Strategic Risk Intelligence

Executive threat landscape with trend analysis and governance-ready narratives

Back to Dashboard
Filters
Clear

Strategic Overview

High-level posture indicators with period-over-period trends

30376
Total Threats
+54.1% vs prior 30d
27612
Active Threats
+56.8% vs prior 30d
9.1%
Neutralized
-2.8pp vs prior 30d
448
Critical Risk
+68.3% vs prior 30d
2439
Emerging (7d)
+12.3% vs prior 30d
Executive Summary

Threat activity has intensified, with total detected threats increasing 54.1% compared to the prior 30-day period. Of 30376 total threats, 448 classified as critical risk and 52.7% are email-capable (impersonation ready). Response posture is a gap requiring attention at 9.1% neutralization, down 2.8pp from the prior period — most identified threats remain unaddressed.

Last updated Apr 08, 2026 23:57
Detection Trends (30 Days)

Threat Composition & Exposure

How mature are detected threats and what systemic exposure do they represent?

Risk Score Distribution
Active High-Risk Domain Age
Threat Lifecycle Funnel

Progression from dormant registration to active threat. Domains can appear in multiple stages.

Dormant
30%
9134
Infrastructure Ready
20%
6201
Active (Live)
38%
11472
Weaponized
21%
6477
Confirmed Phishing
3%
834
Neutralized
9%
2764

Infrastructure Intelligence

Which registrars, nameservers, and TLDs are concentrated in your threat landscape?

Top Registrars
Registrar Count Avg Risk Response Rate
Atom.com Domains LLC 8 8
0%
Hosting Ukraine LLC 8 43
12%
Nom-iq Ltd. dba COM LAUDE 8 9
0%
XIAMEN CHINASOURCE INTERNET SERVICE CO., LTD. 8 22
12%
ELB 8 14
0%
1API 8 7
0%
Ionos SE [Tag = 1AND1] 8 33
0%
Whois Corp. 8 23
0%
Nikko Reg LLP 8 11
0%
Internet Domain Services BS Corp t/a Internet.bs [Tag = IDS-BS] 8 10
0%
Top Nameservers
Nameserver Count Avg Risk Share
ns-scrm.verizon.com., ns-tmtr.verizon.com. 52 0
ns1.m.glbns.com., ns2.m.glbns.com. 51 15
domain-for-sale.hugedomainsdns.com., forsale.hugedomainsdns.com. 51 5
dns10.hichina.com., dns9.hichina.com. 50 31
sl1.sedo.com., sl2.sedo.com. 48 16
1-you.njalla.no., 2-can.njalla.in., 3-get.njalla.fo. 47 31
irma.ns.cloudflare.com., mitchell.ns.cloudflare.com. 45 17
ns.udag.de., ns.udag.net., ns.udag.org. 43 40
ns1a.idcservices.it., ns2a.idcservices.it., ns3a.idcservices.it. 43 39
ns1.markmonitor.com., ns2.markmonitor.com., ns3.markmonitor.com. 42 6

Active Threats & Response

Response effectiveness, emerging threats, and recent risk changes

Response Effectiveness
1353
Taken Down
1567
Blacklisted
2764
Total Neutralized
Takedown Rate 4.5%
Blacklist Rate 5.2%
Neutralization Rate 9.1%
Discovery Method Breakdown
Emerging Threats (Last 7 Days, Risk 50+)
Lookalike Domain Target Domain Risk Score Registrar Website Detected
bookings-airnz.com booking.com 65 NAMECHEAP INC Offline 6 days, 20 hours ago
teams-uber.com uber.com 65 Squarespace Domains LLC Parked 4 days, 3 hours ago
proxy-instagram.com instagram.com 65 Cloudflare, Inc. Offline 2 days, 17 hours ago
aiapicloud.com icloud.com 65 NAMECHEAP INC Offline 5 days, 5 hours ago
theintuitivedetective.com intuit.com 65 NAMECHEAP INC Offline 1 day, 20 hours ago
booking.fashion BLOCKED booking.com 65 - Parked 1 day, 20 hours ago
onlinecasinobooking.com booking.com 65 NAMECHEAP INC Offline 20 hours, 41 minutes ago
globalcloudstatus.com icloud.com 65 NAMECHEAP INC Offline 2 days, 20 hours ago
whatsapp-suporte.com whatsapp.com 65 HOSTINGER operations, UAB Offline 4 days, 19 hours ago
dunkelcloud.net icloud.com 65 Cloudflare, Inc. Offline 2 days, 20 hours ago
instagramvideodownload.net BLOCKED instagram.com 65 Cloudflare, Inc. Offline 2 days, 20 hours ago
laborlogiccloud.com icloud.com 65 NAMECHEAP INC Offline 6 days, 19 hours ago
marbleplaystation.com playstation.com 65 NAMECHEAP INC Offline 4 days, 19 hours ago
sclhwab.com schwab.com 65 NameCheap, Inc. Offline 1 day, 7 hours ago
jpmorgan-exchange.com jpmorgan.com 65 Cloudflare, Inc. Offline 5 days, 5 hours ago
Recent Risk Increases
Lookalike Domain Target Domain Previous Current Change What Changed Date
goblinance.com binance.com 45 100 +55 +Dangerous Email Provider (25pts) +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 28, 2026
bsantanderbonds.com santander.com 10 65 +55 +Dangerous Email Provider (15pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Live (10pts) Mar 24, 2026
distressbookings.com booking.com 15 70 +55 +Dangerous Email Provider (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Parked (5pts) Mar 24, 2026
netflix-us.com BLOCKED netflix.com 20 70 +50 +MX Records (15pts) +SPF Records (15pts) Apr 04, 2026
bookinghotelgranfornells.com booking.com 10 60 +50 +MX Records (15pts) +SPF Records (15pts) +Website Phishing (20pts) Apr 04, 2026
findmyicloud.pro BLOCKED icloud.com 10 60 +50 +MX Records (15pts) +SPF Records (15pts) Apr 03, 2026
aliexpresslogistics.com aliexpress.com 10 60 +50 +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Phishing (20pts) Apr 06, 2026
topsocialbooking.info booking.com 0 50 +50 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 29, 2026
bookinglk.com booking.com 15 65 +50 +MX Records (15pts) +SPF Records (15pts) Apr 01, 2026
bookingadvisor.info booking.com 0 50 +50 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 22, 2026
retirementadvisorbooking.info booking.com 0 50 +50 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 22, 2026
smartadvisorbooking.info booking.com 0 50 +50 +Dangerous Email Provider (10pts) +MX Records (15pts) +SPF Records (15pts) +Website Live (10pts) Mar 22, 2026
ziziroblox.com roblox.com 10 60 +50 +MX Records (15pts) +SPF Records (15pts) +Website Phishing (20pts) Mar 23, 2026
elitebooking.net booking.com 35 85 +50 +Dangerous Registrar (25pts) +MX Records (15pts) +SPF Records (15pts) +Very Recent Domain (10pts) +Website Phishing (20pts) Mar 15, 2026
krakeneducation.com kraken.com 20 65 +45 +Dangerous Email Provider (15pts) +MX Records (15pts) +SPF Records (15pts) Apr 03, 2026

Domain-Level Analysis

Which of your brands are most targeted and carry the highest aggregate risk?

Most Targeted Domains
# Legitimate Domain Lookalikes Avg Risk High Risk Threat Level Response Rate
1 booking.com 2353 31 245 Medium
6%
2 icloud.com 1999 31 234 Medium
15%
3 americanexpress.com 1454 32 3 Medium
1%
4 checkout.com 1121 26 44 Medium
7%
5 binance.com 959 23 32 Low
19%
6 whatsapp.com 948 20 21 Low
16%
7 shopify.com 822 22 39 Low
2%
8 schwab.com 732 14 8 Low
32%
9 intuit.com 660 33 63 Medium
5%
10 wise.com 615 27 9 Medium
2%
Domain Protection Status
10/10
DMARC Protected (quarantine/reject)
7/10
BIMI Configured (brand logo in inbox)
# Domain Lookalikes DMARC Policy Protected BIMI
1 booking.com 2353 reject
2 icloud.com 1999 quarantine
3 americanexpress.com 1454 reject
4 checkout.com 1121 reject
5 binance.com 959 quarantine
6 whatsapp.com 948 reject
7 shopify.com 822 reject
8 schwab.com 732 reject
9 intuit.com 660 reject
10 wise.com 615 reject
Highest Average Risk Domains
# Legitimate Domain Avg Risk Max Risk Lookalikes Severity Response Rate
1 payoneer.com 38 90 173 Medium
4%
2 quickbooks.intuit.com 37 95 171 Medium
7%
3 sumup.com 37 85 150 Medium
7%
4 airwallex.com 35 90 101 Medium
14%
5 wellsfargo.com 35 95 127 Medium
28%
6 mashreq.com 35 75 51 Medium
4%
7 morganstanley.com 33 75 20 Medium
15%
8 intuit.com 33 100 660 Medium
5%
9 mizuhogroup.com 32 70 14 Medium
0%
10 notion.so 32 85 175 Medium
2%