named enterprise and government logos include Cloudflare, Roblox, Roche, Deloitte, Motional, Rivian, and the U.S. Department of Defense.

Mayhem operates a hybrid go-to-market combining product-led growth (30-day free evaluation, self-service onboarding via CLI and API tokens) with enterprise field sales for regulated-industry and federal deployments. Revenue is generated through annual subscriptions on a tiered Account model with usage-based limits on Authorized Cores (Mayhem for Code) and Authorized Developers/Scans (Mayhem for API); pricing is not publicly disclosed. The company was acquired by Bugcrowd in November 2025 and now operates as a subsidiary within the Bugcrowd platform.

Short descriptiontext

Mayhem Security (formerly ForAllSecure) provides AI-powered automated security testing for application code, APIs, and software supply chains, serving enterprise and government customers in aerospace, automotive, federal, and healthcare with compliance-focused fuzzing and symbolic execution.

Operating statusenum
Acquired
Ownership categoryenum
Headcount rangeband
11–50
akta.pro rankint
HeadquartersPittsburgh, United States
HQ citystring
Pittsburgh
HQ countrystring
United States
HQ regionstring
North America
Markets served

Serves global market

Offices1 record

Each record includes

City, Country, Type, Description, Source

Keyword5 values
application security testing, fuzz testing platform, API security testing, vulnerability detection software, software supply chain security
Industry5 codes
1Application Security Testing (SAST/DAST/IAST/SCA)
CodeHDADACACPrimaryYes
2Vulnerability Management & Penetration Testing Services
CodeBPAEADADPrimaryNo
3Vulnerability Assessment, Security Audits & Compliance Testing
CodeBPAKAHAGPrimaryNo
4Vulnerability Intelligence & Exploit Prediction
CodeHDADAHAIPrimaryNo
5Security Analytics & Detection Engineering
CodeHDADAGAEPrimaryNo
NAICS code2 codes
  • Computer Systems Design and Related Services5415
  • Computer Systems Design and Related Services54151
SIC code2 codes
  • Services-Prepackaged Software7372
  • Services-Testing Laboratories8734
Product category
Application Security Testing
Social media profiles1 record
GTM motion3 records

Each record includes

Type, Description, Source

Revenue model4 records
1Cloud Services Subscription
TypeSubscription Recurring
Description

ForAllSecure provides cloud-based security testing services under a subscription model with Account Tiers (Basic, Pro, Enterprise). Fees are based on Authorized Cores for Mayhem for Code and Authorized Developers/Scans for Mayhem for API. Subscriptions auto-renew annually.

mayhem.security
2Mayhem for API - Scan-Based Limits
TypeUsage Based
Description

Mayhem for API is limited by Authorized Developer counts and Authorized Scan limits based on selected Account Tier.

mayhem.security
3Mayhem for Code - Core-Based Limits
TypeUsage Based
Description

Mayhem for Code usage is limited by the number of Authorized Cores on which the service may be used per selected Account Tier.

mayhem.security
4Evaluation/Trial License
TypeFreemium
Description

Free 30-day evaluation licenses available for customers to trial the Cloud Services before committing to a paid Account Tier.

mayhem.security
Marketing channels7 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels4 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components4 values
Technology or R&D, Personnel, Infrastructure, Marketing or Sales
Pricing details2 tiers
1Account Tier-based subscription with varying Authorized Cores, Developers, and Scan limits
ModelSubscriptionBilling cadenceAnnual
Notes

Account Tier levels determine authorized usage limits. Fees include upgrade fees when usage exceeds tier limits. Pro-rated billing for mid-term upgrades. Automatic annual renewal unless cancelled.

mayhem.security
2Free 30-day evaluation available for all tiers
ModelFreemiumBilling cadencePay-as-you-go
Notes

Evaluation Period of up to 30 days for trial purposes. Automatic expiration at end of evaluation period unless converted to paid subscription.

mayhem.security
GTM typeB2B
B2B
Offering typeSoftware
Software
Core offering1 text field

Mayhem Security provides an AI-powered automated application security testing platform combining fuzz testing, symbolic execution, and generative AI to identify vulnerabilities in code, APIs, and software supply chains. The platform delivers zero false positives by generating proof-of-vulnerability for every defect and offers three core products: Mayhem for Code, Mayhem for API, and Mayhem Dynamic SBOM. It integrates directly into CI/CD pipelines to enable continuous security testing across the software development lifecycle.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 4 values shown
  • Up to 90% reduction in security alert volume through Dynamic SBOM false positive filtering
+3 more records
Product overview1 text field

Mayhem Security is an automated code and API security testing platform built by hackers and powered by AI. The company offers three core products: Mayhem for Code (fuzz testing and symbolic execution for application security), Mayhem for API (continuous API pentesting), and Dynamic SBOM (SBOM noise reduction). The platform provides a unified dashboard for dynamic code, API, and SBOM security testing with vendor-neutral SARIF reports. Mayhem was acquired by Bugcrowd in November 2025.

Product and service3 records
1Mayhem for Code (Code Security)
CategoryCode Security Testing
Description

AI-powered code security testing platform that uses fuzz testing, symbolic execution, and intelligent triage to find vulnerabilities in applications. Generates proof of vulnerability for every defect, delivering zero false positives. Supports 11+ programming languages including C/C++, Go, Rust, Java, Python, and Ada, and integrates with GitHub, Jenkins, GitLab, CircleCI, Azure DevOps, and Travis CI.

2Mayhem for API (API Security)
CategoryAPI Security Testing
Description

Continuous API security testing platform that validates and verifies APIs for OWASP Top 10 weaknesses using differential comparison, stateful, and agentless testing. Automates API pentesting with behavioral analysis at scale, designed for engineering and security teams running production APIs.

3Mayhem Dynamic SBOM
CategorySoftware Supply Chain Security
Description

Software Bill of Materials analysis tool that reduces SBOM/SCA noise by 60-90% through reachability analysis, identifying only exploitable vulnerabilities in the actual attack surface. Helps security and compliance teams cut through alert fatigue from traditional SBOM and software composition analysis tools.

Scale indicator6 records

Each record includes

Type, Value, Description, Source

Partnership1 partner
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-11-04
Description

Bugcrowd acquired Mayhem Security in November 2025 to enhance its security testing platform with AI automation and human hacker community expertise. The acquisition aims to provide continuous, proactive vulnerability detection and remediation across the software development lifecycle.

Recent move6 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight5 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

Veracode offers SAST, DAST, and SCA application security testing targeted at enterprises in regulated industries. It competes head-to-head with Mayhem in aerospace, automotive, medical, and federal verticals where compliance frameworks overlap.

TypeDirect peer
Description

Snyk is a developer security platform offering SAST, SCA, IaC, and container security with native CI/CD integrations. It directly competes with Mayhem's code and SBOM testing in the same PLG/enterprise hybrid motion targeting engineering teams.

TypeDirect peer
Description

Contrast Security offers runtime application security (IAST/RASP) and API security testing. It overlaps with Mayhem's API security and behavioral testing capabilities, particularly for enterprise web applications.

TypeDirect peer
Description

Checkmarx provides SAST, SCA, and IaC security scanning for enterprises, with deep CI/CD integration. It is a direct incumbent competitor to Mayhem's code security and Dynamic SBOM offerings in regulated industries.

TypeEmerging player
Description

Apiiro provides code-to-cloud application security risk analysis with ASPM capabilities. It is an emerging player overlapping with Mayhem's code risk and SBOM reachability narratives.

6CodeQL (GitHub)
TypeDirect peer
Description

CodeQL is GitHub's semantic code analysis engine for security vulnerabilities, with deep integrations across the GitHub ecosystem. It is a direct SAST competitor that benefits from default-on distribution in repositories.

TypeDirect peer
Description

Semgrep offers code static analysis with a developer-first, open-source-rooted approach and CI/CD integrations. It is a direct competitor to Mayhem for Code in the PLG-driven enterprise segment.

TypeBroad incumbent
Description

GitHub Advanced Security bundles CodeQL SAST, Dependabot SCA, and secret scanning natively into GitHub workflows. It is a broad incumbent default-on alternative to Mayhem's developer-integrated testing for any organization using GitHub.

TypeDirect peer
Description

Salt Security focuses on API security posture management and runtime API threat detection. It is a direct competitor to Mayhem for API in the OWASP Top 10 API testing category.

TypeBroad incumbent
Description

Synopsys offers Coverity and Code Sight static analysis alongside a broader EDA/semiconductor portfolio. It is a broad incumbent in application security testing serving many of the same regulated enterprise accounts as Mayhem.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses4 records

Each record includes

Headline, Details, Source

Competitive moat5 records

Each record includes

Type, Details

Key highlights6 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers7 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment5 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
Yes

Docs URL, Description

Integration9 records

Each record includes

Title, Type, Description, Source

AI capability5 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature6 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles2 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

No data
Compliance7 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds1 record

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors1 record

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Mayhem

Application Security Testingmayhem.security

Mayhem Security (formerly ForAllSecure) provides AI-powered automated security testing for application code, APIs, and software supply chains, serving enterprise and government customers in aerospace, automotive, federal, and healthcare with compliance-focused fuzzing and symbolic execution.

What Mayhem does

Mayhem Security (operating company ForAllSecure Inc., formerly known as ForAllSecure until a October 2024 rebrand) is a Pittsburgh-based security testing software vendor founded in 2012 by Carnegie Mellon professor David Brumley. The company offers an AI-powered automated security testing platform that combines fuzz testing, a native symbolic execution engine, and generative AI to identify and prove vulnerabilities across application code, APIs, and software supply chains, with a stated goal of delivering zero false positives through proof-of-vulnerability generation.

The product surface is organized into three offerings: Mayhem for Code (AI-powered fuzzing, symbolic execution, and intelligent triage), Mayhem for API (stateful, agentless, differential API pentesting against OWASP Top 10 API weaknesses), and Mayhem Dynamic SBOM (reachability-based SBOM noise reduction of 60-90%). The platform is delivered as a cloud service, integrates natively with the major CI/CD systems (GitHub Actions, Jenkins, GitLab, CircleCI, Azure DevOps, Travis CI), and emits vendor-neutral SARIF reports. Target customers are enterprise organizations in regulated verticals including aerospace (ED-203A/DO-356A), automotive (ISO 21434, UN 155/6, ISO 26262), federal and defense (NIST SSDF, EO 14028), and medical and healthcare (FDA/MDA guidance). Named enterprise and government logos include Cloudflare, Roblox, Roche, Deloitte, Motional, Rivian, and the U.S. Department of Defense.

Mayhem operates a hybrid go-to-market combining product-led growth (30-day free evaluation, self-service onboarding via CLI and API tokens) with enterprise field sales for regulated-industry and federal deployments. Revenue is generated through annual subscriptions on a tiered Account model with usage-based limits on Authorized Cores (Mayhem for Code) and Authorized Developers/Scans (Mayhem for API); pricing is not publicly disclosed. The company was acquired by Bugcrowd in November 2025 and now operates as a subsidiary within the Bugcrowd platform.

Mayhem firmographics

Firmographics
Name
Mayhem
Legal name
ForAllSecure Inc.
Website
https://mayhem.security
Company type
Private
Founded year
2012
Operating status
Acquired
Headcount range
11–50 employees
Short description
Mayhem Security (formerly ForAllSecure) provides AI-powered automated security testing for application code, APIs, and software supply chains, serving enterprise and government customers in aerospace, automotive, federal, and healthcare with compliance-focused fuzzing and symbolic execution.
Ownership category
akta.pro rank

Mayhem industry classification

Industry
Product category
Application Security Testing
NAICS
Computer Systems Design and Related Services (5415), Computer Systems Design and Related Services (54151)
SIC
Services-Prepackaged Software (7372), Services-Testing Laboratories (8734)
akta.pro primary industry
Application Security Testing (SAST/DAST/IAST/SCA) (HDADACAC)
akta.pro secondary industries
Vulnerability Management & Penetration Testing Services (BPAEADAD), Vulnerability Assessment, Security Audits & Compliance Testing (BPAKAHAG), Vulnerability Intelligence & Exploit Prediction (HDADAHAI), Security Analytics & Detection Engineering (HDADAGAE)

Keywords

  • Application security testing
  • Fuzz testing platform
  • API security testing
  • Vulnerability detection software
  • Software supply chain security

Where Mayhem is headquartered

Location

Headquarters

HQ city
Pittsburgh
HQ country
United States
HQ region
North America

Offices1 record

Markets served

Mayhem business model

Business model
GTM type
B2B
Offering type
Software
Cost components
Technology or R&D, Personnel, Infrastructure, Marketing or Sales

Revenue model

  1. Cloud Services Subscription: ForAllSecure provides cloud-based security testing services under a subscription model with Account Tiers (Basic, Pro, Enterprise). Fees are based on Authorized Cores for Mayhem for Code and Authorized Developers/Scans for Mayhem for API. Subscriptions auto-renew annually.
  2. Mayhem for API - Scan-Based Limits: Mayhem for API is limited by Authorized Developer counts and Authorized Scan limits based on selected Account Tier.
  3. Mayhem for Code - Core-Based Limits: Mayhem for Code usage is limited by the number of Authorized Cores on which the service may be used per selected Account Tier.
  4. Evaluation/Trial License: Free 30-day evaluation licenses available for customers to trial the Cloud Services before committing to a paid Account Tier.

Pricing tiers

ModelBillingPrice
SubscriptionAnnualAccount Tier-based subscription with varying Authorized Cores, Developers, and Scan limits
FreemiumPay-as-you-goFree 30-day evaluation available for all tiers

Go-to-market motion3 records

Distribution channels4 records

Marketing channels7 records

Mayhem product offering

Product offering

Core offering

Mayhem Security provides an AI-powered automated application security testing platform combining fuzz testing, symbolic execution, and generative AI to identify vulnerabilities in code, APIs, and software supply chains. The platform delivers zero false positives by generating proof-of-vulnerability for every defect and offers three core products: Mayhem for Code, Mayhem for API, and Mayhem Dynamic SBOM. It integrates directly into CI/CD pipelines to enable continuous security testing across the software development lifecycle.

Product overview

Mayhem Security is an automated code and API security testing platform built by hackers and powered by AI. The company offers three core products: Mayhem for Code (fuzz testing and symbolic execution for application security), Mayhem for API (continuous API pentesting), and Dynamic SBOM (SBOM noise reduction). The platform provides a unified dashboard for dynamic code, API, and SBOM security testing with vendor-neutral SARIF reports. Mayhem was acquired by Bugcrowd in November 2025.

Differentiator

Problem solved

Functional benefit

Products and services

  • Mayhem for Code (Code Security) AI-powered code security testing platform that uses fuzz testing, symbolic execution, and intelligent triage to find vulnerabilities in applications. Generates proof of vulnerability for every defect, delivering zero false positives. Supports 11+ programming languages including C/C++, Go, Rust, Java, Python, and Ada, and integrates with GitHub, Jenkins, GitLab, CircleCI, Azure DevOps, and Travis CI.
  • Mayhem for API (API Security) Continuous API security testing platform that validates and verifies APIs for OWASP Top 10 weaknesses using differential comparison, stateful, and agentless testing. Automates API pentesting with behavioral analysis at scale, designed for engineering and security teams running production APIs.
  • Mayhem Dynamic SBOM Software Bill of Materials analysis tool that reduces SBOM/SCA noise by 60-90% through reachability analysis, identifying only exploitable vulnerabilities in the actual attack surface. Helps security and compliance teams cut through alert fatigue from traditional SBOM and software composition analysis tools.

Quantifiable outcome

  • Up to 90% reduction in security alert volume through Dynamic SBOM false positive filtering
  • +3 more outcomes

Companies that use Mayhem

Customer profile

Named customers7 records

Segments5 records

Ideal customer profiles3 records

Mayhem technology and API

Technology

Technology focussed Yes

API detail

Has API
Yes
API docs
API detail

Core technology

AI maturity

App detail

Integration9 records

AI capability5 records

Feature6 records

Mayhem partnerships and signals

Strategic signal

Partnerships

One partnership is on record.

  • BugcrowdcoreStrategic or Co-development Partner · 4 November 2025Bugcrowd acquired Mayhem Security in November 2025 to enhance its security testing platform with AI automation and human hacker community expertise. The acquisition aims to provide continuous, proactive vulnerability detection and remediation across the software development lifecycle.

Scale indicators6 records

Recent moves6 records

Expansion highlights5 records

Mayhem competitors and assessment

Company assessment

Direct peers

  • Veracode: Veracode offers SAST, DAST, and SCA application security testing targeted at enterprises in regulated industries. It competes head-to-head with Mayhem in aerospace, automotive, medical, and federal verticals where compliance frameworks overlap.
  • Snyk: Snyk is a developer security platform offering SAST, SCA, IaC, and container security with native CI/CD integrations. It directly competes with Mayhem's code and SBOM testing in the same PLG/enterprise hybrid motion targeting engineering teams.
  • Contrast Security: Contrast Security offers runtime application security (IAST/RASP) and API security testing. It overlaps with Mayhem's API security and behavioral testing capabilities, particularly for enterprise web applications.
  • Checkmarx: Checkmarx provides SAST, SCA, and IaC security scanning for enterprises, with deep CI/CD integration. It is a direct incumbent competitor to Mayhem's code security and Dynamic SBOM offerings in regulated industries.
  • CodeQL (GitHub): CodeQL is GitHub's semantic code analysis engine for security vulnerabilities, with deep integrations across the GitHub ecosystem. It is a direct SAST competitor that benefits from default-on distribution in repositories.
  • Semgrep: Semgrep offers code static analysis with a developer-first, open-source-rooted approach and CI/CD integrations. It is a direct competitor to Mayhem for Code in the PLG-driven enterprise segment.
  • Salt Security: Salt Security focuses on API security posture management and runtime API threat detection. It is a direct competitor to Mayhem for API in the OWASP Top 10 API testing category.

Emerging players

  • Apiiro: Apiiro provides code-to-cloud application security risk analysis with ASPM capabilities. It is an emerging player overlapping with Mayhem's code risk and SBOM reachability narratives.

Broad incumbents

  • GitHub Advanced Security: GitHub Advanced Security bundles CodeQL SAST, Dependabot SCA, and secret scanning natively into GitHub workflows. It is a broad incumbent default-on alternative to Mayhem's developer-integrated testing for any organization using GitHub.
  • Synopsys (Code Sight / Coverity): Synopsys offers Coverity and Code Sight static analysis alongside a broader EDA/semiconductor portfolio. It is a broad incumbent in application security testing serving many of the same regulated enterprise accounts as Mayhem.

Market position

Strengths5 records

Weaknesses4 records

Competitive moat5 records

Key highlights6 records

Customer concentration

Mayhem social profiles

Digital presence

Mayhem compliance and trust

Trust signal

Compliance7 records

Mayhem financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Mayhem leadership team

Management profile

Number of profiles

Profiles2 records

Mayhem funding detail

Funding detail

Funding overview

Funding rounds1 record

Investors1 record

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Mayhem M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Mayhem

What does Mayhem do?

Mayhem Security provides an AI-powered automated application security testing platform combining fuzz testing, symbolic execution, and generative AI to identify vulnerabilities in code, APIs, and software supply chains. The platform delivers zero false positives by generating proof-of-vulnerability for every defect and offers three core products: Mayhem for Code, Mayhem for API, and Mayhem Dynamic SBOM. It integrates directly into CI/CD pipelines to enable continuous security testing across the software development lifecycle.

Is Mayhem a public or private company?

Mayhem is a private company. It is classified as venture growth investor backed and is currently acquired.

When was Mayhem founded?

Mayhem was founded in 2012. It employs 11 to 50 people.

Where is Mayhem based?

Mayhem is headquartered in Pittsburgh, United States, in the North America region.

How does Mayhem make money?

Four revenue lines are on record. Cloud Services Subscription is the primary driver. The others are mayhem for API - Scan-Based Limits, mayhem for Code - Core-Based Limits and evaluation/Trial License.

Who are Mayhem's main competitors?

Direct peers on record are Veracode, Snyk, Contrast Security, Checkmarx, CodeQL (GitHub), Semgrep and Salt Security. Apiiro is listed as an emerging player. Broad incumbents are GitHub Advanced Security and Synopsys (Code Sight / Coverity).

Does Mayhem have an API?

Yes. Mayhem provides a CLI-based API for programmatic access to its security testing platform. Users can generate API tokens to authenticate and interact with the platform, run security scans, and retrieve results. The API supports integration with CI/CD pipelines and accepts OpenAPI specifications for API testing. Developer documentation is at docs.mayhem.security.

What industry is Mayhem in?

Mayhem's product category is Application Security Testing. Its primary akta.pro industry code is HDADACAC, Application Security Testing (SAST/DAST/IAST/SCA), with a secondary code of BPAEADAD, Vulnerability Management & Penetration Testing Services. Its NAICS code is 5415 and its SIC code is 7372.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
CRNBugcrowd Acquires Mayhem Security To Boost Autonomous App TestingBugcrowd announced the acquisition of Mayhem Security, a provider of autonomous application security testing, to accelerate vulnerability remediation capabilities. All 11 employees from Mayhem Security are joining Bugcrowd, though specific financial terms were not disclosed. This move adds continuous automated penetration testing and AI-driven automation to Bugcrowd's crowdsourced security platform.PR NewswireBugcrowd Acquires Mayhem Security to Bring Human-Augmented AI Automation to Security TestingBugcrowd acquired Mayhem Security, an AI offensive security firm, to integrate human crowdsourced testing with AI-driven automation. The deal aims to provide continuous, proactive vulnerability detection across APIs, code, and software bills of materials. Terms were not disclosed.MescomputingBugcrowd Buying Hacker-Built Mayhem SecurityBugcrowd announced the acquisition of Mayhem Security (formerly ForAllSecure), a provider of application and AI-powered security testing, combining Mayhem's AI automation with Bugcrowd's crowdsourced testing platform. Financial terms of the deal were not disclosed. The integration aims to provide AI-backed automated protection during the software development lifecycle, enabling organizations to deliver safer software faster and at lower cost while addressing growing concerns over software supply chain vulnerabilities and AI-generated threats.VenturecapitalBugcrowd Acquires Mayhem Security to Enhance AI-Powered Cybersecurity SolutionsBugcrowd, a leading crowdsourced cybersecurity company, has acquired Mayhem Security, a pioneer in AI offensive security. The acquisition aims to combine the hacker community with AI technology to create an adaptive security solution that proactively discovers and fixes vulnerabilities across attack surfaces. The addition of Mayhem's autonomous capabilities is expected to strengthen Bugcrowd's position in the crowdsourced security market.SiliconANGLEBugcrowd acquires AI security startup Mayhem to fuse hacker ingenuity with machine intelligence - SiliconANGLEBugcrowd Inc. announced the acquisition of Mayhem Security (formerly ForAllSecure Inc.), an AI offensive security company, to combine human-driven adversarial testing with machine intelligence. Founded in 2012 out of Carnegie Mellon University, Mayhem had raised $38 million across three funding rounds before the acquisition. Bugcrowd plans to integrate Mayhem's autonomous testing platform with its global hacker community to help organizations detect and remediate vulnerabilities during software development.BugcrowdBugcrowd acquires Mayhem Security: Redefining AI-powered security testingBugcrowd has acquired Mayhem Security, a pioneer in AI offensive testing, to create what it claims is the industry's first truly adaptive security platform. The acquisition combines human ingenuity with AI capabilities, enabling organizations to anticipate, test, and defend against threats at unprecedented scale by merging automated AI testing with human-led crowd security testing. The combined entity will offer AI-automated, noise-free testing coverage integrated into CI/CD lifecycles alongside traditional bug bounty and penetration testing services.