Labrador Labs
Labrador Labs is a Seoul-headquartered software supply chain security vendor providing SCA, SBOM management, and runtime vulnerability analysis built on patented function-level detection algorithms. It serves Korean financial institutions, large manufacturers, and U.S. defense and medical-device customers through enterprise subscriptions and consulting services.
- Company typePrivate
- Founded2018
- HeadquartersLas Vegas, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Labrador Labs does
Labrador Labs (formerly IOTCUBE, rebranded August 2022) is a Seoul-headquartered software supply chain security vendor founded in 2018 as a spin-off from Korea University's Software Security Research Center. Its platform centers on Software Composition Analysis (SCA) — Labrador OSS / Labrador SCA — using patented algorithms (VUDDY, CENTRIS, MOVERY, V1SCAN) to detect open-source vulnerabilities, license risks, and modified-code reuse at component, file, and function levels, with 90%+ detection accuracy claims validated at IEEE S&P and USENIX Security. The company has expanded the platform into Labrador SCM for automated SBOM generation and exchange across supply chains (launched August 2024), Labrador Server Care for runtime vulnerability scanning on production servers (launched December 2024), Labrador Fuzzer for protocol-level security testing, Labrador IVAS as a unified management portal, and Labrador LLM, a proprietary AI model launched March 2026 that improves open-source license detection accuracy by more than 10%.
Revenue is generated primarily through enterprise subscriptions to the SCA/SBOM platform plus professional consulting services for code safety and license compliance. Go-to-market combines direct enterprise field sales — heavily concentrated in Korean financial services (IBK, KDB, Samsung Fire & Marine, Shinhan Life, Mirae Asset Life, Yuanta, NH, Shinhan, FSI, KCIS) — with channel and marketplace distribution in the U.S. and Europe: AWS Marketplace listing, Carahsoft for federal procurement, Tradewinds and Platform One for U.S. DoD, and German reseller partners for EMEA. As of March 2026 the company has raised approximately 26.5 billion KRW (~$20M USD) across four funding rounds since 2021, with the most recent 14.5 billion KRW Series B (March 2026) explicitly earmarked for North American market expansion.
Labrador Labs firmographics
Firmographics- Name
- Labrador Labs
- Legal name
- LABRADOR LABS Inc.
- Website
- https://labradorlabs.ai
- Company type
- Private
- Founded year
- 2018
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Labrador Labs is a Seoul-headquartered software supply chain security vendor providing SCA, SBOM management, and runtime vulnerability analysis built on patented function-level detection algorithms. It serves Korean financial institutions, large manufacturers, and U.S. defense and medical-device customers through enterprise subscriptions and consulting services.
- Ownership category
- akta.pro rank
Labrador Labs industry classification
Industry- Product category
- Software Supply Chain Security
- NAICS
- Computer Systems Design and Related Services (54151)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- App Security, Compliance & Review Automation Platforms (BPAMADAJ)
Keywords
Where Labrador Labs is headquartered
LocationHeadquarters
- HQ city
- Las Vegas
- HQ country
- United States
- HQ region
- North America
Offices3 records
Markets served
Labrador Labs business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Marketing or Sales, Operations
Revenue model
- SCA Solutions (Labrador OSS): Software composition analysis solutions for detecting vulnerabilities, license issues, and generating SBOMs. Offered as subscription with support for source code, binary, and container analysis.
- SBOM Exchange Platform (Labrador SCM): Automated software supply chain management platform enabling SBOM creation, sharing, verification, and exchange between partners in the supply chain.
- Labrador Server Care: Real-time vulnerability management solution for running production servers, analyzing installed software and dependencies for open-source vulnerabilities.
- Labrador Fuzzer: Security testing solution combining penetration testing and fuzzing for protocol, packet-based, and embedded system cyber attacks.
- Consulting Services: Professional consulting services for code safety and license compliance using Labrador platform analysis results.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Monthly | Free trial available for AWS Marketplace |
Go-to-market motion3 records
Distribution channels5 records
Marketing channels5 records
Labrador Labs product offering
Product offeringCore offering
Labrador Labs provides an end-to-end software supply chain security platform anchored by Software Composition Analysis (SCA). It scans source code, binaries, and containers to detect open-source vulnerabilities and license risks, generate and exchange SBOMs (SPDX, CycloneDX, NIS-SBOM), and backport patches. Adjacent products extend coverage to runtime server scanning (Labrador Server Care), fuzzing-based security testing (Labrador Fuzzer), unified vulnerability analysis (Labrador IVAS), CLI-based encrypted code analysis (Labrador CLI), an AI model for license detection (Labrador LLM), SCION secure networking, and professional consulting.
Differentiator
Problem solved
Functional benefit
Brands
- Labrador OSS: Software Composition Analysis (SCA) solution for open-source vulnerability and license detection with SBOM generation capabilities.
- Labrador LLM
- Labrador SCM
- Labrador Server Care
- Labrador IVAS
- Labrador Fuzzer
- Labrador CLI
- SCION
- Labrador Consulting
Products and services
- Labrador SCA Software Composition Analysis (SCA) solution that scans source code, binaries, and containers to detect open-source vulnerabilities and license risks, generate SBOMs, and provide patch recommendations using VUDDY and CENTRIS patented technologies; aimed at enterprise and government software security teams.
- Labrador OSS Open-source-focused vulnerability and license management solution that generates SBOMs and detects vulnerabilities and license risks in open-source components using the Labrador SCA platform.
- Labrador SCM Automated software supply chain management platform that generates, exchanges, verifies, and corrects SBOMs (CycloneDX, SPDX, NIS-SBOM, Excel) between hub manufacturers and suppliers; targeted at manufacturing, electronics, and government buyers needing supplier transparency.
- Labrador Server Care Runtime server vulnerability management solution that periodically scans software installed on running production servers, identifies open-source vulnerabilities (e.g. Log4j), and provides remediation action plans; targeted at enterprise IT and security operations teams.
- Labrador Fuzzer
Quantifiable outcome
- 90% detection accuracy through In-Depth (3-layer) vulnerability analysis and AI data verification
- +4 more outcomes
Companies that use Labrador Labs
Customer profileNamed customers17 records
Segments5 records
Ideal customer profiles4 records
Labrador Labs technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration8 records
AI capability10 records
Feature8 records
Labrador Labs partnerships and signals
Strategic signalPartnerships
Four partnerships are on record, tiered core and minor.
- CarahsoftcoreOfficial vendor registration with U.S. government IT solutions specialist. Enables access to federal agencies and defense customers through Carahsoft's government procurement relationships.
- D'LIGHT Law GroupminorOpen Source License Compliance MOU for providing professional consulting on open-source governance. Partnership to establish policies, provide educational content, and handle legal disputes related to license compliance.
- AUTOCRYPTcoreR&D partnership for automotive open-source security research. Collaboration to develop SBOM-based automotive open-source code analysis and verification solutions for connected vehicle security.
- AnapayacoreAsia-Pacific region's only partner for SCION next-generation secure internet protocol. Labrador Labs serves as exclusive regional partner for deploying Anapaya's SCION internet solutions.
Scale indicators7 records
Recent moves7 records
Expansion highlights6 records
Labrador Labs competitors and assessment
Company assessmentEmerging players
- Chainguard: Chainguard focuses on hardened, minimal-container supply-chain security and SBOM-backed images — overlapping with Labrador's binary/container SBOM and server-care use cases for security-conscious enterprises adopting zero-trust supply chains.
Others
- CycloneDX (OWASP): CycloneDX is the open SBOM standard Labrador SCM explicitly supports alongside SPDX; while not a commercial peer, it shapes the ecosystem in which all SCA vendors (including Labrador) compete and is increasingly mandated by U.S. federal procurement.
Direct peers
- Mend (formerly WhiteSource): Mend offers an SCA platform with license compliance, vulnerability detection, and SBOM capabilities — overlapping closely with Labrador's core product positioning for enterprise application security teams.
- Anchore: Anchore provides SBOM generation, container security, and policy-based compliance — directly overlapping with Labrador SCM and Server Care, especially around SBOM standards (SPDX/CycloneDX) and supply chain governance.
- Sonatype: Sonatype's Nexus platform is the legacy enterprise standard for repository management and SCA, directly competing with Labrador OSS/SCA on open-source vulnerability detection, SBOM, and license governance for large enterprises.
- Snyk: Snyk is the leading developer security platform with a flagship SCA product (Snyk Open Source) targeting the same enterprise buyers and CI/CD-integrated use cases as Labrador OSS. Both compete on vulnerability detection accuracy, SBOM generation, and license compliance within developer workflows.
Broad incumbents
- Veracode: Veracode is a broad application security vendor with SCA, SAST, and DAST offerings that compete with Labrador in enterprise application security procurement, though Veracode is portfolio-led rather than SCA-specialist.
- Synopsys Black Duck: Black Duck is a long-standing enterprise SCA incumbent covering SBOM, license compliance, and vulnerability detection. Synopsys' broader software integrity portfolio competes for the same large-enterprise application security budget Labrador targets.
- JFrog: JFrog's Artifactory platform includes security and compliance scanning for binaries and artifacts; while broader than SCA, it directly overlaps with Labrador's binary/container analysis and SBOM offerings and competes in the same enterprise DevSecOps deals.
- GitLab: GitLab's DevSecOps platform includes built-in dependency and container scanning that overlaps with Labrador's SCA capabilities, and competes in the same enterprise deals as an integrated alternative to a standalone SCA vendor.
Market position
Strengths5 records
Weaknesses4 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Labrador Labs social profiles
Digital presenceLabrador Labs compliance and trust
Trust signalCompliance3 records
Labrador Labs financial estimates
Financial estimateRevenue estimate
Valuation estimate
Labrador Labs leadership team
Management profileNumber of profiles
Profiles3 records
Labrador Labs funding detail
Funding detailFunding overview
Funding rounds1 record
Investors7 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Labrador Labs M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Labrador Labs
What does Labrador Labs do?
Labrador Labs provides an end-to-end software supply chain security platform anchored by Software Composition Analysis (SCA). It scans source code, binaries, and containers to detect open-source vulnerabilities and license risks, generate and exchange SBOMs (SPDX, CycloneDX, NIS-SBOM), and backport patches. Adjacent products extend coverage to runtime server scanning (Labrador Server Care), fuzzing-based security testing (Labrador Fuzzer), unified vulnerability analysis (Labrador IVAS), CLI-based encrypted code analysis (Labrador CLI), an AI model for license detection (Labrador LLM), SCION secure networking, and professional consulting.
Is Labrador Labs a public or private company?
Labrador Labs is a private company. It is classified as venture growth investor backed and is currently operating.
When was Labrador Labs founded?
Labrador Labs was founded in 2018. It employs 11 to 50 people.
Where is Labrador Labs based?
Labrador Labs is headquartered in Las Vegas, United States, in the North America region.
How does Labrador Labs make money?
Five revenue lines are on record. SCA Solutions (Labrador OSS) is the primary driver. The others are SBOM Exchange Platform (Labrador SCM), labrador Server Care, labrador Fuzzer and consulting Services.
Who are Labrador Labs's main competitors?
Chainguard is listed as an emerging player. CycloneDX (OWASP) is listed as an others. Direct peers are Mend (formerly WhiteSource), Anchore, Sonatype and Snyk. Broad incumbents are Veracode, Synopsys Black Duck, JFrog and GitLab.
Does Labrador Labs have an API?
Yes. Labrador OSS offers REST API integration through which cloud-based or on-premise SDLC and CI/CD pipelines can be connected for secure data communications, enabling organizations to create secure software environments across all infrastructure types.
What industry is Labrador Labs in?
Labrador Labs's product category is Software Supply Chain Security. Its primary akta.pro industry code is BPAMADAJ, App Security, Compliance & Review Automation Platforms. Its NAICS code is 54151 and its SIC code is 7372.