Adallom

Adallom was a cloud security company based in Menlo Park, California. It secured enterprise software-as-a-service (SaaS) application usage, audited user activity, and protected employees and digital assets from threats.[1]

Adallom was acquired by Microsoft for $320 million in July 2015.[2][3] The Adallom product was rebranded as Microsoft Cloud App Security (MCAS) and announced in general availability as of April 2016.[4] In November 2021, Microsoft Cloud App Security was rebranded as Microsoft Defender for Cloud Apps.[5]

History

Adallom was founded in 2012 by Assaf Rappaport, Ami Luttwak, and Roy Reznik, former members of the Israeli Intelligence Corps Unit 8200 and alumni of the Talpiot program. Adallom’s name comes from Ad Halom (עד הלם), “the last line of defense.” (It means 'until here' or 'until today' in direct translation, and is biblical Hebrew.) [6] In 2013, the founding team was joined by Michael Nicosia. Adallom secured $4.5 million in Series A funding from Doug Leone of Sequoia Capital and Zohar Zisapel.[7] The company secured $15 million in series B funding led by Index Ventures with contributions from Sequoia Capital Israel.[8]

Adallom was named by CRN as the 10 Coolest Security Startups of 2013.[9]

Following Adallom's acquisition by Microsoft, its co-founders went on to work together again, cofounding Wiz, Inc.[10]

Product

The founders created Adallom with the idea that SaaS as a class is secure, but the way employees utilize SaaS is not. In November 2013, Adallom launched a security service that audited activities performed in SaaS applications and developed intelligence to defend against security issues. It provided tools to build a consistent security policy across all cloud applications in use within an enterprise.[11]

Adallom’s Smart Engines technology worked similarly to the way credit card companies track transactions that appear out of the ordinary stopping attacks with near-real-time reports of suspicious behavior.[12]

In December 2013, Adallom discovered and reported a token hijacking vulnerability (CVE-2013-5054) in Microsoft Office 365.[13] This identity theft vulnerability allowed attackers to grab user identities and steal email and documents.[14] The problem was reported by Noam Liran, chief software architect at Adallom, and the fix was addressed in Microsoft Security Bulletin MS13-104.[15]

References

  1. Messmer, Ellen (November 12, 2013). “Start-up Adallom takes on SaaS security monitoring/auditing” Network World. Retrieved January 9, 2014^
  2. Microsoft buys Israeli cloud security co Adallom for $320m, With its development center in Tel Aviv, the cyber security company has raised $49.5 million to date. Globes English, July 19, 2015, retrieved July 20, 2015^
  3. Microsoft Confirms Purchase Of Cloud Security Firm Adallom – TechCrunch techcrunch.com, retrieved 2018-06-26^
  4. Microsoft marches forward with its security plan, releasing Cloud App Security TechCrunch, retrieved 2020-01-28^
  5. Announcing Microsoft Defender for Cloud Apps microsoft.com, retrieved 2021-11-09^
  6. Marshall, David (November 18, 2013). “Startup Adallom takes on SaaS security challenges” InfoWorld. Retrieved January 9, 2014^
  7. Shelach, Shmulik (December 12, 2012). “Content security co Adallom raises $4.5m” Globes. Retrieved January 9, 2014^
  8. Darrow, Barb (January 20, 2014). “Security startup Adallom scores $15M in funds to build out sales, R&D” GigaOM. Retrieved January 30, 2014^
  9. Westervelt, Rob (December 12, 2013). “The 10 Coolest Security Startups Of 2013” CRN. Retrieved January 9, 2014^
  10. Spitzer, Harry (October 22, 2024). “With a Little Help From Their Friends” Sequoiacap.com. Retrieved August 30, 2025^
  11. Kepes, Ben (November 12, 2013). [https://www.forbes.com/sites/benkepes/2013/11/12/the-next-israeli-success-story-adallom-uber-control-for-cloud-customers/ “The Next Israeli Success Story? – Adallom – Uber Control for Cloud Customers”] Forbes. Retrieved January 9, 2014^
  12. Williams, Alex (November 25, 2013). “The Danger Of Laissez-Faire Security Attitudes” TechCrunch. Retrieved January 9, 2014^
  13. Walker, Danielle (December 10, 2013). “Patch Tuesday update addresses 24 bugs, including exploited TIFF zero-day” SC Magazine. Retrieved January 9, 2014^
  14. Messmer, Ellen (December 10, 2013). “Identity-theft vulnerability fixed in Microsoft Office 365, says security firm” Network World. Retrieved January 9, 2014^
  15. Microsoft (December 10, 2013). "Microsoft Security Bulletin MS13-104 - Important." Retrieved January 9, 2014^