Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

30040
Total Threats
+63.2% vs prior 30d
27335
Active Threats
+65.6% vs prior 30d
9.0%
Neutralized
-2.7pp vs prior 30d
437
Critical Risk
+75.9% vs prior 30d
2902
Emerging (7d)
+44.9% vs prior 30d
Executive Summary

Threat activity has intensified, with total detected threats increasing 63.2% compared to the prior 30-day period. Of 30040 total threats, 437 classified as critical risk and 52.8% are email-capable (impersonation ready). Response posture is a gap requiring attention at 9.0% neutralization, down 2.7pp from the prior period — most identified threats remain unaddressed.

Last updated Apr 07, 2026 04:09
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
9022
Infrastructure Ready
20%
6092
Active (Live)
38%
11428
Weaponized
21%
6452
Confirmed Phishing
3%
823
Neutralized
9%
2705

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 3883 24
2%
NAMECHEAP INC 1111 57
2%
NameSilo, LLC 1002 42
19%
Dominet (HK) Limited 976 34
1%
Dynadot Inc 700 21
2%
HOSTINGER operations, UAB 687 50
6%
Cloudflare, Inc. 623 42
1%
Dynadot LLC 614 9
30%
Spaceship, Inc. 597 22
5%
TUCOWS.COM, CO. 503 46
2%
Top Nameservers
Nameserver Count Avg Risk Share
arturo.ns.cloudflare.com., megan.ns.cloudflare.com. 35 11
ns01.one.com., ns02.one.com. 34 27
ns1.aftermarket.pl., ns2.aftermarket.pl. 34 56
ns61.domaincontrol.com., ns62.domaincontrol.com. 34 20
ina1.registrar.eu., ina2.registrar.eu., ina3.registrar.eu. 33 17
ns1.afternic.com., ns2.afternic.com., verification-d3jclucsp89ganyqbydeny.ns101.verify.hn. 33 33
dns.technorail.com., dns2.technorail.com., dns3.arubadns.net. 33 57
ns1.torresdns.com., ns2.torresdns.com. 33 20
ns1.digitalocean.com., ns2.digitalocean.com., ns3.digitalocean.com. 33 17
ns1.thednscloud.com., ns2.thednscloud.com. 32 36

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1294
Taken Down
1559
Blacklisted
2705
Total Neutralized
Takedown Rate 4.3%
Blacklist Rate 5.2%
Neutralization Rate 9.0%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
coinbasewallet-support.com BLOCKED coinbase.com 100 HOSTINGER operations, UAB Parked 5 days ago
scoinbase.com BLOCKED coinbase.com 100 HOSTINGER operations, UAB Parked 3 days, 9 hours ago
replykraken.help kraken.com 95 NameSilo, LLC Parked 3 days, 9 hours ago
peelshopify.com shopify.com 95 Porkbun LLC Phishing 3 days, 9 hours ago
replies-kraken.com kraken.com 95 NameSilo, LLC Parked 6 days ago
review-ticket-coinbase.com BLOCKED coinbase.com 90 NameSilo, LLC Parked 36 minutes ago
1938274-coinbase.com BLOCKED coinbase.com 90 NameSilo, LLC Parked 36 minutes ago
airbnb-reserve.online airbnb.com 90 NameSilo, LLC Offline 3 days, 1 hour ago
1948562-coinbase.com BLOCKED coinbase.com 90 NameSilo, LLC Parked 6 days, 17 hours ago
sign-airwallex.work BLOCKED airwallex.com 90 NameSilo, LLC Parked 6 days, 18 hours ago
sign-airwallex.cfd BLOCKED airwallex.com 90 NameSilo, LLC Parked 6 days, 18 hours ago
sign-airwallex.xyz BLOCKED airwallex.com 90 NameSilo, LLC Parked 6 days, 18 hours ago
instagramvideodownloader.online BLOCKED instagram.com 90 GoDaddy.com, LLC Phishing 3 days, 9 hours ago
helper-coinbase.com BLOCKED coinbase.com 90 NameSilo, LLC Parked 3 days, 9 hours ago
sellerorder-walmart.com walmart.com 85 NameSilo, LLC Live 3 days, 9 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
instagram163.com instagram.com 35 55 +20 +Website Phishing (20pts) Mar 28, 2026
airwallex.ch airwallex.com 5 25 +20 +MX Records (15pts) +Website Live (10pts) -Website Parked (5pts) Mar 21, 2026
downloadbinanceapp.com BLOCKED TAKEN DOWN binance.com 0 20 +20 +Blacklisted (30pts) Mar 20, 2026
coinbase-world.xyz BLOCKED TAKEN DOWN coinbase.com 0 20 +20 +Blacklisted (30pts) Mar 20, 2026
bookingbeautymasters.com booking.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 23, 2026
aliexpress.gay aliexpress.com 20 40 +20 - Mar 26, 2026
clientschwaab.com schwab.com 15 35 +20 +Dangerous Registrar (25pts) +Very Recent Domain (10pts) Mar 16, 2026
freeinstagramviews.online instagram.com 35 55 +20 +Website Phishing (20pts) Mar 23, 2026
kaoricloud.com icloud.com 15 35 +20 +Dangerous Registrar (25pts) +Very Recent Domain (10pts) Mar 16, 2026
epicgames-security.com epicgames.com 20 40 +20 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 17, 2026
capryliccloud.click icloud.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 21, 2026
atoniccloud.digital icloud.com 0 20 +20 +Website Phishing (20pts) Mar 22, 2026
web-ebay.com ebay.com 10 30 +20 +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 14, 2026
ups.ma ups.com 40 60 +20 +Website Phishing (20pts) Mar 21, 2026
shopifyecomagency.com shopify.com 65 85 +20 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 12, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 2299 31 241 Medium
6%
2 icloud.com 1978 31 231 Medium
15%
3 americanexpress.com 1383 32 2 Medium
1%
4 checkout.com 1105 26 43 Medium
7%
5 binance.com 950 23 31 Low
19%
6 whatsapp.com 931 20 22 Low
15%
7 shopify.com 807 22 37 Low
2%
8 schwab.com 731 14 8 Low
32%
9 intuit.com 655 33 61 Medium
4%
10 wise.com 614 27 9 Medium
2%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 2299 reject
2 icloud.com 1978 quarantine
3 americanexpress.com 1383 reject
4 checkout.com 1105 reject
5 binance.com 950 quarantine
6 whatsapp.com 931 reject
7 shopify.com 807 reject
8 schwab.com 731 reject
9 intuit.com 655 reject
10 wise.com 614 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
91 mastercard.com 22 75 145 Low
8%
92 t-mobile.com 21 85 491 Low
7%
93 twitch.tv 21 85 233 Low
3%
94 godaddy.com 21 80 280 Low
1%
95 wechat.com 20 90 277 Low
1%
96 ebay.com 20 85 240 Low
4%
97 expedia.com 20 95 195 Low
18%
98 starlingbank.com 20 70 37 Low
8%
99 whatsapp.com 20 95 931 Low
15%
100 onedrive.live.com 19 75 331 Low
3%