Like many organizations before it, Intuit has recently been releasing a series of security notices warning QuickBooks users against sophisticated phishing attacks. When it comes to the phishing vehicles used, the level of sophistication isn’t mind-blowing or novel. The phishing emails come from cybersquatting domains, such as intuit-solution[.]com, fucaxcapital[.]com and alpha-invest[.]net.

They bank on the appeal of legitimate businesses to lure in victims, which is seen daily on the Domain Name System (DNS). In our 2022 Business Impersonation Landscape Report, where we analyzed the domain footprint of 29 Fortune 500 companies and 20 top CEOs, we found more than 49,000 highly targeted cybersquatting properties added in the past year.

An alarming 12.32% of the properties have been flagged as malicious. You may view the detailed findings by downloading the white paper from our website or check an overview of the results in this post.

Sophisticated Business Impersonation in the DNS

Highly targeted cybersquatting properties, in this context, do not only refer to threat actors impersonating companies via look-alike domains but also include the use of text strings that increase their chances of reeling victims in. We determined three types of business impersonation properties, namely:

The chart below shows the breakdown of malicious cybersquatting properties based on the text strings identified above.


Fortune 500 Impersonators: Connections and Content

We analyzed the WHOIS records and DNS connections of the cybersquatting domains and found:

Business impersonation continues to harm organizations’ reputations and regular Internet users. While detecting the threat in emails, text messages, and social media posts can help, proactively seeking out cybersquatting domains as soon as they get added to the DNS can give companies an edge.


If you’re interested in checking the full results of this study and learning more about the cybersquatting domains identified, feel free to contact us. We are also available to discuss research collaboration ideas.