Documentation Index

Fetch the complete documentation index at: https://help.silentpush.com/llms.txt

Use this file to discover all available pages before exploring further.

Impersonation

Prev Next

Silent Push provides powerful tools to detect and monitor brand impersonation attacks, including typosquatting, phishing sites, and spoofed assets. These capabilities are located under Reconnaissance > Impersonation.

Available Impersonation Modules

  • Domain Impersonation — Detects typosquatted and lookalike domains

  • Email Impersonation — Identifies spoofed email infrastructure (MX records)

  • Favicon Impersonation — Finds fake sites using stolen brand favicons

  • HTML Title Impersonation — Detects pages mimicking legitimate brand titles

Domain Impersonation (Primary Tool)

This is the most commonly used module for detecting brand abuse.

How to Use Domain Impersonation

  1. Go to Reconnaissance > Impersonation > Domain Impersonation

  2. Use the Query Form:      

    • Domain or Regex — Enter your brand name (e.g. paypal) or a regex pattern

    • Network — Include or exclude specific networks

    • ASN / AS Name — Filter by hosting providers

    • First Seen / Last Seen — Define time ranges for newly registered domains

  3. Click Search

You can also click Create New under any impersonation category to save custom monitoring queries.

Key Benefits

  • Early detection of typosquatting and phishing domains

  • Monitoring of email infrastructure used in brand spoofing

  • Visual detection using favicons and HTML titles

  • Automated daily monitoring with email alerts

Best Practices

  • Start with your main brand name in Domain Impersonation

  • Create saved monitors for high-value brands

  • Combine with Threat Feeds and PADNS for deeper context

  • Use the monitoring feature to receive daily alerts on new impersonation attempts