AI Security Is Suddenly a Deal Frenzy: 29 Acquisitions in Six Months
Cybersecurity M&A hit 219 deals in the first half of 2026, and the fastest-growing slice is companies that protect — or police — autonomous AI agents.
If you want to know where the money believes AI is heading, watch the acquirers. Cybersecurity M&A reached 219 completed deals in the first half of 2026, and the fastest-growing category is AI security: 29 acquisitions in six months, up from just 10 in all of last year.
The driver is the rise of autonomous agents. Enterprises are deploying AI systems that browse, write code, move money and talk to customers — and every one of those capabilities is a new attack surface.
What buyers are actually buying
Three capabilities dominate deal theses. First, guardrail platforms that constrain what agents can do and log everything they touch. Second, prompt-injection and model-attack defense — protecting AI systems from malicious inputs hidden in web pages, documents and emails. Third, identity for machines: verifying which agent did what, with whose authority.
Microsoft's record July Patch Tuesday — 570 vulnerabilities, some found by its own internal AI systems — captures the strange duality of the moment: AI is simultaneously the biggest new risk and the most powerful new defender.
The takeaway
Security has historically lagged each computing platform shift by years, at painful cost. The M&A wave suggests the industry is trying to compress that lag for the agent era — and that the next great security giants are being assembled right now, one acquisition at a time.