Lookalike domain generator
The Rythm Lookalike Domain Generator is a free, client-side utility that enumerates the typo and homoglyph variants of a domain that attackers commonly use for spear-phishing and brand impersonation. You enter your domain (use only domains you own or are authorized to defend) and the tool generates seven categories of variant: single-character omission (one letter dropped), insertion (one letter added), substitution (one letter swapped), adjacent transposition (two adjacent letters swapped), multi-character swaps that exploit visual similarity (rn looks like m, vv looks like w, cl looks like d), single-character Cyrillic homoglyph substitutions (Cyrillic а replaces Latin a, and so on for e, o, p, c, x, y, i, s), and TLD swaps (the .co/.com confusion is the most successful spear-phishing pattern of the last decade). Use the result to seed a domain-monitoring watchlist, register the highest-value defensive variants, or stage a UDRP filing if you find a registered impostor. The tool runs entirely in your browser; nothing leaves the page. The output is a defense starting point, not a complete enumeration: real attacks chain multi-character homoglyphs, and Greek, Armenian, and Latin Extended characters this list does not enumerate are also in active use. Pair the result with whois and passive-DNS for registration status.
What categories of variant does the tool generate?
Omission, insertion, substitution, transposition, multi-character swaps, Cyrillic homoglyphs, TLD swaps.
Will it find every possible lookalike?
No. Real attacks chain multi-character homoglyphs.
Should I register every variant?
No. Register the highest-value handful; monitor the rest.
Can I use this offensively?
No. Use only for domains you own or are authorized to defend.
Secure My Inbox