Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

33695
Total Threats
+47.2% vs prior 30d
30628
Active Threats
+54.5% vs prior 30d
9.1%
Neutralized
-4.7pp vs prior 30d
539
Critical Risk
+31.4% vs prior 30d
2339
Emerging (7d)
+7.0% vs prior 30d
Executive Summary

Threat activity has intensified, with total detected threats increasing 47.2% compared to the prior 30-day period. Of 33695 total threats, 539 classified as critical risk and 51.6% are email-capable (impersonation ready). Response posture is a gap requiring attention at 9.1% neutralization, down 4.7pp from the prior period — most identified threats remain unaddressed.

Last updated Apr 20, 2026 04:26
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
10270
Infrastructure Ready
20%
6903
Active (Live)
37%
12547
Weaponized
21%
6950
Confirmed Phishing
3%
944
Neutralized
9%
3067

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 4198 24
2%
Dominet (HK) Limited 1457 33
1%
NAMECHEAP INC 1261 58
2%
NameSilo, LLC 1177 43
20%
HOSTINGER operations, UAB 864 50
8%
Dynadot Inc 757 21
3%
Cloudflare, Inc. 731 44
1%
Spaceship, Inc. 679 22
5%
Dynadot LLC 661 9
29%
TUCOWS.COM, CO. 622 45
2%
Top Nameservers
Nameserver Count Avg Risk Share
ns1.dnsvacations.com., ns2.dnsvacations.com. 12 10
ns1.rentondc.com., ns2.rentondc.com. 12 24
dns200.anycast.me., ns200.anycast.me. 12 46
ns1.world4you.at., ns2.world4you.at. 12 37
ns1.69host.cc., ns2.69host.cc. 12 22
ns1.netim.net., ns2.netim.net., ns3.netim.net. 12 33
1-ceci.njalla.do., 2-nest.pipe.ma., 3-pas.njalla.in. 12 26
ns1.nameserver.net.au., ns2.nameserver.net.au., ns3.nameserver.net.au. 12 15
ns14.midphase.com., ns15.midphase.com., ns16.midphase.com. 12 50
f1g1ns1.dnspod.net., f1g1ns2.dnspod.net. 12 12

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1542
Taken Down
1693
Blacklisted
3067
Total Neutralized
Takedown Rate 4.6%
Blacklist Rate 5.0%
Neutralization Rate 9.1%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
delhicabbookings.com booking.com 65 NAMECHEAP INC Offline 2 days, 1 hour ago
3472456-coinbase.com BLOCKED coinbase.com 65 TUCOWS.COM, CO. Live 1 hour, 7 minutes ago
shopifyxpertdesigners.com shopify.com 65 NAMECHEAP INC Offline 4 days ago
kraken23-at.com BLOCKED kraken.com 65 Inland Domains LLC Live 3 days ago
shopifycloud.net shopify.com 65 NAMECHEAP INC Offline 5 days ago
get-mobilecharge.com t-mobile.com 65 NAMECHEAP INC Offline 5 days ago
quickbooksdivas.com quickbooks.intuit.com 65 NAMECHEAP INC Offline 41 minutes ago
sellyourshopifyshop.com shopify.com 65 NameCheap, Inc. Offline 4 days ago
intuitbox.com intuit.com 65 NameCheap, Inc. Offline 46 minutes ago
intuituscybersecurity.com intuit.com 60 PDR Ltd. d/b/a PublicDomainRegistry.com Live 2 days ago
soulnestbooking.com booking.com 60 ONLINE SAS Phishing 4 days, 1 hour ago
bookingenginex.com booking.com 60 NAMECHEAP INC Live 4 days, 1 hour ago
prodakt-shopify.com shopify.com 60 Global Domain Group LLC Live 3 days ago
ibishotelbookingonline.com booking.com 60 GoDaddy.com, LLC Phishing 1 day, 1 hour ago
trovebooking.com booking.com 60 OwnRegistrar, Inc. Phishing 1 day, 1 hour ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
qzj-whatsapp.com whatsapp.com 0 10 +10 - Apr 03, 2026
qzb-whatsapp.com whatsapp.com 0 10 +10 - Apr 03, 2026
qzc-whatsapp.com whatsapp.com 0 10 +10 - Apr 03, 2026
qzf-whatsapp.com whatsapp.com 0 10 +10 - Apr 03, 2026
qzh-whatsapp.com whatsapp.com 0 10 +10 - Apr 03, 2026
via-spotify.com spotify.com 65 75 +10 +Website Live (10pts) Apr 09, 2026
antiproton.net proton.me 0 10 +10 +Very Recent Domain (10pts) Apr 01, 2026
xintuite.com intuit.com 10 20 +10 +Very Recent Domain (10pts) +Website Live (10pts) Apr 08, 2026
intuits.xyz intuit.com 65 75 +10 +Website Live (10pts) Apr 04, 2026
sigilcloud.build icloud.com 10 20 +10 +Very Recent Domain (10pts) +Website Live (10pts) Apr 01, 2026
fotos-icloud.info BLOCKED icloud.com 30 40 +10 +Blacklisted (30pts) +Website Live (10pts) Apr 10, 2026
sigilcloud.org icloud.com 10 20 +10 +Very Recent Domain (10pts) +Website Live (10pts) Apr 01, 2026
wwwicloud.support icloud.com 30 40 +10 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Apr 03, 2026
lcloud-app-inc.com BLOCKED TAKEN DOWN icloud.com 0 10 +10 +Blacklisted (30pts) Apr 01, 2026
bookingcayman.com booking.com 10 20 +10 +Very Recent Domain (10pts) +Website Live (10pts) Apr 01, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 2853 32 300 Medium
6%
2 icloud.com 2449 31 292 Medium
14%
3 americanexpress.com 1904 31 4 Medium
1%
4 checkout.com 1251 26 54 Medium
7%
5 binance.com 1116 24 45 Low
18%
6 whatsapp.com 1072 20 27 Low
17%
7 shopify.com 947 23 53 Low
2%
8 intuit.com 808 33 79 Medium
4%
9 schwab.com 746 14 10 Low
31%
10 kraken.com 703 29 42 Medium
9%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 2853 reject
2 icloud.com 2449 quarantine
3 americanexpress.com 1904 reject
4 checkout.com 1251 reject
5 binance.com 1116 quarantine
6 whatsapp.com 1072 reject
7 shopify.com 947 reject
8 intuit.com 808 reject
9 schwab.com 746 reject
10 kraken.com 703 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 175 Medium
5%
2 quickbooks.intuit.com 37 95 188 Medium
7%
3 sumup.com 37 85 152 Medium
7%
4 wellsfargo.com 36 95 135 Medium
29%
5 mashreq.com 35 75 53 Medium
4%
6 airwallex.com 34 90 103 Medium
14%
7 morganstanley.com 33 80 23 Medium
22%
8 intuit.com 33 100 808 Medium
4%
9 mizuhogroup.com 33 70 15 Medium
0%
10 notion.so 33 85 197 Medium
2%