Fleuret AI raises €4M to advance AI-powered offensive cybersecurity in Europe
Tech.eu Tamara Djurickovic ● Covered by 2 sources
French startup Fleuret AI raised €4 million to automate penetration testing with AI. It wants security checks to run continuously, not just as a one-off audit.
Based on reporting by Tech.eu, Tamara Djurickovic — read the original for the full story.
Summary, retelling and take written by AI under human oversight; images are AI-generated illustrations. How we work · Report an error
Fleuret AI has raised €4 million in pre-seed funding to build an AI system for offensive cybersecurity. The French startup is aiming at a very old problem with a very current fix: companies keep changing their systems, but pentests are still often treated like snapshots.
The round was led by RAISE Ventures, with Auriga Cyber Ventures, Wind, Better Angle and several cybersecurity angels also backing the company. Fleuret AI was founded by Yanis Grigy, its CEO, and Augustin Ponsin, its CTO.
The pitch is not just “faster pentesting.” Fleuret AI wants to turn it into something ongoing. Its platform is built around five steps: mapping exposed systems, finding vulnerabilities, proving whether they can actually be exploited, helping teams fix them, and checking that the fixes stuck. That is the gap the company is going after: software keeps evolving, while a traditional test only captures one moment in time.
To do that, the startup is using two AI agents, Emile and Champollion. They map a company’s environment, inspect applications, APIs and infrastructure, and try to exploit weak spots. Each issue comes with proof of compromise, then the system keeps watching for changes and can rerun tests when the attack surface shifts.
And the company is leaning hard into the practical side of remediation too. It is building tools to prioritise issues by exploitability, plug into existing technical workflows, retest systems automatically and generate reports showing whether vulnerabilities have been fixed. Fleuret AI says its AI agents run from Europe on European infrastructure, which is meant to fit sovereignty requirements in regulated sectors. The new money will go into hiring in AI, software development and offensive cybersecurity, while accelerating the platform itself.
My take — AI-written commentary, not fact-checked reporting
This is the kind of security startup Europe should be funding more often: boring in the best way, close to real enterprise pain, and not pretending a demo is a product. The sovereignty angle is no side dish either; if regulated sectors care where systems run, then “European infrastructure” stops being marketing and becomes sales. The only thing more expensive than a breach is pretending annual pentests are enough.
Read more about this at: Tech.eu