Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

30895
Total Threats
+59.6% vs prior 30d
28078
Active Threats
+64.8% vs prior 30d
9.1%
Neutralized
-3.9pp vs prior 30d
464
Critical Risk
+59.9% vs prior 30d
1721
Emerging (7d)
-22.4% vs prior 30d
Executive Summary

Threat activity has intensified, with total detected threats increasing 59.6% compared to the prior 30-day period. Of 30895 total threats, 464 classified as critical risk and 52.5% are email-capable (impersonation ready). Response posture is a gap requiring attention at 9.1% neutralization, down 3.9pp from the prior period — most identified threats remain unaddressed.

Last updated Apr 11, 2026 06:09
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
9315
Infrastructure Ready
20%
6265
Active (Live)
38%
11674
Weaponized
21%
6569
Confirmed Phishing
3%
854
Neutralized
9%
2817

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 3949 24
2%
NAMECHEAP INC 1146 57
2%
NameSilo, LLC 1055 42
20%
Dominet (HK) Limited 1049 34
1%
HOSTINGER operations, UAB 735 50
7%
Dynadot Inc 719 21
2%
Cloudflare, Inc. 645 43
1%
Dynadot LLC 619 9
31%
Spaceship, Inc. 616 22
5%
TUCOWS.COM, CO. 530 46
2%
Top Nameservers
Nameserver Count Avg Risk Share
basi.ns.giantpanda.com., shishi.ns.giantpanda.com. 12 54
ns1.nameserver.net.au., ns2.nameserver.net.au., ns3.nameserver.net.au. 12 15
ns1.dnsvacations.com., ns2.dnsvacations.com. 12 10
ns1.mysecurecloudhost.com., ns2.mysecurecloudhost.com., ns3.mysecurecloudhost.com. 12 45
anna.ns.cloudflare.com., josh.ns.cloudflare.com. 12 44
ns01.hostnet.nl., ns02.hostnet.nl. 12 39
dns1.onamae.com., dns2.onamae.com. 12 22
ns1.rentondc.com., ns2.rentondc.com. 12 24
ns.forpsi.cz., ns.forpsi.it., ns.forpsi.net. 11 25
ns1.inmotionhosting.com., ns2.inmotionhosting.com. 11 45

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1384
Taken Down
1592
Blacklisted
2817
Total Neutralized
Takedown Rate 4.5%
Blacklist Rate 5.2%
Neutralization Rate 9.1%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
your-booking.app booking.com 50 - Phishing 5 days, 2 hours ago
okapi-booking.fr booking.com 50 OVH Live 6 days, 3 hours ago
krakenrentalgroup.com kraken.com 50 IONOS SE Live 1 day, 2 hours ago
thekrakenpep.com kraken.com 50 DREAMHOST Live 4 days, 2 hours ago
buyshopifyplugins.com shopify.com 50 IONOS SE Live 4 days, 2 hours ago
linkedin2instagram.com instagram.com 50 OVH, SAS Live 3 days, 2 hours ago
alert-sumup.com sumup.com 50 DREAMHOST Live 3 days, 22 hours ago
icloud-find-2026.com icloud.com 50 Atak Domain Live 3 days, 2 hours ago
kocbooking.app booking.com 50 - Phishing 2 days, 2 hours ago
bookingassisttr.com booking.com 50 NAMECHEAP INC Offline 4 days, 2 hours ago
hq-coinbase.com coinbase.com 50 Hosting Concepts B.V. d/b/a Registrar.eu Live 2 days, 2 hours ago
maubooking.com booking.com 50 OVH, SAS Live 4 days, 2 hours ago
theflyeasybookings.com booking.com 50 Hosting Concepts B.V. d/b/a Registrar.eu Live 4 days, 2 hours ago
spotifylatino.com spotify.com 50 PDR Ltd. d/b/a PublicDomainRegistry.com Live 5 days, 2 hours ago
unitedcapitalcloud.info icloud.com 50 - Live 2 days, 2 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
checkoutcommeune.com checkout.com 75 85 +10 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Apr 06, 2026
americanexpress-reward00085.ink americanexpress.com 40 50 +10 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Apr 10, 2026
wellsfargosecuritycheck.com wellsfargo.com 25 35 +10 +MX Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Apr 08, 2026
wellsfargosecuritycheck.online wellsfargo.com 25 35 +10 +MX Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Apr 08, 2026
walmartshoppingsucks.com walmart.com 10 20 +10 +Website Live (10pts) Apr 03, 2026
thiswalmartsucks.com walmart.com 10 20 +10 +Website Live (10pts) Apr 03, 2026
walmartcustomerservicesucks.com walmart.com 10 20 +10 +Website Live (10pts) Apr 03, 2026
walmartworkerssuck.com walmart.com 10 20 +10 +Website Live (10pts) Apr 03, 2026
everywalmartsucks.com walmart.com 10 20 +10 +Website Live (10pts) Apr 03, 2026
walmartstoressuck.com walmart.com 10 20 +10 +Website Live (10pts) Apr 03, 2026
robloxforsakenknowledge.site roblox.com 65 75 +10 +Website Live (10pts) Apr 07, 2026
onedrivedocumentsharing.digital onedrive.live.com 0 10 +10 +Website Live (10pts) Apr 04, 2026
notion-works.com notion.so 10 20 +10 +Very Recent Domain (10pts) +Website Live (10pts) Apr 10, 2026
dropbox-security.com BLOCKED dropbox.com 40 50 +10 +Website Live (10pts) Apr 06, 2026
chupatticloud.click icloud.com 10 20 +10 +Very Recent Domain (10pts) +Website Live (10pts) Apr 07, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 2415 31 250 Medium
6%
2 icloud.com 2091 31 243 Medium
15%
3 americanexpress.com 1455 32 3 Medium
1%
4 checkout.com 1155 26 45 Medium
7%
5 whatsapp.com 979 20 22 Low
16%
6 binance.com 977 23 33 Low
19%
7 shopify.com 844 22 41 Low
2%
8 schwab.com 732 14 8 Low
32%
9 intuit.com 679 33 66 Medium
5%
10 kraken.com 619 28 36 Medium
8%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 2415 reject
2 icloud.com 2091 quarantine
3 americanexpress.com 1455 reject
4 checkout.com 1155 reject
5 whatsapp.com 979 reject
6 binance.com 977 quarantine
7 shopify.com 844 reject
8 schwab.com 732 reject
9 intuit.com 679 reject
10 kraken.com 619 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 174 Medium
4%
2 quickbooks.intuit.com 37 95 179 Medium
7%
3 sumup.com 37 85 151 Medium
7%
4 airwallex.com 35 90 101 Medium
14%
5 wellsfargo.com 35 95 128 Medium
27%
6 mashreq.com 35 75 51 Medium
4%
7 morganstanley.com 33 75 20 Medium
15%
8 intuit.com 33 100 679 Medium
5%
9 jpmorgan.com 33 90 87 Medium
13%
10 mizuhogroup.com 32 70 14 Medium
0%