Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

22753
Total Threats
-40.1% vs prior 30d
20785
Active Threats
-44.3% vs prior 30d
8.6%
Neutralized
+2.4pp vs prior 30d
300
Critical Risk
+133.3% vs prior 30d
2257
Emerging (7d)
+3482.5% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 40.1% compared to the prior 30-day period. Of 22753 total threats, 300 classified as critical risk and 52.9% are email-capable (impersonation ready). Response posture is a gap requiring attention at 8.6% neutralization, up 2.4pp from the prior period — most identified threats remain unaddressed.

Last updated Mar 23, 2026 03:52
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
31%
7026
Infrastructure Ready
19%
4213
Active (Live)
40%
9026
Weaponized
22%
5057
Confirmed Phishing
2%
542
Neutralized
9%
1968

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
GoDaddy.com, LLC 2850 23
1%
NAMECHEAP INC 829 56
2%
NameSilo, LLC 689 42
18%
Dynadot LLC 597 9
30%
Dynadot Inc 572 20
1%
HOSTINGER operations, UAB 530 51
5%
Spaceship, Inc. 482 20
6%
Cloudflare, Inc. 423 38
1%
TUCOWS.COM, CO. 374 47
1%
TurnCommerce, Inc. DBA NameBright.com 367 7
0%
Top Nameservers
Nameserver Count Avg Risk Share
ns1.afternic.com., ns2.afternic.com. 725 29
dns1.registrar-servers.com., dns2.registrar-servers.com. 555 58
ns1.dns-parking.com., ns2.dns-parking.com. 553 47
nsg1.namebrightdns.com., nsg2.namebrightdns.com. 427 7
ns1.abovedomains.com., ns2.abovedomains.com. 424 36
ns1.dyna-ns.net., ns2.dyna-ns.net. 355 11
launch1.spaceship.net., launch2.spaceship.net. 279 15
ns1.dnsowl.com., ns2.dnsowl.com., ns3.dnsowl.com. 268 39
ns1.sedoparking.com., ns2.sedoparking.com. 259 22
ns1.parkingcrew.net., ns2.parkingcrew.net. 249 13

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
797
Taken Down
1257
Blacklisted
1968
Total Neutralized
Takedown Rate 3.5%
Blacklist Rate 5.5%
Neutralization Rate 8.6%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
bookingbird.xyz booking.com 60 Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn) Live 3 days ago
getrelayshopify.com shopify.com 60 Hosting Concepts B.V. d/b/a Registrar.eu Live 2 days, 23 hours ago
podcastbooking.org booking.com 60 Dynadot Inc Live 42 minutes ago
topgoautobookings.com booking.com 60 Hosting Concepts B.V. d/b/a Registrar.eu Live 6 days ago
podcastbookings.org booking.com 60 Dynadot Inc Live 42 minutes ago
trbinancee.com BLOCKED binance.com 60 Porkbun LLC Parked 43 minutes ago
doordashtrack.com doordash.com 60 Hosting Concepts B.V. d/b/a Registrar.eu Phishing 4 days ago
globalrailpayments.com alipay.com 60 GoDaddy.com, LLC Live 5 days ago
airbnbexpresssouthcoast.com airbnb.com 60 GoDaddy.com, LLC Live 5 days ago
celebritybookingsmanagement.com booking.com 60 Spaceship, Inc. Phishing 2 days ago
shopifyconvertiblesteam.com shopify.com 60 ONLINE SAS Live 4 days ago
coinbasesupp.com coinbase.com 60 GoDaddy.com, LLC Live 5 days ago
neuronexthealthcare.com euronext.com 60 GoDaddy.com, LLC Phishing 5 days ago
1cloudshare.com icloud.com 60 GoDaddy.com, LLC Live 5 days ago
smartshopify.org shopify.com 60 Global Domain Group LLC Live 23 hours, 52 minutes ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
payoneerregional.com payoneer.com 45 85 +40 +Dangerous Email Provider (10pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 09, 2026
schwab-62.cyou BLOCKED schwab.com 0 40 +40 +Blacklisted (30pts) Mar 08, 2026
volandodesdesantander.com santander.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 11, 2026
robloxxmodapk.com roblox.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 08, 2026
capitalonebn.com capitalone.com 0 40 +40 +MX Records (15pts) +SPF Records (15pts) Mar 08, 2026
rhu-tampilisan-appointmentbooking.com booking.com 35 75 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 08, 2026
allpayclick.com alipay.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 12, 2026
nodea.no nordea.no 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 12, 2026
burke85icloud.com icloud.com 35 75 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 08, 2026
best-neteller-casinos.net neteller.com 10 50 +40 +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 08, 2026
doordashanalytics.com doordash.com 10 50 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 08, 2026
bookingbuddy-hotels.com booking.com 20 60 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 06, 2026
netflixextras.com netflix.com 30 70 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 12, 2026
salesgenaicloud.info icloud.com 0 40 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 04, 2026
icloud-service-alert.com icloud.com 35 75 +40 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 04, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 1499 30 167 Medium
6%
2 icloud.com 1375 31 151 Medium
15%
3 checkout.com 773 25 28 Low
7%
4 binance.com 747 23 21 Low
16%
5 schwab.com 691 13 3 Low
32%
6 shopify.com 597 21 20 Low
2%
7 whatsapp.com 566 21 17 Low
16%
8 intuit.com 492 31 47 Medium
4%
9 wise.com 483 27 7 Medium
1%
10 t-mobile.com 449 21 11 Low
4%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 1499 reject
2 icloud.com 1375 quarantine
3 checkout.com 773 reject
4 binance.com 747 quarantine
5 schwab.com 691 reject
6 shopify.com 597 reject
7 whatsapp.com 566 reject
8 intuit.com 492 reject
9 wise.com 483 reject
10 t-mobile.com 449 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
11 mizuhogroup.com 32 70 14 Medium
0%
12 airwallex.com 32 90 85 Medium
9%
13 roblox.com 32 100 433 Medium
16%
14 intuit.com 31 95 492 Medium
4%
15 chase.com 31 95 284 Medium
6%
16 wetransfer.com 31 85 90 Medium
13%
17 icloud.com 31 100 1375 Medium
15%
18 societegenerale.com 31 95 20 Medium
10%
19 bankofamerica.com 30 100 154 Medium
21%
20 natwest.com 30 100 69 Medium
12%