Silverfort acquires Fabrix Security, a one-year-old AI access-decision engine
Price undisclosed, reported as tens of millions for a company founded in 2025. Fabrix supplies the identity knowledge graph and decisioning; Silverfort supplies the enforcement point that already sits in front of legacy systems.
Silverfort has acquired Fabrix Security, an AI-native identity security company founded in 2025 by chief executive Raz Rotenberg, a founding engineer at Run:ai, and chief technology officer Ofir Yakovian, previously at Orca Security and Microsoft Entra. The value was not disclosed; Calcalist put it in the tens of millions. Fabrix uses an identity knowledge graph and AI agents to analyse access activity, organisational context, and intent, then make access decisions for both human and non-human identities. Silverfort pairs that with its Runtime Access Protection layer, which enforces decisions across systems that cannot be modified to speak modern protocols. Most joint capabilities are due in the second half of 2026.
Why it matters
Silverfort's whole business is being an enforcement point where one is otherwise impossible: Active Directory, service accounts, legacy applications, the things that never got an MFA prompt because there was nowhere to put one. What it has lacked is a decision engine sophisticated enough to say yes or no at agent speed rather than by static policy.
That is a coherent buy, and a useful contrast with the year's other deals. Most acquirers bought discovery and posture. Silverfort bought decisioning to attach to enforcement it already owns, which is the harder half.
Judge it on latency and failure mode. An inline enforcement point that consults an AI decision engine has a new dependency in the authentication path, so ask what happens when that engine is slow or unreachable. Our ITDR guide covers the evaluation.
Source: Silverfort
Related on Start with Identity
- BlogOkta buys Permiso Security to put ITDR inside the identity provider
Okta signed a definitive agreement to acquire Permiso Security, reportedly for just under 200 million dollars in an almost all-cash deal. It moves detection of
- Blog1Password buys Apono, moving from credential vault to access control plane
Reported at 250 to 300 million dollars, the deal gives 1Password just-in-time privileged access across AWS, Azure, GCP, Kubernetes, Snowflake, and Databricks, a
- BlogSnowflake buys Natoma for about 110 million dollars to govern agent access to data
A two-year-old company with 27 people and a 7 million dollar seed round sold for roughly 110 million. What Snowflake bought is a verified MCP server library and
- GlossaryAccount Takeover (ATO)
When an attacker gains control of a legitimate account, often via stolen credentials, phishing, or session theft. A leading cause of breaches and fraud. The dis
- GlossaryISPM
Identity Security Posture Management. Continuous assessment of identity-related misconfigurations and risk, such as dormant accounts, weak MFA coverage, and ris
- GlossaryITDR
Identity Threat Detection and Response. Security tooling that detects and responds to identity-based attacks such as account takeover, privilege escalation, and