Dossier · Acquired asset · 1 independent source
Lacoon Mobile Security
Last updated: Jul 31, 2026
Lacoon Mobile Security was an Israeli mobile-threat-defense company that developed detection and risk-analysis technology for iOS and Android devices, applications, and network activity. Check Point completed its acquisition on 2 April 2015, so this record describes Lacoon as an acquired security asset rather than an independent startup operating today.
Visit WebsiteCompany Overview
Lacoon built mobile threat prevention for organizations whose phones had become part of the enterprise attack surface. Check Point's acquisition announcement described coverage across the device, application, and in-network layers, with support for both iOS and Android. The product direction combined mobile application threat emulation, behavioral risk analysis, real-time anomaly detection, and intelligence that could feed existing security and mobility infrastructure. Lacoon's own 2013 launch account also described sandboxing, static code analysis, and behavioral detection as core research areas. This is more specific than conventional mobile-device management: MDM can enforce configuration and access policy, while a mobile threat-defense layer attempts to identify malicious applications, compromised devices, suspicious behavior, or hostile network conditions.
The original customer problem was commercially credible. BYOD and mobile-first workforces created a security gap between endpoint policy and what actually happened on a handset, particularly when users accessed corporate data from outside the traditional perimeter. Lacoon positioned MobileFortress around protection from cybercrime and espionage, and Check Point said the technology was deployment-proven and intended to extend its enterprise mobile-security portfolio. Public reporting at the time identified enterprise customers including Samsung, Intel, and Dell, but the available evidence does not establish current customer relationships, retention, revenue, or the scale of those deployments. Historical company-size sources range from 11-50 employees to a report of approximately 40 people at acquisition; that should be treated as period-specific staffing evidence, not a current headcount.
Check Point announced and completed the acquisition in April 2015, integrating the founders and team into its operations and incorporating the acquired capabilities into its mobile-security products. Check Point's later public filings identify Lacoon Security Ltd. as a subsidiary, while the current official product destination is Check Point's Harmony Mobile Security page rather than a Lacoon-operated site. The transaction is therefore the strongest commercialization signal: a major security platform judged the technology strategically useful and capable of complementing its existing mobility offering. It is not evidence that Lacoon remains a separately managed vendor, that its original product is still sold under the Lacoon name, or that every historical technical component remains in the current product.
The dual-use case is real but bounded. Detection of malicious mobile applications, device compromise, anomalous behavior, and unsafe network activity can protect commercial enterprises, public-sector workers, and defense organizations using mobile communications. These capabilities are relevant to secure access to sensitive systems and to reducing the risk that a compromised handset becomes a path into a mission-support environment. However, the public record documents enterprise mobile security, not a verified military deployment, intelligence contract, or classified capability. Strategic relevance therefore comes from mobile endpoint resilience and the acquisition's validation of the category, while direct company-level diligence relevance is low because the asset is owned and integrated by a public company.
Dual-Use Assessment
Lacoon's core mobile-threat-defense technology has substantive commercial and security applicability: mobile application analysis, device-risk assessment, behavioral detection, and network-threat identification can protect enterprise, public-sector, and defense-support workforces. The evidence supports a defense-adjacent resilience use case, not a claim of military deployment or specialized offensive capability. The dual-use value is consequently meaningful but constrained by the age of the public evidence and the lack of an independent Lacoon product or roadmap after acquisition.
Strategic Fit Assessment
Lacoon is not an independent strategically relevant company: Check Point completed the acquisition in 2015 and integrated the founders, team, and technology into its operations. The acquisition is useful as historical evidence that mobile threat defense was strategically valuable to a major cybersecurity platform, but there is no standalone equity, financing, governance, or current company roadmap to diligence. Any present commercial exposure would be assessed through Check Point rather than through Lacoon as a separate asset.
Strategic Value to U.S.-Israel Alliance
The asset's strategic value lies in mobile endpoint resilience and in the technology's integration into a broader security platform. Mobile devices can carry credentials, business data, and access tokens outside conventional network controls; detecting malicious applications, anomalous behavior, and in-network threats therefore remains relevant to enterprise and public-sector security. For defense-oriented analysis, Lacoon is a historical Israeli cyber acquisition and a reference point for the commercialization of mobile security, not verified evidence of a defense program or an independently controllable capability.
Key Technologies
- Mobile application threat emulation
- Sandboxing and static code analysis
- Behavioral risk analysis and real-time anomaly detection
- iOS and Android device, application, and in-network threat detection
- Mobile device risk and vulnerability assessment for BYOD
- Mobile security intelligence integrated with enterprise mobility infrastructure
Use Cases & Applications
- Detecting malicious or suspicious applications on managed and BYOD smartphones
- Identifying compromised iOS and Android devices before they access sensitive services
- Assessing mobile risks created by enterprise BYOD programs
- Correlating device, application, and network indicators for mobile incident response
- Protecting mobile access used by regulated enterprises and public-sector workforces
- Reducing handset compromise risk in defense-support and other mission-critical distributed operations
Sources and verification
This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work; the research methodology documents how evidence is graded, what counts as an independent source, and why some profiles are excluded from search indexing.
This record lists 5 public references used for company identity, status, positioning, or material-claim review.
Public sources
The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.
- checkpoint.com Public source used for profile verification.
- checkpoint.com Public source used for profile verification.
- blog.checkpoint.com Public source used for profile verification.
- checkpoint.com Public source used for profile verification.
- LinkedIn company page Public source used for profile verification.
- Profile update timestamp Last updated in the Claw & Talon database on Jul 31, 2026.
Related sector
See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.