Skip to content

Phished

Belgian security awareness training company offering AI-personalized phishing simulations and gamified training to reduce human-error breach risk.

Visit Website ↗ + Add to Compare Claim This Company
50/100Incremental Innovator

Overview

Phished, founded in 2018 by Arnout Van de Meulebroucke and headquartered in Leuven, Belgium, builds a security awareness training platform centered on AI-personalized phishing simulations, gamified learning modules and real-time threat alerts, aimed at reducing the human-error component that contributes to a large share of breaches.

The company serves roughly 2,500 business customers and 200 managed service provider (MSP) partners across Europe, North America and Asia-Pacific, including customers such as Acerta, Essers and Proximus, and reports around $7.7 million in annual recurring revenue. Phished has raised approximately $9.1 million, including €7.5 million in backing from Welvaartsfonds, alongside continued investment from backer Vandebergh.

Phished differentiates itself from larger, more generic awareness-training incumbents through its MSP-first go-to-market model and its personalization engine, which tailors simulated phishing attempts to an individual employee’s role and behavior rather than using generic templates.

Innovation Matrix Assessment

Innovation Velocity 5/10

AI-personalized phishing simulation is a solid, steady product evolution over generic template-based awareness training, rather than a rapid string of novel releases.

Operational Value 6/10

Reducing human-error risk through targeted, role-based phishing simulation gives security teams a measurable lever against one of the most common breach vectors.

Market Momentum 6/10

2,500 business customers, a 200-partner MSP channel, and roughly $7.7M ARR are independently meaningful signals of real, broad-based European adoption.

Category Disruption 3/10

Security awareness training is a long-established, crowded category dominated by much larger incumbents like KnowBe4 and Proofpoint; Phished is a regional challenger rather than a category disruptor.

Real-World Efficacy 5/10

A large customer base and MSP channel imply real operational use, but no independently published, quantified risk-reduction study specific to Phished was found.

Enduring Relevance 5/10

Human risk management remains relevant to breach prevention, though the standalone awareness-training category faces long-term pressure from consolidation into broader AI-native security platforms.

Why CISOs Should Care

Phishing and other social-engineering attacks remain a top breach vector, and role-personalized, continuously updated simulation training gives security teams a concrete way to reduce that risk measurably.

What Makes It Different

An MSP-first distribution model combined with an AI personalization engine that tailors simulated phishing content to individual employee roles and behavior patterns.

The Matrix Verdict

50/100 — INCREMENTAL INNOVATOR

Phished is an Incremental Innovator at the lower end of the tier: a well-adopted, revenue-generating European challenger in a mature category, with real customer traction but limited claim to category-level disruption.

Editorial Note: Claims vs. Verified Findings

Customer counts, revenue and funding are independently reported (Latka, Phished's own press release); specific risk-reduction and personalization-efficacy claims are vendor-stated.

Sources