Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

22924
Total Threats
-40.4% vs prior 30d
20876
Active Threats
-45.1% vs prior 30d
8.9%
Neutralized
+2.7pp vs prior 30d
310
Critical Risk
+144.4% vs prior 30d
2224
Emerging (7d)
+1163.6% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 40.4% compared to the prior 30-day period. Of 22924 total threats, 310 classified as critical risk and 53.1% are email-capable (impersonation ready). Response posture is a gap requiring attention at 8.9% neutralization, up 2.7pp from the prior period — most identified threats remain unaddressed.

Last updated Mar 25, 2026 02:51
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
31%
6999
Infrastructure Ready
19%
4273
Active (Live)
40%
9082
Weaponized
22%
5086
Confirmed Phishing
2%
543
Neutralized
9%
2048

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
Register.com - Network Solutions, LLC 22 21
0%
123-Reg Limited 22 24
0%
April Sea Information Technology Corporation 21 35
0%
BigRock Solutions Ltd. 21 26
5%
NETIM 21 18
5%
https://www.101domain.com/ 20 19
0%
Infomaniak Network SA 20 23
0%
EuroDNS S.A. 20 13
0%
Danesco Trading Ltd. 20 8
0%
LWS dba Ligne Web Services 20 45
0%
Top Nameservers
Nameserver Count Avg Risk Share
ns1.afternic.com., ns2.afternic.com. 728 29
dns1.registrar-servers.com., dns2.registrar-servers.com. 562 58
ns1.dns-parking.com., ns2.dns-parking.com. 560 47
nsg1.namebrightdns.com., nsg2.namebrightdns.com. 435 7
ns1.abovedomains.com., ns2.abovedomains.com. 424 36
ns1.dyna-ns.net., ns2.dyna-ns.net. 340 11
launch1.spaceship.net., launch2.spaceship.net. 282 16
ns1.dnsowl.com., ns2.dnsowl.com., ns3.dnsowl.com. 271 39
ns1.sedoparking.com., ns2.sedoparking.com. 259 22
ns1.parkingcrew.net., ns2.parkingcrew.net. 249 13

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
853
Taken Down
1284
Blacklisted
2048
Total Neutralized
Takedown Rate 3.7%
Blacklist Rate 5.6%
Neutralization Rate 8.9%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
alhambra-booking.com booking.com 65 NAMECHEAP INC Offline 3 days, 23 hours ago
canvaapi.com canva.com 65 NAMECHEAP INC Offline 1 day ago
capitaloneconstruction.com capitalone.com 65 HOSTINGER operations, UAB Offline 23 hours, 40 minutes ago
checkout-process.help BLOCKED checkout.com 65 NameSilo, LLC Offline 23 hours, 40 minutes ago
coinbasevalidate.com BLOCKED coinbase.com 65 Wix.com Ltd. Live 23 hours, 38 minutes ago
gingersnaps1991icloud.net icloud.com 65 Cloudflare, Inc. Offline 23 hours, 21 minutes ago
lcloud-maps.site BLOCKED icloud.com 65 HOSTINGER operations, UAB Offline 23 hours, 21 minutes ago
instaqrarn.com instagram.com 65 Key-Systems GmbH Offline 23 hours, 16 minutes ago
robloxstore.org BLOCKED roblox.com 65 Porkbun LLC Offline 23 hours, 7 minutes ago
xfllnity.com xfinity.com 65 Cloudflare, Inc. Offline 23 hours, 1 minute ago
bsantanderbonds.com santander.com 65 Unstoppable Domains Live 2 days, 22 hours ago
spotifytracked.com spotify.com 65 Cloudflare, Inc. Offline 3 days, 22 hours ago
hangjicloud.com icloud.com 65 Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn) Offline 3 days, 23 hours ago
whatsappinstareply.com whatsapp.com 65 Key-Systems GmbH Offline 4 days, 22 hours ago
checkoutwithcherry.com checkout.com 65 NameCheap, Inc. Offline 6 days, 23 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
bookingnest.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
allbookings.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
askbookings.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
upbookings.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
justbookings.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
bookingapp.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
gobookings.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
topbooking.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
nowbooking.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
getbookings.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
bookingpath.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
bookingbase.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
bookingzone.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
usebooking.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026
bookingway.shop booking.com 10 40 +30 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 19, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 1518 30 170 Medium
6%
2 icloud.com 1394 31 161 Medium
16%
3 checkout.com 781 25 30 Low
8%
4 binance.com 741 23 21 Low
16%
5 schwab.com 693 13 3 Low
32%
6 shopify.com 609 21 21 Low
2%
7 whatsapp.com 581 21 17 Low
16%
8 intuit.com 497 31 51 Medium
4%
9 wise.com 483 27 6 Medium
1%
10 t-mobile.com 451 21 11 Low
5%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 1518 reject
2 icloud.com 1394 quarantine
3 checkout.com 781 reject
4 binance.com 741 quarantine
5 schwab.com 693 reject
6 shopify.com 609 reject
7 whatsapp.com 581 reject
8 intuit.com 497 reject
9 wise.com 483 reject
10 t-mobile.com 451 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 morganstanley.com 37 75 15 Medium
0%
2 mashreq.com 36 75 42 Medium
2%
3 payoneer.com 36 90 153 Medium
5%
4 quickbooks.intuit.com 36 85 129 Medium
8%
5 americanexpress.com 35 80 226 Medium
5%
6 wellsfargo.com 35 95 107 Medium
30%
7 sumup.com 33 85 123 Medium
8%
8 airwallex.com 32 90 86 Medium
9%
9 mizuhogroup.com 32 70 14 Medium
0%
10 servicenow.com 32 85 104 Medium
4%