Skip to content

NewCore Secures $66 Million for Identity and Access Control of AI Agents

Share on:

Bottom Line: NewCore addresses the growing security gap where AI agents often operate with poorly managed human credentials or unmarked static keys.

Israeli-American cybersecurity startup NewCore has completed $66 million in total funding and is building a platform that centrally manages human and autonomous AI identities within enterprises. The focus is on mastering access control for AI agents, which increasingly operate with productive privileges in corporate networks.

The startup was founded by industry veterans Zohar Alon, Amihai Neiderman, and Erez Yarkoni. Alon previously led cloud security company Dome9, which was acquired by Check Point. Neiderman was research director in the Israeli intelligence unit Unit 8200 and founder of Nym Health. Yarkoni was IT director at T-Mobile US and Telstra. The funding round is led by Cyberstarts, Index Ventures, and Evolution Equity Partners; notable angel investors including Assaf Rappaport (CEO of Wiz) also participated. NewCore is valued at $300 million and operates offices in Tel Aviv and San Francisco with currently over 50 employees.

The problem NewCore addresses: Autonomous AI agents such as Claude Code, Codex, or the IDE Cursor frequently receive personal access keys from employees or use unmanaged static secrets to access enterprise resources. This creates blind spots in access control and auditability. The platform captures all identities in the network—humans, machines, and agents—in a central system and uncovers orphaned or unregulated AI agents. This enables a unified approach to managing and controlling all actors in the enterprise.

Technically, NewCore uses a Secure-Split-Key architecture that addresses classic protocol gaps in SAML and OIDC. The approach splits authentication keys so that no single key acts as a central point of attack. This is designed to block session hijacking (Adversary-in-the-Middle), Golden-SAML attacks, and token replay procedures. For user verification, the platform uses VisualMFA, which incorporates hardware-bound TPM modules. Migration of existing directories and policies is intended to be automated within a few hours without operational downtime.


Source: www.it-daily.net · Published June 16, 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.1.

Share on: