This guide is for administrators using dark web monitoring in the portal. It explains how to add the domains you want watched, how recurring checks work, and how to read and act on the leaked-credential results.
Search for leaked credentials
- Open the Threat Intelligence Portal and go to Dark Web Monitoring in the menu.
- Enter the domain you want to check, for example
yourcompany.com. - Select Search to see the exposures found for that domain.
Read the results
Each result shows an account that appeared in a leak, along with useful context such as which breach it came from and when it was seen. Use this to judge how urgent it is and which accounts to act on first.
Set up a recurring check
Instead of searching by hand each time, set up a recurring check for your domain. Q-Feeds then keeps watching for new leaks and lets you know when fresh credentials for your domain appear.
Monitoring a domain may need it to be verified for your organization first. If you cannot add your domain, ask your Q-Feeds administrator to set it up.
What next
For any account that shows up, reset the password and turn on multi-factor authentication. Then keep the recurring check running so you catch future leaks early.