Kusari Raises $8 Million in Pre-Seed and Seed Funding
January 18, 2024

Kusari raised $8 million through combined investments in Pre-Seed and Seed Round funding.

The Seed Round was led by J2 Ventures and co-led by Glasswing Ventures with participation from Unusual Ventures, which previously invested $2 million in Pre-Seed funding.

Kusari was established in June 2022 to address the lack of transparency within the software supply chain and development lifecycle, which can lead to costly security vulnerabilities. Cybersecurity Ventures recently reported that the global annual cost of software supply chain attacks to businesses will reach $60 billion in 2025, and is expected to increase to $138 billion by 2031. Transparency into the software supply chain will allow organizations to identify potential weak points and resolve issues faster, helping them maintain trust with partners and minimize risk.

Kusari’s founders, Tim Miller, Michael Lieberman, and Parth Patel, are seasoned navigators of software supply chains with experience leading supply chain security and cloud engineering at Citi, Mitsubishi UFJ Financial Group (MUFG), Bridgewater Associates, and Raytheon. They have personally dealt with the complicated problem of securing software delivery while enabling developer productivity within highly regulated, security-conscious environments. The founding team provides technical leadership and guidance in the Open Source Security Foundation (OpenSSF), which brings together the industry's most important open source security initiatives and the individuals and companies that support them. The Kusari founders also have created many open source projects, including Graph for Understanding Artifact Composition (GUAC), which is supported by industry-leading financial services and technology companies, including Yahoo!, Guidewire, Google, Microsoft, Red Hat, and ClearAlpha Technologies.

Open source libraries comprise the majority of most software written today. Each relies on other libraries, creating a complicated tree of dependencies. Securing a software supply chain starts with understanding how each piece is put together. It can be deceivingly difficult for an organization to understand what this looks like, as modern software development practices work to hide this complexity in favor of easy development.

Kusari introduced and achieved market validation for GUAC in 2023 to address this specific problem. GUAC is an open source tool that addresses the lack of transparency by organizing software supply chain information, like software bills of materials (SBOMs), into a knowledge graph. The project has a diverse community of 50 contributors and has garnered 1.1k GitHub stars.

Kusari will use the funding to accelerate and build on its continued momentum in developing software supply chain security solutions that enable organizations to achieve actionable insights, reduce incident response costs, and relieve the burden on security and developer teams.

“Kusari’s blend of team, technology, and significant adoption, even at this early stage, position them to be a market leader. Our initial indication from government agencies for what they’re building revealed a massive commercial market. GUAC’s potential cannot be overstated,” said Jonathan Bronson, Ph.D., co-founder and Managing Partner of J2 Ventures.

"Code breaches are increasingly becoming a top priority for Chief Information Security Officers,” said Kleida Martiro, Partner, Glasswing Ventures. “In an era where software supply chain attacks are on the rise, the demand for stringent security measures has never been more critical. At the helm of Kusari, a team of seasoned industry veterans, including Tim, Michael, and Parth, are steering the company toward new heights. We are immensely proud of our investment in Kusari. Their unparalleled knowledge and innovative approach position them at the cutting edge, as they lead the charge in defining and delivering groundbreaking security solutions in this vital and evolving space.”

“Identifying where vulnerabilities lie in your software supply chain is complex and time-consuming. With the ever-increasing number of vulnerable packages discovered each year, organizations need a single source of truth about their code,” said Tim Miller, co-founder and CEO of Kusari. “Kusari will be that source of end-to-end transparency and will bring about insights for users to drive more secure outcomes for their organizations. Our focus is on helping users solve their very real security problems.”

Share this

Industry News

April 25, 2024

JFrog announced a new machine learning (ML) lifecycle integration between JFrog Artifactory and MLflow, an open source software platform originally developed by Databricks.

April 25, 2024

Copado announced the general availability of Test Copilot, the AI-powered test creation assistant.

April 25, 2024

SmartBear has added no-code test automation powered by GenAI to its Zephyr Scale, the solution that delivers scalable, performant test management inside Jira.

April 24, 2024

Opsera announced that two new patents have been issued for its Unified DevOps Platform, now totaling nine patents issued for the cloud-native DevOps Platform.

April 23, 2024

mabl announced the addition of mobile application testing to its platform.

April 23, 2024

Spectro Cloud announced the achievement of a new Amazon Web Services (AWS) Competency designation.

April 22, 2024

GitLab announced the general availability of GitLab Duo Chat.

April 18, 2024

SmartBear announced a new version of its API design and documentation tool, SwaggerHub, integrating Stoplight’s API open source tools.

April 18, 2024

Red Hat announced updates to Red Hat Trusted Software Supply Chain.

April 18, 2024

Tricentis announced the latest update to the company’s AI offerings with the launch of Tricentis Copilot, a suite of solutions leveraging generative AI to enhance productivity throughout the entire testing lifecycle.

April 17, 2024

CIQ launched fully supported, upstream stable kernels for Rocky Linux via the CIQ Enterprise Linux Platform, providing enhanced performance, hardware compatibility and security.

April 17, 2024

Redgate launched an enterprise version of its database monitoring tool, providing a range of new features to address the challenges of scale and complexity faced by larger organizations.

April 17, 2024

Snyk announced the expansion of its current partnership with Google Cloud to advance secure code generated by Google Cloud’s generative-AI-powered collaborator service, Gemini Code Assist.

April 16, 2024

Kong announced the commercial availability of Kong Konnect Dedicated Cloud Gateways on Amazon Web Services (AWS).

April 16, 2024

Pegasystems announced the general availability of Pega Infinity ’24.1™.