An autonomous crawler progressively maps the .be web around the clock. It follows public links between Belgian sites and observes DNS, HTTPS, certificates and protective headers at a low rate. These measurements are combined with public sources without intrusion.
◇Vulnerability details remain restricted to verified owners. Public abuse reports require a recent independent source; the model alone does not confirm a threat.
Same list as the counter: domains, risk indices and assessment dates.
CVE/KEV indicators describe the AegisScope priority sample. The autonomous registry above is a separate, progressively observed scope.
Exposure posture
Share of domains with at least one observable weakness. Per-site details remain private.
Weakness detected61
No signal26
Material signal50Low or informational signal11No signal26
These three categories are mutually exclusive and total the observed scope. A material signal means critical, high or medium severity here.
Observed scope
The barometer starts with the public sector and major domains, then expands.
Public sector
53
Major domains
34
Average exposure-index trend
Indicator review with local AI
The local model selects points to examine. Published sentences and figures are built from current aggregate observations, including their limitations.
The AegisScope sample covers 87 observed domains; it does not represent the entire Belgian web.
61 domains have exposure signals and 26 have none in the available observations. No observed signal is not a safety certificate.
32 assessments reach a risk index of 80/100 or more. This exposure risk is separate from a phishing report or a proven leak.
The autonomous registry is a separate scope: 566168 resources discovered, 239302 observed and 231724 scored for external hygiene.
39 of 87 domains are associated with CISA KEV references. This passive correlation does not demonstrate exploitation on these sites.
A similar name, an MX record or high model confidence does not prove phishing. Phishing or malware reports require a recent independent source.
Selection updated · IBCSC local model
High-risk sites — index ≥80/100 32
These resources in the AegisScope sample score at least 80/100 on the technical risk index. Official sites can have vulnerabilities and a risk of personal data exposure; official status does not reduce the score.
The score measures estimated exposure, not a leak probability or AI confidence. Passive infrastructure associations, especially on shared hosting, need owner verification. A high score establishes neither phishing nor a leak that has already occurred. Assessments are less than 14 days old.
The dashboard refreshes automatically. Public files contain the discovered-resource registry, external-hygiene grades, aggregate indicators and alerts that protect visitors.
Pipeline status
Collection operational
AegisScope
Aggregate analysis active
NAS collector
Connected
Autonomous crawler
Exploration active
01DiscoverA .be link graph expanding from already known domains
02ObservePublic DNS, HTTPS, certificate and headers without intrusion
03AggregateFindings are grouped and de-identified
04PublishUpdated dashboard, CSV and PDF report
.be web graph
Autonomous registry in progress
Continuously updated
The crawler starts from known Belgian domains, follows only public links to other .be resources, respects robots.txt and progressively reassesses each resource.
Resources discovered
566168
Sites observed
239302
Sites graded
231724
Average hygiene
50,4/100
A4299B19650C46338D125275F36162
The grade describes only externally visible hygiene (HTTPS, certificate and protective headers). It is neither a penetration test nor evidence of compromise.
Progressive coverage: an observed .be web graph, not an exhaustive registry. Without the complete zone file, no independent crawler can guarantee 100% of .be domains.
Public export
Take the data with you
Two public formats from the same snapshot: a readable report and reusable data.
The internal model assigns each observation a grade from A to F to follow the overall trend. Only the number of domains in each class is published; no organisation is identifiable.
A29B2C14D9F33
A indicates the best observable posture and F the most exposed. The grade uses passive public sources, reflects a dated snapshot and may be influenced by shared hosting. It certifies neither security nor compromise.
This AegisScope distribution remains aggregate: per-organisation vulnerability findings are not displayed. The autonomous registry below publishes only public domains and their external hygiene. Analyse my domain.
.be resources
Discovered-resource registry
Each row is a .be resource encountered by the crawler. The grade covers only publicly visible hygiene; no vulnerability detail is exposed.
Resources 1–25 of 566168. The exports contain the entire available registry.
ResourceStateGradeObserved
0-24.beHTTP onlyF15/100
0-energy.beHTTPS observedD40/100
0-forum.beDNS inactive—
0-gluten.beHTTPS observedD40/100
0-lactose.beHTTPS observedD50/100
0.beDNS inactive—
00.beHTTP onlyF15/100
000-belgium-hosting.beHTTPS observedC65/100
000.beDNS inactive—
0000.beHTTPS observedD50/100
000000.beHTTP onlyF25/100
001-traduction.beHTTPS observedC65/100
001-traductions.beHTTPS observedC65/100
001.beHTTP onlyF25/100
002.beHTTPS observedD50/100
003.beHTTP onlyF15/100
0032.beHTTPS observedD40/100
004.beHTTPS observedD40/100
004th.beHTTPS observedD50/100
005.beHTTPS observedD40/100
007print.beDNS inactive—
008hd.beHTTP onlyF15/100
008th.beDNS inactive—
0090.beHTTPS observedD50/100
00p.beHTTP onlyF25/100
Reports from public sources
Domains reported by a public abuse feed within the last 48 hours, with source and date. Name similarity or an MX record is insufficient: those candidates remain internal. Reports may be incorrect or concern a compromised legitimate site.
Report to investigateSuspicious — verify the URLMonitorNo signal
Reported for abuse78-20-115-5.access.telenet.be
Abuse list urlhaus · 11.09.2026 17:35
Reported for abusewww.nccommunication.be
Abuse list urlhaus · 11.09.2026 17:35
Is your organisation concerned?
A domain’s detailed report — exposed services, vulnerable components and remediation — is available only to its verified owner. Analyse your domain or report a weakness through our responsible-disclosure process.
The crawler retrieves public pages, DNS, TLS certificates and HTTP headers at a low rate while respecting robots.txt. No extra ports, authentication or exploitation attempts are used. Deeper checks remain limited to verified owners.
To request removal of a domain from the public display, contact us.