Dossier · Private startup · 4 independent sources

Radiant Research Labs

Cybersecurity Priority Signal Founded 2023

Last updated: Sep 7, 2026

Radiant Research Labs is an Israeli offensive-cyber startup developing advanced intrusion and intelligence capabilities for a select group of military, intelligence, and law-enforcement agencies. Public reporting identifies a Tel Aviv company founded by former Israeli military-intelligence and NSO cyber specialists, while the company's own site emphasizes high-assurance research, operational reliability, discretion, and export-controlled government work.

Visit Website

Company Overview

**Product and the concrete problem it solves.** Radiant Research Labs operates in the narrow, high-consequence market for offensive cyber capabilities used by government intelligence, military, and law-enforcement organizations. The problem is not ordinary enterprise vulnerability scanning. It is the ability to obtain intelligence from a target device or digital environment when conventional collection methods are blocked, when a target will not cooperate, or when an agency needs a capability tailored to a specific mission and technology stack. The Jerusalem Post reported that Radiant's team had developed zero-click tools that can penetrate phones and computers without requiring a target to click a link or open a file, and described the company as working on other advanced cyber and technological tools for Western intelligence agencies. Radiant's official site uses broader language, saying it builds advanced cyber capabilities for a select group of military, intelligence, and law-enforcement agencies and offers both custom work and ready solutions. That combination suggests a mission-engineering business with reusable research assets, not a mass-market software product. The practical customer value is access, collection, and operational reach in environments where endpoint hardening, user awareness, and conventional lawful interception methods have narrowed the available options.

**Core technology and how it actually works.** The public record intentionally withholds the technical details that would make an offensive capability reproducible, so this record should not infer specific exploit chains, persistence methods, target platforms, or operational procedures. At a high level, zero-click capability means the target device processes a malicious or specially crafted input without an explicit user action, allowing a vulnerability in a messaging, media, network, or operating-system component to become an intelligence access path. A credible program in this field requires much more than finding a single bug: researchers must discover or acquire vulnerabilities, build reliable delivery and execution chains, adapt them as vendors patch systems, manage target-specific constraints, and test safely across device versions without exposing the operation. Radiant's public language about research being at the heart of the company and about solutions that must hold up operationally is consistent with a vulnerability-research and mission-integration model. The site also emphasizes technical depth, precision, reliability, partner trust, and strict export controls. Those are meaningful architectural and operating signals, but they are company positioning rather than independently audited evidence of exploit reliability, platform coverage, or lifecycle economics. Public sources do not establish whether Radiant owns proprietary tooling, licenses capabilities, sells software subscriptions, performs bespoke services, or combines all four.

**Market, customers, and go-to-market.** Radiant sells into one of the least transparent technology markets: national-security organizations with classified requirements, lengthy authorization chains, and procurement processes that cannot be validated through public customer logos. The official site names military, intelligence, and law-enforcement agencies as the customer universe and says that some partners need custom work while others need ready solutions. That language implies two go-to-market motions. First, a relationship-led mission program can begin with a specific intelligence requirement and turn a research capability into a tailored operational tool. Second, a repeatable product or capability package can be delivered to agencies that share a target class, collection requirement, or device ecosystem. The company's offices in Israel and Europe provide a plausible base for serving Western partners, but public sources do not disclose legal subsidiaries, sales geography, contract sizes, recurring revenue, named customers, or government framework agreements. The market is strategically large but commercially narrow: only a small set of agencies can buy the product, each sale is high trust and potentially high value, and procurement is constrained by export controls, political approval, security clearances, and changing vendor-risk rules. Radiant's decision to foreground discretion rather than public customer proof is understandable in this market, but it materially limits outside diligence.

**Traction, funding, and third-party validation.** Radiant has several unusually strong validation signals, but almost all are qualitative. The Israeli company registry record identifies RADIANT RESEARCH LABS LTD as an active Israeli private company incorporated on March 16, 2023, with a Tel Aviv address. The Jerusalem Post reported that the company was led by Tal Slomka and Zvika Moshkovitz, described their former IDF intelligence and NSO experience, and reported that the group had developed a portfolio of advanced cyber tools for Western intelligence agencies. Euronews separately summarized the reporting and said that, following the October 7 attacks, Radiant provided technical tools to Israeli military intelligence that helped track the location of several hostages; that operational claim should be treated as attributed reporting, not independently verified contract evidence. The official website confirms an active operating identity, Israeli and European presence, a government-agency customer focus, recruiting language, and a stated export-control posture. No reliable public source reviewed here discloses equity funding, government contract value, revenue, headcount, product shipment volume, certification, or a named customer. The absence of those facts is not evidence of failure in a classified sector, but it prevents a conventional venture-scale traction assessment and should cap confidence in the financial and commercial scores.

**Founders and team background.** The disclosed leadership profile is compact but highly relevant to the work. The Jerusalem Post identifies Tal Slomka as a leader who served in Israeli military intelligence, including work in the air force and Unit 8200, and later held an analysis-management role at NSO. It identifies Zvika Moshkovitz as another leader with IDF intelligence and Prime Minister's Office experience, including work on complex target and adversary analysis connected to Syria. This is direct founder-market fit for an offensive-intelligence company: understanding operational collection, target development, intelligence workflows, and the practical gap between a laboratory exploit and a usable government capability. A public LinkedIn profile for Yuval Kaufman associates him with Radiant Research Labs and describes a background in cyber-security research, providing at least one additional visible technical signal beyond the two leaders named in press coverage. The public record does not establish the complete team, current executive titles, employee count, ownership, scientific advisers, or whether key researchers moved from prior employers as a group. NSO alumni bring valuable capability and customer familiarity, but also create reputational, legal, and compliance scrutiny because the commercial spyware sector has faced documented allegations of misuse and export-control pressure. Radiant's ability to build a durable, compliant organization around a small number of elite researchers is therefore as important as any individual exploit breakthrough.

**Competitive dynamics.** Radiant competes against a small group of specialized offensive-cyber vendors, established defense contractors, and government teams that develop capabilities internally. **NSO Group** is the closest Israeli reference point, with Pegasus-style mobile intrusion capabilities and a much larger public footprint, but it also carries significant reputational and regulatory baggage. **Candiru** competes in targeted intrusion and surveillance capabilities, particularly around endpoint and browser exploitation, although its public operating status and product details are limited. **Paragon Solutions** is a European-Israeli-linked competitor associated in public reporting with government spyware capabilities and controlled customer access. **Intellexa** represents a broader commercial-surveillance approach built around a portfolio of acquired or affiliated intrusion technologies, but its sanctions and controversy illustrate the compliance risk of the category. **In-house intelligence technical units and prime contractors** are the incumbent alternative: they offer sovereign control, classified integration, and mission continuity, but can be slower to refresh capabilities or recruit scarce vulnerability researchers. Radiant's claimed edge is not a single public feature. It is the combination of elite research talent, closeness to operational requirements, small-team speed, Israeli intelligence provenance, and a willingness to do custom mission work. Those advantages are difficult to verify externally and can be offset by platform-vendor patches, customer concentration, talent attrition, and the compliance cost of operating in a politically sensitive market.

**Defense, security, and resilience relevance.** Radiant's defense and security relevance is direct rather than inferred. Its stated customers are military, intelligence, and law-enforcement agencies, and independent reporting attributes zero-click tools and operational support to the company. The strategic value is the ability to produce intelligence access against adversaries who use secure devices, hardened networks, or encrypted communications, which can support counterterrorism, hostage recovery, counterintelligence, cyber investigations, and battlefield intelligence. The company is also an example of a sovereign capability layer: Israel retains a domestic research organization able to convert elite technical talent into tools for national-security missions rather than relying only on foreign vendors. This can improve resilience against supplier denial, geopolitical restrictions, or sudden changes in a global platform provider's willingness to support a sensitive mission. The dual-use label requires restraint. Public evidence supports defense, intelligence, and law-enforcement use, but does not show a commercial enterprise-security product, civilian resilience deployment, or benign industrial market. I therefore mark dual_use as false under the database's strict definition, while giving the company a high strategic-alignment score. The technology may have lawful defensive research and incident-response adjacency, but the core publicly evidenced business is offensive government cyber capability, not balanced commercial-and-defense technology.

**Growth stage, trajectory, and key diligence risks.** Radiant is classified as early because it was incorporated in 2023, remains privately held and highly undisclosed, and has no public evidence of scaled revenue, a priced financing round, headcount, or repeatable product distribution. Its trajectory depends on converting exceptional research and intelligence-community access into a compliant, durable capability provider for allied agencies. The most important diligence questions are: (1) whether the company has verifiable government contracts or only exploratory relationships; (2) how it measures exploit reliability, operational safety, patch resilience, and time-to-delivery; (3) whether revenue is recurring, milestone-based, or dominated by bespoke engineering; (4) how it handles export licensing, end-user screening, human-rights review, and auditability; (5) whether the talent base is deep enough to replace key researchers and maintain multiple target platforms; (6) how it protects sensitive research, supply chains, and internal systems from hostile penetration; and (7) whether shifting mobile-platform security and government procurement rules reduce the addressable market. The upside is strategically significant: a trusted Israeli supplier could become an allied capability partner in a market where sovereignty and access matter more than conventional SaaS metrics. The downside is equally sharp: a single misuse allegation, export-control breach, exploit leak, vendor patch cycle, or loss of a critical customer could damage the company faster than ordinary enterprise-security competition. This record supports close strategic monitoring, not a conclusion about financial attractiveness or endorsement of offensive cyber use.

Strategic Fit Assessment

Research priority signal

Priority signal means this entry may be worth researching within the Claw & Talon thesis. It does not mean investable, suitable, endorsed, available, or likely to produce returns.

Radiant merits a positive internal priority signal because it appears to sit close to a strategically consequential Israeli capability base, but the evidence is too opaque for a conventional commercial assessment. (1) Founder-market fit is unusually direct: public reporting identifies leaders with IDF intelligence, Unit 8200, Prime Minister's Office, and NSO backgrounds. (2) The official customer thesis is specific — military, intelligence, and law-enforcement agencies — and independent reporting attributes operationally relevant zero-click capabilities to the company. (3) Israeli incorporation, Tel Aviv presence, and an export-control posture provide a credible sovereign-capability frame. Counterweights are decisive: no public financing, revenue, employee count, named customer, contract value, certification, or independently reproducible technical evidence; heavy regulatory and reputational exposure; and a business model that may depend on a few classified programs. The strategically relevant flag is a legacy priority signal for strategic diligence, not an investment recommendation, endorsement of offensive cyber activity, or conclusion about financial returns.

Strategic Value to U.S.-Israel Alliance

Radiant's strategic value is concentrated in sovereign access and allied intelligence resilience. (1) A domestic Israeli research organization can reduce dependence on foreign offensive-capability suppliers when geopolitical restrictions, vendor denials, or supply-chain disruptions affect urgent missions. (2) Zero-click and related vulnerability-research capabilities can address adversaries who have hardened user-facing attack surfaces and encrypted their communications, although public evidence does not establish a specific exploit inventory or current success rate. (3) The founders' reported experience links advanced research to operational intelligence requirements, a combination that is difficult to assemble and relevant to counterterrorism, counterintelligence, and battlefield collection. (4) Israeli and European offices could support trusted allied relationships, but export control, end-user verification, human-rights review, and classified-information handling determine whether that optionality becomes durable value. The strategic case is strong; the commercial evidence and governance proof are not.

Key Technologies

  • Zero-click mobile and computer intrusion research that does not require an explicit target action
  • Vulnerability discovery, exploit-chain engineering, and platform-specific capability development
  • Mission-tailored cyber collection tools for military and intelligence operations
  • Operational cyber research and technical integration for high-assurance government users
  • Target development and intelligence-support tooling for complex adversary environments
  • Secure delivery, partner coordination, and export-controlled handling of sensitive capabilities

Use Cases & Applications

  • Counterterrorism and hostage-recovery intelligence support for authorized agencies
  • Counterintelligence collection against hardened adversary devices and networks
  • Military intelligence collection in contested or encrypted digital environments
  • Law-enforcement investigations requiring lawful access to target devices or communications
  • Technical support for Western intelligence agencies operating against high-value targets
  • Rapid research and custom capability development for a newly disclosed device or platform
  • Defensive vulnerability research and incident-response support as a bounded, non-public adjacency

Sources and verification

This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work; the research methodology documents how evidence is graded, what counts as an independent source, and why some profiles are excluded from search indexing.

This record lists 6 public references used for company identity, status, positioning, or material-claim review.

Public sources

The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.

Related sector

See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.