Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

26639
Total Threats
-19.4% vs prior 30d
24265
Active Threats
-24.6% vs prior 30d
8.9%
Neutralized
+2.7pp vs prior 30d
379
Critical Risk
+179.0% vs prior 30d
4384
Emerging (7d)
+727.2% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 19.4% compared to the prior 30-day period. Of 26639 total threats, 379 classified as critical risk and 53.3% are email-capable (impersonation ready). Response posture is a gap requiring attention at 8.9% neutralization, up 2.7pp from the prior period — most identified threats remain unaddressed.

Last updated Mar 29, 2026 03:21
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
7945
Infrastructure Ready
19%
5053
Active (Live)
40%
10576
Weaponized
23%
6054
Confirmed Phishing
3%
717
Neutralized
9%
2374

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 3683 23
1%
NAMECHEAP INC 994 56
2%
NameSilo, LLC 813 42
19%
Dynadot Inc 676 21
1%
Dynadot LLC 605 9
30%
HOSTINGER operations, UAB 602 50
6%
Cloudflare, Inc. 541 40
1%
Spaceship, Inc. 538 21
6%
TurnCommerce, Inc. DBA NameBright.com 480 7
0%
TUCOWS.COM, CO. 442 47
1%
Top Nameservers
Nameserver Count Avg Risk Share
ns1.afternic.com., ns2.afternic.com. 844 29
dns1.registrar-servers.com., dns2.registrar-servers.com. 660 58
ns1.dns-parking.com., ns2.dns-parking.com. 625 46
nsg1.namebrightdns.com., nsg2.namebrightdns.com. 554 7
ns1.abovedomains.com., ns2.abovedomains.com. 438 37
ns1.dyna-ns.net., ns2.dyna-ns.net. 385 12
ns7.alidns.com., ns8.alidns.com. 325 37
launch1.spaceship.net., launch2.spaceship.net. 323 15
ns1.dnsowl.com., ns2.dnsowl.com., ns3.dnsowl.com. 310 39
ns1.sedoparking.com., ns2.sedoparking.com. 286 22

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1057
Taken Down
1434
Blacklisted
2374
Total Neutralized
Takedown Rate 4.0%
Blacklist Rate 5.4%
Neutralization Rate 8.9%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
salesforcemaps.com salesforce.com 60 NAMECHEAP INC Parked 2 days, 21 hours ago
sap-skills.com sap.com 60 HOSTINGER operations, UAB Parked 2 days, 21 hours ago
santanderbet.com santander.com 60 Cloudflare, Inc. Offline 2 days, 21 hours ago
slack-network.com BLOCKED slack.com 60 GoDaddy.com, LLC Offline 2 days, 21 hours ago
slackbase.com slack.com 60 NAMECHEAP INC Parked 2 days, 21 hours ago
slackglobal.com slack.com 60 Promo People Inc. Phishing 2 days, 21 hours ago
online2wellsfargo.help wellsfargo.com 60 NameSilo, LLC Parked 2 days, 21 hours ago
connect2wellsfargo.help wellsfargo.com 60 NameSilo, LLC Parked 2 days, 21 hours ago
verify2wellsfargo.help wellsfargo.com 60 NameSilo, LLC Parked 2 days, 21 hours ago
secure2wellsfargo.help wellsfargo.com 60 NameSilo, LLC Parked 2 days, 21 hours ago
emailspotify.com spotify.com 60 NameSilo, LLC Parked 2 days, 21 hours ago
spotify-games.com spotify.com 60 Cloudflare, Inc. Offline 2 days, 21 hours ago
squareupzone.com squareup.com 60 TuringSign Inc. d/b/a Cosmotown Phishing 2 days, 21 hours ago
squareupworld.com squareup.com 60 TuringSign Inc. d/b/a Cosmotown Phishing 2 days, 21 hours ago
td-digital.com td.com 60 Tucows Domains Inc. Phishing 2 days, 21 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
arcmailcloudservices.com icloud.com 20 60 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 26, 2026
arcmailcloud.com icloud.com 20 60 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 25, 2026
bookingmassages.com booking.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 25, 2026
icioud-localizado.sbs icloud.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 25, 2026
quanlybooking.com booking.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 20, 2026
financialcloud.info icloud.com 0 40 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 25, 2026
csabooking.com booking.com 35 75 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 26, 2026
clockworkdigitalcloud.com icloud.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 21, 2026
alignbooking.com BLOCKED booking.com 50 90 +40 +Blacklisted (30pts) +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 19, 2026
pcicloudhosting.com icloud.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 17, 2026
netellerbank.com neteller.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 17, 2026
mypaypalstore.com paypal.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 17, 2026
twitchmerchantcabin.space twitch.tv 20 60 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 15, 2026
textobookings.com booking.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 18, 2026
notionagence.com notion.so 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 18, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
61 sumup.com 148 36 16 Medium
7%
62 notion.so 148 30 5 Medium
1%
63 quickbooks.intuit.com 144 36 15 Medium
7%
64 nationwide.co.uk 144 26 2 Medium
3%
65 hsbc.com 138 29 8 Medium
16%
66 mastercard.com 134 23 4 Low
7%
67 klarna.com 133 28 5 Medium
5%
68 fedex.com 125 26 3 Medium
7%
69 wellsfargo.com 116 35 11 Medium
28%
70 intesasanpaolo.com 115 27 0 Medium
2%
Domain Protection Status
9/10
DMARC Protected (quarantine/reject)
6/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
61 sumup.com 148 reject
62 notion.so 148 quarantine
63 quickbooks.intuit.com 144 No record
64 nationwide.co.uk 144 reject
65 hsbc.com 138 reject
66 mastercard.com 134 reject
67 klarna.com 133 reject
68 fedex.com 125 reject
69 wellsfargo.com 116 reject
70 intesasanpaolo.com 115 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 170 Medium
4%
2 quickbooks.intuit.com 36 90 144 Medium
7%
3 sumup.com 36 85 148 Medium
7%
4 wellsfargo.com 35 95 116 Medium
28%
5 mashreq.com 35 75 49 Medium
4%
6 americanexpress.com 35 80 425 Medium
4%
7 morganstanley.com 34 75 18 Medium
11%
8 jpmorgan.com 33 90 75 Medium
12%
9 mizuhogroup.com 32 70 14 Medium
0%
10 airwallex.com 32 90 89 Medium
9%