Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

22722
Total Threats
-40.3% vs prior 30d
20755
Active Threats
-44.5% vs prior 30d
8.7%
Neutralized
+2.5pp vs prior 30d
300
Critical Risk
+133.3% vs prior 30d
2226
Emerging (7d)
+3433.3% vs prior 30d
Executive Summary

Threat activity has decreased, with total detected threats declining 40.3% compared to the prior 30-day period. Of 22722 total threats, 300 classified as critical risk and 52.9% are email-capable (impersonation ready). Response posture is a gap requiring attention at 8.7% neutralization, up 2.5pp from the prior period — most identified threats remain unaddressed.

Last updated Mar 23, 2026 03:55
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
31%
7018
Infrastructure Ready
19%
4208
Active (Live)
40%
9010
Weaponized
22%
5051
Confirmed Phishing
2%
541
Neutralized
9%
1967

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
RU-CENTER-RU 34 17
0%
Name SRS AB 33 22
0%
Registrar NIC .DO (midominio.do) 32 15
0%
Ascio Technologies, Inc 30 19
0%
101domain GRS Limited 30 9
0%
RegistryGate GmbH 30 33
3%
nicar 30 15
0%
Cronon GmbH 28 26
0%
Domain.com - Network Solutions, LLC 28 28
4%
Zone Media OÜ 28 17
0%
Top Nameservers
Nameserver Count Avg Risk Share
ns1.afternic.com., ns2.afternic.com. 725 29
dns1.registrar-servers.com., dns2.registrar-servers.com. 553 58
ns1.dns-parking.com., ns2.dns-parking.com. 548 47
nsg1.namebrightdns.com., nsg2.namebrightdns.com. 427 7
ns1.abovedomains.com., ns2.abovedomains.com. 424 36
ns1.dyna-ns.net., ns2.dyna-ns.net. 355 11
launch1.spaceship.net., launch2.spaceship.net. 279 15
ns1.dnsowl.com., ns2.dnsowl.com., ns3.dnsowl.com. 268 39
ns1.sedoparking.com., ns2.sedoparking.com. 259 22
ns1.parkingcrew.net., ns2.parkingcrew.net. 249 13

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
797
Taken Down
1256
Blacklisted
1967
Total Neutralized
Takedown Rate 3.5%
Blacklist Rate 5.5%
Neutralization Rate 8.7%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
celebritybookingsmanagement.com booking.com 60 Spaceship, Inc. Phishing 2 days ago
icloudgames.online icloud.com 60 Key-Systems LLC Live 1 day ago
airbnbexpresssouthcoast.com airbnb.com 60 GoDaddy.com, LLC Live 5 days ago
brazilcloud-3f8a2c9e1.com icloud.com 60 GoDaddy.com, LLC Live 1 day ago
globalrailpayments.com alipay.com 60 GoDaddy.com, LLC Live 5 days ago
bookingsuarez.com booking.com 55 HOSTINGER operations, UAB Phishing 3 days ago
youraibookingwizard.com booking.com 55 GoDaddy.com, LLC Parked 3 days ago
vnkyc-binance.com binance.com 55 GMO Internet, Inc. Offline 4 days ago
syncdigitalcloud.tech icloud.com 55 HOSTINGER operations, UAB Phishing 3 days ago
epicwhatsappotp.com whatsapp.com 55 HOSTINGER operations, UAB Phishing 4 days, 23 hours ago
skrillnex.com skrill.com 55 GoDaddy.com, LLC Parked 4 days, 23 hours ago
bookingvilladalat.com booking.com 55 NAMECHEAP INC Phishing 44 minutes ago
intuitiveandco.com intuit.com 55 TUCOWS.COM, CO. Phishing 6 days ago
indicloudbazaar.com icloud.com 55 TUCOWS.COM, CO. Phishing 19 minutes ago
indicloudbazzar.com icloud.com 55 TUCOWS.COM, CO. Phishing 19 minutes ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
mashreq.sa mashreq.com 0 40 +40 - Mar 02, 2026
intuitarot.com intuit.com 0 40 +40 +MX Records (15pts) +SPF Records (15pts) Mar 08, 2026
useonyxcheckout.info checkout.com 0 40 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 04, 2026
renders-alipay.com alipay.com 35 75 +40 - Mar 05, 2026
galeriecarrefour.com carrefour.com 15 55 +40 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Parked (5pts) Mar 10, 2026
atlassian-analytics.com atlassian.com 10 50 +40 - Feb 28, 2026
infobarclays.com BLOCKED barclays.com 45 80 +35 +Blacklisted (30pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 18, 2026
grupodewhatsapp.online whatsapp.com 40 75 +35 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 18, 2026
quickbooks-care.com quickbooks.intuit.com 40 75 +35 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 20, 2026
docusignforyou.com docusign.com 10 45 +35 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Parked (5pts) Mar 19, 2026
zeluaicloud.info icloud.com 5 40 +35 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) Mar 13, 2026
walmartts.online walmart.com 35 70 +35 +MX Records (15pts) +SPF Records (15pts) +Website Parked (5pts) Mar 16, 2026
netflixjio.com netflix.com 10 45 +35 - Mar 03, 2026
fordonsmaklarna.com klarna.com 0 35 +35 +MX Records (15pts) +Website Live (10pts) Mar 08, 2026
bsantander.net santander.com 15 50 +35 +MX Records (15pts) Mar 08, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 1476 30 164 Medium
6%
2 icloud.com 1375 31 151 Medium
15%
3 checkout.com 773 25 28 Low
7%
4 binance.com 738 23 20 Low
16%
5 schwab.com 691 13 3 Low
32%
6 shopify.com 597 21 20 Low
2%
7 whatsapp.com 566 21 17 Low
16%
8 intuit.com 492 31 47 Medium
4%
9 wise.com 483 27 7 Medium
1%
10 t-mobile.com 449 21 11 Low
4%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 1476 reject
2 icloud.com 1375 quarantine
3 checkout.com 773 reject
4 binance.com 738 quarantine
5 schwab.com 691 reject
6 shopify.com 597 reject
7 whatsapp.com 566 reject
8 intuit.com 492 reject
9 wise.com 483 reject
10 t-mobile.com 449 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 morganstanley.com 37 75 15 Medium
0%
2 payoneer.com 36 90 152 Medium
5%
3 mashreq.com 36 75 41 Medium
2%
4 quickbooks.intuit.com 35 80 124 Medium
8%
5 wellsfargo.com 35 95 106 Medium
29%
6 americanexpress.com 35 80 226 Medium
4%
7 sumup.com 33 85 123 Medium
8%
8 airwallex.com 32 90 85 Medium
9%
9 mizuhogroup.com 32 70 14 Medium
0%
10 lloydsbank.com 32 100 57 Medium
37%