Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

26669
Total Threats
-19.2% vs prior 30d
24295
Active Threats
-24.3% vs prior 30d
8.9%
Neutralized
+2.7pp vs prior 30d
381
Critical Risk
+181.0% vs prior 30d
4414
Emerging (7d)
+732.8% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 19.2% compared to the prior 30-day period. Of 26669 total threats, 381 classified as critical risk and 53.3% are email-capable (impersonation ready). Response posture is a gap requiring attention at 8.9% neutralization, up 2.7pp from the prior period — most identified threats remain unaddressed.

Last updated Mar 29, 2026 03:39
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
7965
Infrastructure Ready
19%
5058
Active (Live)
40%
10580
Weaponized
23%
6055
Confirmed Phishing
3%
718
Neutralized
9%
2374

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 3683 23
1%
NAMECHEAP INC 996 56
2%
NameSilo, LLC 829 42
19%
Dynadot Inc 677 21
1%
Dynadot LLC 605 9
30%
HOSTINGER operations, UAB 603 50
6%
Cloudflare, Inc. 542 40
1%
Spaceship, Inc. 538 21
6%
TurnCommerce, Inc. DBA NameBright.com 480 7
0%
TUCOWS.COM, CO. 442 47
1%
Top Nameservers
Nameserver Count Avg Risk Share
jaziel.ns.cloudflare.com., kehlani.ns.cloudflare.com. 40 10
ns.udag.de., ns.udag.net., ns.udag.org. 40 40
damien.ns.cloudflare.com., paislee.ns.cloudflare.com. 40 10
princess.ns.cloudflare.com., trace.ns.cloudflare.com. 40 10
ns1.register.it., ns2.register.it. 39 26
dns1.safenames.com., dns2.safenames.net., dns3.safenames.org. 39 12
nola.ns.cloudflare.com., yichun.ns.cloudflare.com. 39 10
ns1.101domain.com., ns2.101domain.com., ns5.101domain.com. 38 10
ns1.redmonddc.com., ns2.redmonddc.com. 38 23
ns1.eftydns.com., ns2.eftydns.com. 37 3

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1057
Taken Down
1434
Blacklisted
2374
Total Neutralized
Takedown Rate 4.0%
Blacklist Rate 5.4%
Neutralization Rate 8.9%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
barclays-consulting.com barclays.com 70 TUCOWS.COM, CO. Offline 3 days ago
onlypaypalpayment.com BLOCKED paypal.com 70 CNOBIN INFORMATION TECHNOLOGY LIMITED Live 1 day, 22 hours ago
barclays-global.com BLOCKED barclays.com 70 GoDaddy.com, LLC Live 3 days ago
kraken-global.com BLOCKED kraken.com 70 GoDaddy.com, LLC Live 2 days, 22 hours ago
allpaypayzs.com alipay.com 70 Realtime Register B.V. Phishing 3 days, 23 hours ago
tryallpaypayz.com alipay.com 70 Realtime Register B.V. Phishing 3 days, 23 hours ago
getallpaypayz.com alipay.com 70 Realtime Register B.V. Phishing 3 days, 23 hours ago
allpaypayzteam.com alipay.com 70 Realtime Register B.V. Phishing 3 days, 23 hours ago
goallpaypayz.com alipay.com 70 Realtime Register B.V. Phishing 3 days, 23 hours ago
allpaypayzmail.com alipay.com 70 Realtime Register B.V. Phishing 3 days, 23 hours ago
kadobooking.com booking.com 70 HOSTINGER operations, UAB Parked 5 days, 23 hours ago
famalipay.com alipay.com 70 HOSTINGER operations, UAB Parked 5 days, 23 hours ago
hs-bc.com BLOCKED hsbc.com 70 Global Domain Group LLC Live 3 days, 23 hours ago
digitalsantander.com BLOCKED santander.com 70 Gransy, s.r.o. Live 2 days, 22 hours ago
carbookings.online booking.com 70 NAMECHEAP INC Parked 3 days, 23 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
squarespacetools.com squarespace.com 30 60 +30 +Dangerous Email Provider (10pts) +SPF Records (15pts) +Website Live (10pts) -Website Parked (5pts) Mar 24, 2026
qr-roblox.com BLOCKED roblox.com 40 70 +30 +Blacklisted (30pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 26, 2026
hangjicloud.com icloud.com 35 65 +30 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 24, 2026
scrapbookingconsultant.com booking.com 35 65 +30 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 24, 2026
whatsappinstareply.com whatsapp.com 35 65 +30 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 24, 2026
whatsapppro.online BLOCKED TAKEN DOWN whatsapp.com 15 45 +30 +Blacklisted (30pts) +Dangerous Registrar (25pts) +Very Recent Domain (10pts) Mar 25, 2026
paypal-fr.net BLOCKED paypal.com 50 80 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) -Website Live (10pts) Mar 28, 2026
bookingon.online BLOCKED booking.com 20 50 +30 +Blacklisted (30pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 23, 2026
accountswellsfargo.com BLOCKED wellsfargo.com 35 65 +30 +Blacklisted (30pts) Mar 26, 2026
checktoquickbooks.com quickbooks.intuit.com 55 85 +30 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 24, 2026
lcloud-maps.com BLOCKED icloud.com 40 70 +30 +Blacklisted (30pts) Mar 26, 2026
imap-icloud.com BLOCKED icloud.com 10 40 +30 +Blacklisted (30pts) +Very Recent Domain (10pts) Mar 23, 2026
holder207-booking.info BLOCKED booking.com 0 30 +30 +Blacklisted (30pts) Mar 21, 2026
trustcontrol248-booking.info BLOCKED booking.com 0 30 +30 +Blacklisted (30pts) Mar 20, 2026
safeunit781-booking.info BLOCKED booking.com 0 30 +30 +Blacklisted (30pts) Mar 21, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 1956 31 203 Medium
6%
2 icloud.com 1616 31 177 Medium
15%
3 checkout.com 929 26 34 Medium
7%
4 binance.com 893 23 26 Low
16%
5 schwab.com 719 14 8 Low
32%
6 shopify.com 704 22 32 Low
2%
7 whatsapp.com 671 22 20 Low
16%
8 wise.com 610 27 8 Medium
2%
9 intuit.com 550 31 40 Medium
4%
10 roblox.com 518 32 37 Medium
16%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 1956 reject
2 icloud.com 1616 quarantine
3 checkout.com 929 reject
4 binance.com 893 quarantine
5 schwab.com 719 reject
6 shopify.com 704 reject
7 whatsapp.com 671 reject
8 wise.com 610 reject
9 intuit.com 550 reject
10 roblox.com 518 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 170 Medium
4%
2 quickbooks.intuit.com 36 90 144 Medium
7%
3 sumup.com 36 85 148 Medium
7%
4 wellsfargo.com 35 95 116 Medium
28%
5 mashreq.com 35 75 49 Medium
4%
6 americanexpress.com 35 80 425 Medium
4%
7 morganstanley.com 34 75 18 Medium
11%
8 jpmorgan.com 33 90 75 Medium
12%
9 mizuhogroup.com 32 70 14 Medium
0%
10 airwallex.com 32 90 89 Medium
9%