Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

27156
Total Threats
-34.8% vs prior 30d
24730
Active Threats
-38.8% vs prior 30d
8.9%
Neutralized
+2.2pp vs prior 30d
389
Critical Risk
+86.0% vs prior 30d
4242
Emerging (7d)
+103.9% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 34.8% compared to the prior 30-day period. Of 27156 total threats, 389 classified as critical risk and 53.1% are email-capable (impersonation ready). Response posture is a gap requiring attention at 8.9% neutralization, up 2.2pp from the prior period — most identified threats remain unaddressed.

Last updated Mar 31, 2026 10:03
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
8100
Infrastructure Ready
19%
5173
Active (Live)
40%
10743
Weaponized
23%
6120
Confirmed Phishing
3%
739
Neutralized
9%
2426

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 3726 24
1%
NAMECHEAP INC 1021 57
1%
NameSilo, LLC 859 42
19%
Dynadot Inc 680 21
2%
HOSTINGER operations, UAB 611 50
6%
Dynadot LLC 606 9
30%
Spaceship, Inc. 550 21
6%
Cloudflare, Inc. 550 40
1%
TurnCommerce, Inc. DBA NameBright.com 480 7
0%
TUCOWS.COM, CO. 455 47
1%
Top Nameservers
Nameserver Count Avg Risk Share
damien.ns.cloudflare.com., paislee.ns.cloudflare.com. 40 10
jermaine.ns.cloudflare.com., virginia.ns.cloudflare.com. 40 10
kaiser.ns.cloudflare.com., sunny.ns.cloudflare.com. 40 10
princess.ns.cloudflare.com., trace.ns.cloudflare.com. 40 10
jaziel.ns.cloudflare.com., kehlani.ns.cloudflare.com. 40 10
nola.ns.cloudflare.com., yichun.ns.cloudflare.com. 39 10
dns1.safenames.com., dns2.safenames.net., dns3.safenames.org. 39 12
ns1.redmonddc.com., ns2.redmonddc.com. 38 23
ns1.101domain.com., ns2.101domain.com., ns5.101domain.com. 38 10
ns1.eftydns.com., ns2.eftydns.com. 37 3

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1095
Taken Down
1453
Blacklisted
2426
Total Neutralized
Takedown Rate 4.0%
Blacklist Rate 5.4%
Neutralization Rate 8.9%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
sehokicloud.site icloud.com 70 NAMECHEAP INC Parked 3 days, 5 hours ago
primeoptimalcloudgroupstandard.top icloud.com 70 NAMECHEAP INC Parked 3 days, 5 hours ago
airwallextech.com airwallex.com 70 Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn) Parked 5 days, 6 hours ago
valuedriveglobalcloudform.top icloud.com 70 NAMECHEAP INC Parked 3 days, 5 hours ago
xfinitydigital.com xfinity.com 70 NAMECHEAP INC Offline 5 days, 3 hours ago
dandabookings.com booking.com 70 NAMECHEAP INC Parked 3 days, 5 hours ago
goldwise.com wise.com 70 Squarespace Domains II LLC Parked 5 days, 3 hours ago
goallpaypayz.com alipay.com 70 Realtime Register B.V. Phishing 6 days, 5 hours ago
euronextlive.com euronext.com 70 NAMECHEAP INC Offline 5 days, 5 hours ago
booking-network.com booking.com 70 Squarespace Domains II LLC Parked 5 days, 6 hours ago
allpaypayzteam.com alipay.com 70 Realtime Register B.V. Phishing 6 days, 5 hours ago
binancewallet.org binance.com 70 HOSTINGER operations, UAB Parked 3 days, 5 hours ago
getallpaypayz.com alipay.com 70 Realtime Register B.V. Phishing 6 days, 5 hours ago
goldcapitalone.com capitalone.com 70 Squarespace Domains II LLC Parked 5 days, 6 hours ago
pilotcapitalcloudmarketreform.top icloud.com 70 NAMECHEAP INC Parked 5 days, 5 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
robloxluaobfuscator.com roblox.com 10 30 +20 +Website Phishing (20pts) Mar 29, 2026
paypal-casino-fr.com paypal.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 30, 2026
paypal-casino-uk.com paypal.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 30, 2026
paypal-casino-nl.com paypal.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 30, 2026
yupoopaypal.com paypal.com 35 55 +20 +Dangerous Registrar (25pts) +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 28, 2026
aprove-booking.online booking.com 15 35 +20 +Dangerous Registrar (25pts) +Very Recent Domain (10pts) Mar 30, 2026
sacclicloud.click icloud.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 27, 2026
hostcelebritybookings.com booking.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 27, 2026
protonsfly.com proton.me 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 26, 2026
protoniche.org proton.me 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 27, 2026
epicloudapp.com icloud.com 40 60 +20 +Website Phishing (20pts) Mar 30, 2026
somalcloud.digital icloud.com 0 20 +20 +Website Phishing (20pts) Mar 30, 2026
rutulicloud.digital icloud.com 0 20 +20 +Website Phishing (20pts) Mar 26, 2026
docusign.buzz BLOCKED TAKEN DOWN docusign.com 0 20 +20 +Blacklisted (30pts) Mar 26, 2026
checkoutfight.shop checkout.com 0 20 +20 +Website Phishing (20pts) Mar 27, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 2023 31 215 Medium
6%
2 icloud.com 1672 31 190 Medium
15%
3 checkout.com 934 26 40 Medium
7%
4 binance.com 895 23 27 Low
17%
5 schwab.com 723 14 9 Low
32%
6 shopify.com 722 22 32 Low
2%
7 whatsapp.com 713 21 20 Low
16%
8 wise.com 611 27 8 Medium
2%
9 intuit.com 569 31 53 Medium
4%
10 kraken.com 528 27 24 Medium
9%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 2023 reject
2 icloud.com 1672 quarantine
3 checkout.com 934 reject
4 binance.com 895 quarantine
5 schwab.com 723 reject
6 shopify.com 722 reject
7 whatsapp.com 713 reject
8 wise.com 611 reject
9 intuit.com 569 reject
10 kraken.com 528 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 170 Medium
4%
2 sumup.com 36 85 148 Medium
7%
3 wellsfargo.com 36 95 118 Medium
27%
4 quickbooks.intuit.com 36 95 145 Medium
8%
5 airwallex.com 35 90 98 Medium
13%
6 mashreq.com 35 75 49 Medium
4%
7 americanexpress.com 35 80 495 Medium
4%
8 morganstanley.com 33 75 19 Medium
16%
9 mizuhogroup.com 32 70 14 Medium
0%
10 servicenow.com 32 85 116 Medium
3%