{ “title_rewritten”: “ZAST.AI Secures $6 Million Funding to Enhance AI-Powered Code Security”, “summary”: “ZAST.AI has raised $6 million in a Pre-A funding round led by Hillhouse Capital, bringing its total funding to nearly $10 million. The company aims to eliminate high false positive rates in security tools by providing actionable alerts. In 2025, ZAST.AI identified hundreds of zero-day vulnerabilities across popular open-source projects, resulting in 119 CVE assignments, which have already led to patches from major companies like Microsoft and Alibaba. This development highlights the need for more reliable security solutions in the software development industry.”, “insight”: “
ZAST.AI, based in Seattle, announced on January 5, 2026, that it has successfully completed a $6 million Pre-A funding round, with Hillhouse Capital as the lead investor. This funding increases ZAST.AI’s total capital to nearly $10 million, reflecting a growing recognition of its innovative approach to code security. The company focuses on reducing the high false positive rates that have long troubled security teams, allowing them to address real vulnerabilities more efficiently.
In 2025, ZAST.AI discovered hundreds of zero-day vulnerabilities in widely used open-source projects, leading to 119 CVE assignments. Notable affected projects included Microsoft Azure SDK, Apache Struts XWork, and Alibaba Nacos. These vulnerabilities were accompanied by executable Proof-of-Concept (PoC) evidence, which has already prompted patches from major technology companies.
Understanding ZAST.AI’s Innovation
ZAST.AI’s unique technical architecture combines Automated PoC Generation with Automated Validation. This allows the platform to conduct deep code analysis, generating and verifying PoC code that confirms the existence of vulnerabilities. This approach ensures that only confirmed vulnerabilities are reported, achieving a “
- Securityish
- Threats & Incidents
Quick Summary
ZAST.AI, based in Seattle, announced on January 5, 2026, that it has successfully completed a $6 million Pre-A funding round, with Hillhouse Capital as the lead investor. This funding increases ZAST.AI’s total capital to nearly $10 million, reflecting a growing recognition of its innovative approach to code security. The company focuses on reducing the high false positive rates that have long troubled security teams, allowing them to address real vulnerabilities more efficiently.
In 2025, ZAST.AI discovered hundreds of zero-day vulnerabilities in widely used open-source projects, leading to 119 CVE assignments. Notable affected projects included Microsoft Azure SDK, Apache Struts XWork, and Alibaba Nacos. These vulnerabilities were accompanied by executable Proof-of-Concept (PoC) evidence, which has already prompted patches from major technology companies.
Understanding ZAST.AI’s Innovation
ZAST.AI’s unique technical architecture combines Automated PoC Generation with Automated Validation. This allows the platform to conduct deep code analysis, generating and verifying PoC code that confirms the existence of vulnerabilities. This approach ensures that only confirmed vulnerabilities are reported, achieving a “
The Securityish Brief
{
“title_rewritten”: “ZAST.AI Secures $6 Million Funding to Enhance AI-Powered Code Security”,
“summary”: “ZAST.AI has raised $6 million in a Pre-A funding round led by Hillhouse Capital, bringing its total funding to nearly $10 million. The company aims to eliminate high false positive rates in security tools by providing actionable alerts. In 2025, ZAST.AI identified hundreds of zero-day vulnerabilities across popular open-source projects, resulting in 119 CVE assignments, which have already led to patches from major companies like Microsoft and Alibaba. This development highlights the need for more reliable security solutions in the software development industry.”,
“insight”: “
ZAST.AI, based in Seattle, announced on January 5, 2026, that it has successfully completed a $6 million Pre-A funding round, with Hillhouse Capital as the lead investor. This funding increases ZAST.AI’s total capital to nearly $10 million, reflecting a growing recognition of its innovative approach to code security. The company focuses on reducing the high false positive rates that have long troubled security teams, allowing them to address real vulnerabilities more efficiently.
In 2025, ZAST.AI discovered hundreds of zero-day vulnerabilities in widely used open-source projects, leading to 119 CVE assignments. Notable affected projects included Microsoft Azure SDK, Apache Struts XWork, and Alibaba Nacos. These vulnerabilities were accompanied by executable Proof-of-Concept (PoC) evidence, which has already prompted patches from major technology companies.
Understanding ZAST.AI’s Innovation
ZAST.AI’s unique technical architecture combines Automated PoC Generation with Automated Validation. This allows the platform to conduct deep code analysis, generating and verifying PoC code that confirms the existence of vulnerabilities. This approach ensures that only confirmed vulnerabilities are reported, achieving a “
Key Takeaways
{
“title_rewritten”: “ZAST.AI Secures $6 Million Funding to Enhance AI-Powered Code Security”,
“summary”: “ZAST.AI has raised $6 million in a Pre-A funding round led by Hillhouse Capital, bringing its total funding to nearly $10 million. The company aims to eliminate high false positive rates in security tools by providing actionable alerts. In 2025, ZAST.AI identified hundreds of zero-day vulnerabilities across popular open-source projects, resulting in 119 CVE assignments, which have already led to patches from major companies like Microsoft and Alibaba. This development highlights the need for more reliable security solutions in the software development industry.”,
“insight”: “
ZAST.AI, based in Seattle, announced on January 5, 2026, that it has successfully completed a $6 million Pre-A funding round, with Hillhouse Capital as the lead investor. This funding increases ZAST.AI’s total capital to nearly $10 million, reflecting a growing recognition of its innovative approach to code security. The company focuses on reducing the high false positive rates that have long troubled security teams, allowing them to address real vulnerabilities more efficiently.
In 2025, ZAST.AI discovered hundreds of zero-day vulnerabilities in widely used open-source projects, leading to 119 CVE assignments. Notable affected projects included Microsoft Azure SDK, Apache Struts XWork, and Alibaba Nacos. These vulnerabilities were accompanied by executable Proof-of-Concept (PoC) evidence, which has already prompted patches from major technology companies.
Understanding ZAST.AI’s Innovation
ZAST.AI’s unique technical architecture combines Automated PoC Generation with Automated Validation. This allows the platform to conduct deep code analysis, generating and verifying PoC code that confirms the existence of vulnerabilities. This approach ensures that only confirmed vulnerabilities are reported, achieving a “
Key Terms & Concepts
- :
Your 5-Minute Securityish Brief
A weekly digest of cybersecurity news, phishing alerts, privacy tips, and emerging threats, simplified so anyone can understand what matters and why.
Securityish
Securityish explains cybersecurity, scams, data breaches, and privacy risks in simple language so you know what’s happening and how to protect yourself.
Navigation
Your 5-Minute Cybersecurity Brief
A weekly digest of cybersecurity news, phishing alerts, privacy tips, and emerging threats, simplified so anyone can understand what matters and why.