XOOMAR
Futuristic identity security hub protecting humans, machines and AI agents with shields and data streams.
CybersecurityJune 21, 2026· 6 min read· By XOOMAR Insights Team

$66M Bet Throws NewCore Into AI Identity Security Fight

Share
Updated on June 21, 2026

$66 million is a heavy seed check for an identity startup, but NewCore is aiming at a larger shift: enterprises now need to govern humans, machines, and AI agents from the same security control plane.

XOOMAR Intelligence

Analyst Take

66/ 100
Moderate
4 sources analyzedLow confidenceTrend10Freshness100Source Trust85Factual Grounding94Signal Cluster20

The Israeli cybersecurity startup emerged from stealth with $66 million in seed funding from Cyberstarts, Index Ventures, and Evolution Equity Partners, according to SecurityWeek. NewCore says it has built a security-first identity platform designed for human users, machine identities, and agentic identities across enterprise environments.

NewCore exits stealth with $66 million for identity security across three identity classes

NewCore was founded by Zohar Alon, CEO, Amihai Neiderman, CTO, and Erez Yarkoni, CRO. SecurityWeek describes the Tel Aviv-based company as founded by cybersecurity veterans and Israeli intelligence alumni.

The pitch is direct: identity systems built mainly around employee access now have to handle service accounts, machine credentials, and AI agents that may act across production systems. NewCore says its platform discovers, secures, and governs those identities across an organization’s environments.

“Identity is broken, but it has become the control plane of the modern enterprise. We not only built NewCore for the workforce that actually exists today, one of humans, machines, and agents, but we built it security-first from day one. The goal isn’t just to manage identity better. It’s to remove categories of risk that the industry and our customers have lived with for too long,” Alon said.

The company’s core technical claim centers on Secure Split Key, or SSK, which NewCore says is built to reduce risks around SAML signing infrastructure. The company says SSK targets attack classes including adversary-in-the-middle session theft, Golden SAML, and token replay, a risk highlighted by the $1.9B phishing empire.

NewCore also says the platform includes an integration package for leading agents, including Claude Code, Codex, and Cursor. Those integrations matter because coding agents often need access to repositories, development tools, cloud resources, and internal workflows.

TechCrunch reported that the round values NewCore at $300 million after investment, and that the company has grown to more than 50 employees across the U.S. and Israel. TechCrunch also reported that the platform is being used by fewer than 10 customers and more than 10 design partners, with the startup expecting to begin charging customers this summer.


AI agents push NewCore beyond employee login security

NewCore’s timing is the point. Its NewCore identity platform is not being sold as another login layer for employees. The startup is framing identity as the place where AI adoption becomes an enterprise security problem.

AI agents, in this context, means software systems that can act with some autonomy inside business tools. That can include coding assistants or agents that interact with enterprise systems. The security challenge is not whether those tools are useful. It is whether companies can assign them permissions, track their actions, revoke their access, and keep them from inheriting sloppy credentials.

NewCore says its platform was designed with agentic governance as a core constraint. That phrase matters. It means AI agents are treated as first-class identities with their own control paths, rather than being buried inside service accounts or manually shared credentials.

Identity type NewCore’s stated focus Security problem it targets
Human users Workforce identity and verification Phishing, session theft, social engineering
Machine identities Credentials and access across systems Orphaned accounts, unmanaged secrets, exposed access
AI agents Agentic identity, governance, revocation Ungoverned agents acting inside enterprise systems

NewCore also says it continuously discovers and maps identities, including shadow accounts, orphaned credentials, and ungoverned agents. That claim goes straight at a problem security teams already know well: assets that are not visible do not reliably get governed.

The company says it can deploy in hours using an agent-driven coexistence model that migrates existing federations and policies with zero downtime. That is a strong claim, and enterprise buyers will likely test it hard. Identity migrations can touch authentication, authorization, user experience, internal apps, and security operations all at once.

For security teams weighing where identity data flows after login, XOOMAR has covered adjacent tooling pressure in Open Source SIEM Can Bleed Security Teams Dry Fast and Best SIEM Tools That Won't Drown Lean Security Teams. NewCore’s pitch sits upstream from that problem: reduce identity risk before it turns into detection noise.

NewCore faces a crowded identity market that won’t reward vague AI security claims

NewCore is entering a market where buyers already spend heavily on identity governance, privileged access, cloud identity, and non-human identity controls. The AI-agent angle gives the startup a sharp wedge, but it does not remove the hard questions.

Enterprise customers will ask what the NewCore identity platform can actually discover, how policies are enforced, and how it coexists with existing identity stacks. They will also want proof that AI-agent controls are built into the product, not wrapped around it as a marketing label.

TechCrunch reported that established identity providers including Okta and Microsoft Entra have begun adding capabilities for AI agents. Alon argued to TechCrunch that those efforts extend platforms built for human employees, while NewCore was designed from the start for a workforce made up of humans, machines, and AI agents.

“We know for sure that the scale and the complexity that those things [AI agents] are going to add to 15- or 20-year-old identity platforms are going to break them,” Alon told TechCrunch.

That is NewCore’s central bet. If AI agents become common workplace actors, identity systems will need lifecycle controls, trust scoring, revocation, and human oversight for software workers that may operate faster than standard review cycles.

The near-term test is less philosophical. NewCore needs customer references, deployment evidence, and measurable risk reduction. The startup has funding, experienced founders, and a timely thesis. Now it has to prove that NewCore funding bought more than a polished stealth launch.

The next markers to watch are concrete: broader enterprise adoption, clearer customer traction, how the platform handles existing identity providers in live environments, and whether companies actually treat AI agents as identities that need governance from day one.

The Bottom Line

  • NewCore’s $66 million seed round signals strong investor demand for identity security built around humans, machines, and AI agents.
  • The company is targeting risks in SAML signing infrastructure, including Golden SAML and token replay attacks.
  • Its launch reflects a broader enterprise shift toward treating identity as the central security control plane.

NewCore Seed Funding

Seed funding
$ million66
XOOMAR

Written by

XOOMAR Insights Team

Research and Editorial Desk

The XOOMAR Insights Team pairs automated research with human editorial judgment. We track hundreds of sources across technology, fintech, trading, SaaS, and cybersecurity, cross-check the facts, and explain what happened, why it matters, and what to watch next. We do not just rewrite headlines. Every article is fact-checked and scored for reliability before it goes live, and we link back to the original sources so you can verify anything yourself.

Related Articles

AI agents receiving secure digital identities behind shields in a dark cybersecurity officeCybersecurity

$66M Bet Tests AI Agent Identity Before NewCore Charges

NewCore raised $66M at a $300M valuation to solve a looming problem: AI agents need identities, limits, and offboarding.

Jun 15, 20268 min
Generic TV boxes linked as proxy nodes with shields and locks in a dark cybersecurity sceneCybersecurity

Popa Botnet Pulls Alarum Into Android TV Proxy Scandal

Researchers say Popa turned cheap Android TV boxes into proxy relays linked to Alarum's NetNut, putting consent and investor risk in focus.

Jun 20, 202611 min
padlock on laptop with light trailsCybersecurity

Phishing Test Tricks OpenClaw AI Agent Into Leaking AWS Keys

OpenClaw fell for simulated phishing and leaked AWS keys, database logins, and customer data. AI agents need tighter guardrails.

Jun 9, 20266 min
Futuristic AI defense shield protecting encrypted data networks in a dark cybersecurity command centerCybersecurity

Dream's $260M Raise Crowns Sovereign AI's New Power Broker

Dream's $260M raise values it at $3B and frames sovereign AI defense as the next venture battleground.

Jun 19, 20267 min
Government AI cybersecurity command center with shields protecting national data networksCybersecurity

Dream AI Cybersecurity Hauls In $260M as States Take Control

Dream's $260M raise turns AI cybersecurity into a sovereignty fight, with governments pitched on owning their cyber defense stack.

Jun 18, 20268 min
AI agent moving digital payments through a banking system while a user hesitates over a smartphone.Fintech

AI Agents Crack Open Banks' Money-Moving Blind Spot

AI agents are gaining payment power before banks can verify whether software actions match a customer's intent.

Jun 21, 20268 min
Tense diplomatic scene over a glowing world map highlighting Lebanon and the eastern Mediterranean.Global Trends

Trump Corners Netanyahu as Lebanon Threatens Iran Deal

Trump's public Lebanon warning turns Netanyahu's Hezbollah war into a threat to his Iran deal.

Jun 20, 20269 min
Lebanese beach turtle nests near a damaged home, with a subtle world map and global connection lines.Global Trends

Israeli Strike Kills Mona Khalil, Lebanon's Turtle Guardian

Mona Khalil spent 25 years protecting Lebanon's turtle nests. An Israeli strike hit her home, and the beach lost its fiercest defender.

Jun 20, 20269 min
Businessman silhouette in Yangon with security and global map connections signaling legal riskGlobal Trends

Airport Detention Pulls Adam Castillo Into Myanmar Fight

Adam Castillo’s Myanmar detention turns an AmCham finance dispute into a legal risk signal for foreign business figures in Yangon.

Jun 21, 20267 min
Federal cyber agents dismantle a vast AI phishing network behind glowing shields and locks.Cybersecurity

FBI Crushes $1.9B Outsider Enterprise Phishing Empire

The FBI says Outsider Enterprise ran 1M phishing URLs and 9,000 fake sites, tying the AI-assisted service to $1.9B in losses.

Jun 21, 20266 min

Don't miss the signal

Get our weekly roundup of the stories that matter across tech, fintech, and trading. No noise, just signal.

Free forever. No spam. Unsubscribe anytime.