Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

28797
Total Threats
-32.6% vs prior 30d
26194
Active Threats
-36.2% vs prior 30d
9.0%
Neutralized
+2.0pp vs prior 30d
416
Critical Risk
+79.2% vs prior 30d
2660
Emerging (7d)
-3.6% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 32.6% compared to the prior 30-day period. Of 28797 total threats, 416 classified as critical risk and 53.2% are email-capable (impersonation ready). Response posture is a gap requiring attention at 9.0% neutralization, up 2.0pp from the prior period — most identified threats remain unaddressed.

Last updated Apr 03, 2026 18:40
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
29%
8486
Infrastructure Ready
20%
5745
Active (Live)
39%
11214
Weaponized
22%
6320
Confirmed Phishing
3%
774
Neutralized
9%
2603

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 3829 24
2%
NAMECHEAP INC 1063 57
2%
NameSilo, LLC 924 42
19%
Dominet (HK) Limited 802 35
0%
Dynadot Inc 690 21
2%
HOSTINGER operations, UAB 650 50
6%
Dynadot LLC 610 9
30%
Spaceship, Inc. 594 22
5%
Cloudflare, Inc. 583 41
1%
TUCOWS.COM, CO. 484 46
2%
Top Nameservers
Nameserver Count Avg Risk Share
ns15.domaincontrol.com., ns16.domaincontrol.com. 67 22
ns1.siteground.net., ns2.siteground.net. 67 48
ns23.domaincontrol.com., ns24.domaincontrol.com. 66 22
ns1.ns306.parklogic.com., ns2.ns306.parklogic.com. 66 61
ns39.domaincontrol.com., ns40.domaincontrol.com. 66 23
ns1.domainmx.com., ns2.domainmx.com. 66 20
ns29.domaincontrol.com., ns30.domaincontrol.com. 65 24
ns27.domaincontrol.com., ns28.domaincontrol.com. 65 23
ns45.domaincontrol.com., ns46.domaincontrol.com. 64 24
ns69.domaincontrol.com., ns70.domaincontrol.com. 64 23

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1230
Taken Down
1510
Blacklisted
2603
Total Neutralized
Takedown Rate 4.3%
Blacklist Rate 5.2%
Neutralization Rate 9.0%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
velvetbooking.com booking.com 50 Webcentral Group Ltd Live 6 days, 14 hours ago
bnpparibasassurance.com bnpparibas.com 50 OVH, SAS Live 2 days, 15 hours ago
thefernroomsbooking.site booking.com 50 PDR Ltd. d/b/a PublicDomainRegistry.com Live 6 days, 14 hours ago
instantluxurybooking.com booking.com 50 REGISTER S.P.A. Live 4 days, 15 hours ago
bookingbay.xyz booking.com 50 OVH, SAS Live 4 days, 15 hours ago
wetransferfree.com wetransfer.com 50 GoDaddy.com, LLC Live 6 days, 12 hours ago
bookingriskreview.com booking.com 50 IONOS SE Live 1 day, 15 hours ago
afroglowbooking.org booking.com 50 IONOS SE Live 1 day, 15 hours ago
interstellar-booking.com booking.com 50 IONOS SE Live 6 days, 14 hours ago
hotelmarriottbooking.online booking.com 50 PDR Ltd. d/b/a PublicDomainRegistry.com Live 4 days, 15 hours ago
vibramediabookings.com booking.com 50 Hosting Concepts B.V. d/b/a Registrar.eu Offline 10 minutes ago
binanceclonescript.com BLOCKED binance.com 50 GoDaddy.com, LLC Live 6 days, 14 hours ago
sesbinance.org binance.com 50 IONOS SE Live 6 days, 14 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
textobookings.com booking.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 18, 2026
notionagence.com notion.so 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 18, 2026
intuitioncalls.com intuit.com 15 55 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Parked (5pts) Mar 13, 2026
icsintelcloud.com icloud.com 20 60 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 12, 2026
myworkday.ing workday.com 0 40 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 10, 2026
intuitivebizcoach.com intuit.com 35 75 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) Mar 14, 2026
lcloudasitencias.live icloud.com 0 40 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 10, 2026
payoneerboost.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 08, 2026
payoneerready.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 09, 2026
payoneerintl.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 09, 2026
payoneerlocal.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 08, 2026
payoneerplan.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 09, 2026
payoneerproject.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 09, 2026
payoneerstrategy.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 08, 2026
payoneerclub.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 09, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 2280 31 237 Medium
6%
2 icloud.com 1799 31 208 Medium
15%
3 americanexpress.com 1033 34 2 Medium
2%
4 checkout.com 1030 26 44 Medium
8%
5 binance.com 925 23 30 Low
18%
6 whatsapp.com 778 21 20 Low
15%
7 shopify.com 761 22 34 Low
2%
8 schwab.com 726 14 8 Low
32%
9 wise.com 614 27 9 Medium
2%
10 intuit.com 611 32 57 Medium
5%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 2280 reject
2 icloud.com 1799 quarantine
3 americanexpress.com 1033 reject
4 checkout.com 1030 reject
5 binance.com 925 quarantine
6 whatsapp.com 778 reject
7 shopify.com 761 reject
8 schwab.com 726 reject
9 wise.com 614 reject
10 intuit.com 611 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 172 Medium
4%
2 quickbooks.intuit.com 37 95 161 Medium
7%
3 sumup.com 36 85 148 Medium
7%
4 airwallex.com 35 90 101 Medium
14%
5 mashreq.com 35 75 49 Medium
4%
6 wellsfargo.com 35 95 122 Medium
28%
7 americanexpress.com 34 80 1033 Medium
2%
8 morganstanley.com 33 75 20 Medium
15%
9 mizuhogroup.com 32 70 14 Medium
0%
10 servicenow.com 32 85 119 Medium
4%