Silent Push provides powerful tools to detect and monitor brand impersonation attacks, including typosquatting, phishing sites, and spoofed assets. These capabilities are located under Reconnaissance > Impersonation.
Available Impersonation Modules
Domain Impersonation — Detects typosquatted and lookalike domains
Email Impersonation — Identifies spoofed email infrastructure (MX records)
Favicon Impersonation — Finds fake sites using stolen brand favicons
HTML Title Impersonation — Detects pages mimicking legitimate brand titles
Domain Impersonation (Primary Tool)
This is the most commonly used module for detecting brand abuse.
How to Use Domain Impersonation
Go to Reconnaissance > Impersonation > Domain Impersonation
Use the Query Form:
Domain or Regex — Enter your brand name (e.g.
paypal) or a regex patternNetwork — Include or exclude specific networks
ASN / AS Name — Filter by hosting providers
First Seen / Last Seen — Define time ranges for newly registered domains
Click Search

You can also click Create New under any impersonation category to save custom monitoring queries.
Key Benefits
Early detection of typosquatting and phishing domains
Monitoring of email infrastructure used in brand spoofing
Visual detection using favicons and HTML titles
Automated daily monitoring with email alerts
Best Practices
Start with your main brand name in Domain Impersonation
Create saved monitors for high-value brands
Combine with Threat Feeds and PADNS for deeper context
Use the monitoring feature to receive daily alerts on new impersonation attempts