There are some gTLDs like .bank which require a high level of verification. The applicant has to be a financial institution etc.
The problem is twofold. I've never seen a .bank domain in the wild and users generally don't looks at the TLD.
Would people be fooled by "bank.uk-natwset.com"? Probably.
I agree with you that this is definitely in be careful what you wish for territory.
The UX of DNS would need to be swapped with the gTLD going first.
Perhaps more practical would be browsers noting the gTLD as an important piece of information. Perhaps a “Bank” tag for .bank urls.
All good thoughts, thanks for the response!
Maybe the solution is in the offline world. A government funded public service announcement of tv/radio/print/busstop ads saying stuff like "never do government stuff not on .gov, never do banking stuff not on .bank". I think that would be highly effective for the sort of people who need the protection here.
It would obviously require banks and gov departments to get their ducks in a row first which is a whole other problem in itself, but it might still turn out to be an economically viable improvement.