InforCapital
Startup Fundraising

Provally Seed Funding Boosts AI Code Security Analysis

South Korean startup Provally raises seed capital to enhance code security analysis, significantly reducing false positives with its AI-driven AutoProof platform.

Share:
AM
Alvaro de la Maza

Partner at Aninver

Key Takeaways

  • Provally raised a new round (Seed) from Bluepoint Partners.
  • Sector: Technology, Software & Gaming, Artificial Intelligence (AI).
  • Geography: South Korea.

Analysis

South Korean cybersecurity innovator Provally has successfully closed its initial seed funding round, aiming to revolutionize code security analysis by drastically reducing false positives. The investment, led by Bluepoint Partners through its Geek’s School accelerator program, will fuel the development and market penetration of its AI-powered platform.

The core challenge Provally addresses is a significant inefficiency in traditional Static Application Security Testing (SAST) tools. These legacy systems often generate a high volume of misleading alerts, with reported false positive rates ranging from 60% to 80%. This deluge of non-critical issues forces security teams to expend valuable resources chasing phantom threats rather than focusing on genuine vulnerabilities.

Provally differentiates itself with its proprietary technology, AutoProof. This AI-driven solution generates actual exploit code and tests it within a secure, isolated environment. This method allows for precise validation of exploitability, achieving an impressive reduction in false positives to approximately 2%. This accuracy is crucial for streamlining security workflows and enhancing overall application integrity.

The company's founding team brings deep expertise from the offensive security domain. Co-founders Gwangjun Choi (CEO) and Hosu Choi (CPO) are former offensive security specialists from S2W, a prominent cyber threat intelligence firm. Their prior experience includes identifying zero-day vulnerabilities in software from major technology players like Microsoft, Samsung, and Naver, providing them with a unique attacker's perspective to build more effective defensive tools.

The market tailwinds for Provally are substantial. Increasingly stringent regulations, such as PCI DSS 4.0 and NYDFS 500, are mandating more rigorous source code analysis. Furthermore, the proliferation of AI-generated code, which studies indicate can contain security flaws in up to 45% of cases, creates a growing need for advanced security solutions. The application security market itself is projected for robust growth, with annual expansion rates estimated between 15% and 20%.

“The Provally team demonstrated exceptional agility in transforming their offensive security acumen into a market-ready product during the Geek’s School program,” commented Hwi-jae Ahn, Investment Analyst at Bluepoint Partners. “Securing an early contract within the financial sector underscores the immediate demand for their solution. With regulatory pressures mounting and the rise of AI-generated code, this represents a critical juncture for the company’s growth trajectory.”