Posture summary
Email authentication
SPF ✓ DMARC reject DKIM ✓ DNSSEC ✗TLS / certificate
TLS TLSv1.3 79d to expiryInternet exposure
2 open ports 1 KEVBreach metadata
0 public breachesDomain & hosting
27 public hostnames registered 2001 AS16509 · AMAZON-02 - Amazon.com, Inc. no blocklist hitsPublic attack surface (27 hostnames in Certificate Transparency)
Hostnames this organization published in public TLS certificates. Passive OSINT — nothing was scanned; a wildcard certificate is in use, so the real footprint may be larger.
The hostname inventory — which forgotten hosts exist and where — is part of the complete audit for this domain.
Lookalike domains (5 registered of 123 checked)
Registered permutations of this domain. Existence is a fact, not an accusation — ownership and intent are not assessed. Those able to receive mail are the ones usable for invoice fraud and phishing.
| Domain | Type | Mail-capable |
|---|---|---|
| allied-telesis.com | hyphen | yes |
| alliedtelesis.eu | tld | yes |
| alliedtelesis.org | tld | yes |
2 further registered lookalike(s), 4 of them able to receive mail. The full list, with mail capability for each, is part of the complete audit.
Recommendations
-
mediumEnable DNSSEC
DNSSEC signing was not detected for this domain.
-
criticalPatch known-exploited vulnerabilities
1 known-exploited vulnerability(ies) may affect exposed services. Prioritize patching.
-
criticalPatch what already has a public exploit
1 vulnerability(ies) reported on this host have working exploit code published (Exploit-DB, Metasploit, Nuclei or a public PoC). Exploitation needs no development effort — patch these first.
-
highReset credentials seen in infostealer logs
Public infostealer telemetry associates 1 employee credential set(s) with this domain — passwords captured from infected devices, which bypass password policy and often session-hijack past MFA. The most recent dates from 2025-05-20. Most commonly RedLine. Force a reset for the affected services, invalidate active sessions, and check the devices themselves.
-
mediumReview third-party credential exposure
243 credential set(s) for third-party services used by this domain appear in the same telemetry. Supplier and SaaS accounts are a common lateral path.
-
highMonitor lookalike domains
4 registered lookalike domain(s) can receive mail, which is what makes them usable for invoice fraud and credential phishing. Monitor them and consider defensive registrations.
-
mediumReview the public subdomain footprint
27 hostnames for this domain appear in public Certificate Transparency logs. Retire forgotten hosts — stale subdomains are a common entry point and a takeover risk.
-
highRenew the domain registration
The registration expires in 9 day(s). An expired domain takes down mail and web at once and can be re-registered by anyone.
Refresh this report
Re-run a live analysis or generate a full downloadable audit.
Open live reportAll information is aggregated from public sources for awareness only and does not constitute an accusation or a security assessment. No personal data or credentials are published.