Observatory · Documentary monitoring

Belgian web barometer

An autonomous crawler progressively maps the .be web around the clock. It follows public links between Belgian sites and observes DNS, HTTPS, certificates and protective headers at a low rate. These measurements are combined with public sources without intrusion.

Vulnerability details remain restricted to verified owners. Public abuse reports require a recent independent source; the model alone does not confirm a threat.

Collection active · Updated

The situation at a glance

The figures provide context. The following sections explain what is observed and how each signal should be read.

Domains observed
87 / 87
Analyses received / targets in the current scope.
Average exposure index /100
49.9
Average internal exposure index, not a probability of compromise.
With actively exploited flaw
39
Domains with at least one vulnerability in the CISA KEV catalogue.
With critical flaw
35
Domains with at least one known critical-severity vulnerability.
End-of-life software
32
Domains where an end-of-support component was identified.
Admin/database service exposed
33
Domains with a publicly reachable administration or database service.

.be web coverage and high-risk sites

.be domains discovered
566168
Public .be graph built progressively.
Sites observed
239302
Low-rate observations of DNS, HTTPS, certificates and headers.
Average external hygiene
50,4/100
Aggregate indicator for scored resources.
Sites with risk ≥80/100
32
AegisScope sample: 87 assessed domains. Same list and threshold as below.
List of high-risk sites
Download CSV Download TXT
Same list as the counter: domains, risk indices and assessment dates.

CVE/KEV indicators describe the AegisScope priority sample. The autonomous registry above is a separate, progressively observed scope.

Exposure posture

Share of domains with at least one observable weakness. Per-site details remain private.

  • Weakness detected61
  • No signal26
Material signal50 Low or informational signal11 No signal26

These three categories are mutually exclusive and total the observed scope. A material signal means critical, high or medium severity here.

Observed scope

The barometer starts with the public sector and major domains, then expands.

  • Public sector
    53
  • Major domains
    34

Indicator review with local AI

The local model selects points to examine. Published sentences and figures are built from current aggregate observations, including their limitations.

  • The AegisScope sample covers 87 observed domains; it does not represent the entire Belgian web.
  • 61 domains have exposure signals and 26 have none in the available observations. No observed signal is not a safety certificate.
  • 32 assessments reach a risk index of 80/100 or more. This exposure risk is separate from a phishing report or a proven leak.
  • The autonomous registry is a separate scope: 566168 resources discovered, 239302 observed and 231724 scored for external hygiene.
  • 39 of 87 domains are associated with CISA KEV references. This passive correlation does not demonstrate exploitation on these sites.
  • A similar name, an MX record or high model confidence does not prove phishing. Phishing or malware reports require a recent independent source.

Selection updated · IBCSC local model

High-risk sites — index ≥80/100 32

These resources in the AegisScope sample score at least 80/100 on the technical risk index. Official sites can have vulnerabilities and a risk of personal data exposure; official status does not reduce the score.

The score measures estimated exposure, not a leak probability or AI confidence. Passive infrastructure associations, especially on shared hosting, need owner verification. A high score establishes neither phishing nor a leak that has already occurred. Assessments are less than 14 days old.

100/100High risk antwerpen.be Associated CISA KEV referencesSensitive service exposure signal AegisScope · assessed 06.09.2026 11:36
100/100High risk fgov.be Associated CISA KEV referencesSensitive service exposure signal AegisScope · assessed 06.09.2026 11:06
100/100High risk lesoir.be Associated CISA KEV referencesSensitive service exposure signal AegisScope · assessed 06.09.2026 12:23
100/100High risk mechelen.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 11:39
100/100High risk sudinfo.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:25
100/100High risk uliege.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:58
100/100High risk unamur.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:00
100/100High risk wallonie.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 11:11
Show the rest24
99.4/100High risk tijd.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:31
99.3/100High risk police.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:08
99/100High risk lecho.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:32
98.9/100High risk vlaanderen.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:10
98.7/100High risk hasselt.be Associated CISA KEV references AegisScope · assessed 06.09.2026 11:40
98.3/100High risk kbr.be Associated CISA KEV referencesSensitive service exposure signal AegisScope · assessed 06.09.2026 11:55
97.5/100High risk aalst.be Associated CISA KEV references AegisScope · assessed 06.09.2026 11:42
97.5/100High risk brugge.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:37
97.5/100High risk genk.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:43
96.9/100High risk bpost.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:51
96.7/100High risk namur.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 11:24
92.7/100High risk brussels.be Associated CISA KEV references AegisScope · assessed 06.09.2026 11:12
92.7/100High risk bruxelles.be Associated CISA KEV references AegisScope · assessed 06.09.2026 11:31
92.5/100High risk uccle.be Associated CISA KEV referencesSensitive service exposure signal AegisScope · assessed 06.09.2026 11:34
89.3/100High risk uantwerpen.be Associated CISA KEV references AegisScope · assessed 06.09.2026 12:01
88.4/100High risk uhasselt.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:04
88.1/100High risk charleroi.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 11:23
87/100High risk nieuwsblad.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:28
86/100High risk uclouvain.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 11:56
85/100High risk immoweb.be Associated CISA KEV references AegisScope · assessed 06.09.2026 12:34
84.1/100High risk dhnet.be Associated CISA KEV referencesEnd-of-support component signalSensitive service exposure signal AegisScope · assessed 06.09.2026 12:24
83/100High risk mouscron.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:29
81.9/100High risk infrabel.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:46
80.9/100High risk roeselare.be Associated CISA KEV referencesEnd-of-support component signal AegisScope · assessed 06.09.2026 11:44

Understand, verify and download

The dashboard refreshes automatically. Public files contain the discovered-resource registry, external-hygiene grades, aggregate indicators and alerts that protect visitors.

Pipeline status

Collection operational

AegisScope
Aggregate analysis active
NAS collector
Connected
Autonomous crawler
Exploration active
  1. 01DiscoverA .be link graph expanding from already known domains
  2. 02ObservePublic DNS, HTTPS, certificate and headers without intrusion
  3. 03AggregateFindings are grouped and de-identified
  4. 04PublishUpdated dashboard, CSV and PDF report
.be web graph

Autonomous registry in progress

Continuously updated

The crawler starts from known Belgian domains, follows only public links to other .be resources, respects robots.txt and progressively reassesses each resource.

Resources discovered
566168
Sites observed
239302
Sites graded
231724
Average hygiene
50,4/100
A4299 B19650 C46338 D125275 F36162

The grade describes only externally visible hygiene (HTTPS, certificate and protective headers). It is neither a penetration test nor evidence of compromise.

Progressive coverage: an observed .be web graph, not an exhaustive registry. Without the complete zone file, no independent crawler can guarantee 100% of .be domains.

Aggregate posture-grade distribution

The internal model assigns each observation a grade from A to F to follow the overall trend. Only the number of domains in each class is published; no organisation is identifiable.

A 29 B 2 C 14 D 9 F 33

A indicates the best observable posture and F the most exposed. The grade uses passive public sources, reflects a dated snapshot and may be influenced by shared hosting. It certifies neither security nor compromise.

This AegisScope distribution remains aggregate: per-organisation vulnerability findings are not displayed. The autonomous registry below publishes only public domains and their external hygiene. Analyse my domain.

Discovered-resource registry

Each row is a .be resource encountered by the crawler. The grade covers only publicly visible hygiene; no vulnerability detail is exposed.

Resources 1–25 of 566168. The exports contain the entire available registry.

Resource State Grade Observed
0-24.be HTTP only F15/100
0-energy.be HTTPS observed D40/100
0-forum.be DNS inactive
0-gluten.be HTTPS observed D40/100
0-lactose.be HTTPS observed D50/100
0.be DNS inactive
00.be HTTP only F15/100
000-belgium-hosting.be HTTPS observed C65/100
000.be DNS inactive
0000.be HTTPS observed D50/100
000000.be HTTP only F25/100
001-traduction.be HTTPS observed C65/100
001-traductions.be HTTPS observed C65/100
001.be HTTP only F25/100
002.be HTTPS observed D50/100
003.be HTTP only F15/100
0032.be HTTPS observed D40/100
004.be HTTPS observed D40/100
004th.be HTTPS observed D50/100
005.be HTTPS observed D40/100
007print.be DNS inactive
008hd.be HTTP only F15/100
008th.be DNS inactive
0090.be HTTPS observed D50/100
00p.be HTTP only F25/100

Reports from public sources

Domains reported by a public abuse feed within the last 48 hours, with source and date. Name similarity or an MX record is insufficient: those candidates remain internal. Reports may be incorrect or concern a compromised legitimate site.

Report to investigate Suspicious — verify the URL Monitor No signal
Reported for abuse 78-20-115-5.access.telenet.be Abuse list urlhaus · 11.09.2026 17:35
Reported for abuse www.nccommunication.be Abuse list urlhaus · 11.09.2026 17:35

Is your organisation concerned?

A domain’s detailed report — exposed services, vulnerable components and remediation — is available only to its verified owner. Analyse your domain or report a weakness through our responsible-disclosure process.

Method & ethics

The crawler retrieves public pages, DNS, TLS certificates and HTTP headers at a low rate while respecting robots.txt. No extra ports, authentication or exploitation attempts are used. Deeper checks remain limited to verified owners.

To request removal of a domain from the public display, contact us.