
Murphy Security
Software supply chain security and vulnerability detection.
Date | Investors | Amount | Round |
---|---|---|---|
* | CNY20.0m | Seed | |
Total Funding | 000k |
Murphy Future Technology (Beijing) Co., Ltd., operating as Murphy Security, is a technology company focused on software supply chain security. Founded in 2020, the company develops products and services to address security challenges such as vulnerability attacks, data breaches, and open-source license compliance. The core team possesses over a decade of experience in enterprise security construction from companies like Baidu and Huawei.
The company's primary offering involves Software Composition Analysis (SCA), a process that automatically identifies open-source components within a codebase to manage security risks and licensing issues. Murphy Security provides tools that integrate into the development lifecycle, including IDE plugins and command-line interface (CLI) tools for CI/CD pipelines. These tools scan projects, identify dependencies, and check them against a proprietary vulnerability database to detect security flaws. The platform aims to accurately identify real vulnerabilities and enable rapid repairs, filtering out a high percentage of non-critical alerts to improve efficiency for developers.
Murphy Security operates on a freemium model, offering a free tier for a limited number of users and projects, and an enterprise version with unlimited usage and advanced features available for private deployment. The company serves clients across various sectors, including internet, finance, and advanced manufacturing. In early 2025, Murphy Security secured a Pre-A funding round of tens of millions of yuan, led by Hundsun Technologies and Fuzhuo Capital, to support market expansion and research into AI technologies.
Keywords: Software Composition Analysis, SCA, software supply chain security, open-source security, vulnerability detection, DevSecOps, dependency management, license compliance, application security, cybersecurity, CI/CD integration, vulnerability database, code scanning, developer tools, software bill of materials, SBOM, static code analysis, vulnerability remediation, open-source governance, application security testing