
AI-powered email security for European organizations prioritizing data sovereignty, protecting against phishing and BEC attacks.
xorlab is a Zurich-based cybersecurity startup that provides AI-powered email security solutions. Their platform uses behavioral AI to analyze email traffic within an organization's communication patterns, detecting and stopping sophisticated phishing, spear-phishing, and Business Email Compromise (BEC) attacks. The solution can be deployed on-premises, in a hybrid setup, or in the cloud, with data processing and operations managed within European infrastructure to ensure data sovereignty and co…
StartupHub's Data Trust & Reputation score for xorlab is 89 out of 100, based on site security posture and privacy practices.
StartupHub estimates xorlab's annual revenue at $7.4M (range $4.1M to $16.4M, 69% confidence), based on comparable companies in the sector.
StartupHub estimates xorlab's effective valuation at $19.8M (range $12.5M to $30.0M, 25% confidence), based on comparable companies in the sector.
xorlab has raised a total of $5M in funding. The most recent round on record is Series A+.
xorlab is headquartered in Zurich, Switzerland.
xorlab was founded in 2015.
xorlab operates in Cybersecurity, Artificial Intelligence, Email Security, Phishing Protection, Business Email Compromise Protection, Behavioral AI.
xorlab has approximately 27 people on record.
We fix broken DNS records so your sales emails stop going to spam.
An open standard for AI-native business software, offering four elements, a manifesto, and no license gate.
Mispar is white-label dark web monitoring built for MSSPs: multi-tenant credential monitoring, infostealer forensics, and branded client reports.
Unbeta scans AI-built apps for broken flows, security holes, and legal exposure, providing copy-paste fix prompts.
NileStack delivers infrastructure-sovereign critical communications systems for the Middle East and Africa, quantum-resilient and regionally controlled.
AxLoop AI provides fleet observability for AI agents, instrumenting every MCP tool call on every device within an organization's perimeter.
A threat intelligence service that aggregates public, deep, and dark web data for cybersecurity risk management.
Assess once, comply with every framework. A sovereign, bilingual GRC platform with continuous, audit-ready compliance.
An entrant is a company tagged Cybersecurity whose domain was first registered in the window, counted from registry records in the StartupHub directory. 16 of them registered in the last 30 days. Registry detection runs two to three weeks behind registration, so recent weeks are a floor.
How well an AI agent can read and use this site: structured data, clean markup, and whether key facts are reachable without running JavaScript. We scan the live site.
Scan this site yourselfStrength of the site’s backlink profile, on the industry-standard 0-100 scale. Licensed third-party data, not our opinion.
Check any domain freeOur own read on real cross-surface visibility rather than raw backlink authority. A site can carry a high Domain Rating and still be invisible where people actually look, which is what this measures.
Run the eDR checkWhether this company is a safe place to put your data: security posture, privacy signals, and reputation evidence we could verify.
Star ratings come from visitors, one per person per profile, and are shown exactly as given: we do not weight, curate or filter them. Reviews are published in full alongside the rating that accompanied them.
No comments yet. Be the first to share your take.
Side by side on what each one does, what it costs, and what real users report.