AR

Abuse Radar Threat Feed

Sanitized threat intelligence from monitored infrastructure.

Abuse intelligence, cleaned for public use.

Collector signals are normalized into a public-safe feed with source details, usernames, hostnames, and raw logs removed.

The Abuse Radar Threat Feed publishes sanitized SSH abuse, mail brute force, credential guessing, and leak trap signals for defenders who need current IP threat intelligence without exposing private infrastructure logs. IP context can be checked against the AbuseIPDB reference while this page keeps bulk IP lookup links out of the table to avoid noisy external-link counts.

Use the sections below to check an IP, review active signals, download blocklists, and integrate the public JSON API.

Latest signal2026-06-12 04:40 GMT+8
Unique records3252
Total detections3973
Active records3130
Last 24h25
Leak signals2843
Geo pending0
Total visitors236
Current visitors1
3851Active signals

Attack Mix

Active detections grouped by public-safe category.

This mix helps separate SSH attacks, mail authentication abuse, leak trap hits, and other abuse patterns before reviewing individual IP records.

SSH attacks579
Mail brute/auth47
Leak trap3225
Other0

Country Signal Map

Approximate country placement from IP geolocation. Point size follows detection volume.

The map is a quick geographic view of current threat feed activity and should be treated as operational context, not attribution.

Live Threat Flow

Collector Health

  • Mail Sensor 012026-06-12 04:40 GMT+8Live
  • SSH Sensor 012026-06-11 23:22 GMT+8Warm
  • SSH Sensor 022026-06-11 20:22 GMT+8Warm
  • Leak Trap Sensor 012026-06-11 18:55 GMT+8Warm
  • SSH Sensor 032026-06-11 12:13 GMT+8Warm
  • Mail Sensor 022026-06-11 10:15 GMT+8Warm
  • SSH Sensor 042026-06-11 07:39 GMT+8Warm

Latest Geo Signals

  • 141.98.10.91Republic of Lithuania LTSuspicious mail authentication attempts · 2026-06-12 04:40 GMT+8
  • 193.123.109.31Brazil BRSuspicious SSH authentication attempts · 2026-06-11 23:22 GMT+8
  • 221.159.21.88Republic of Korea KRSuspicious SSH authentication attempts · 2026-06-11 20:22 GMT+8
  • 45.80.185.112Costa Rica CRLeak trap address contacted · 2026-06-11 18:55 GMT+8
  • 167.71.239.213India INSuspicious SSH authentication attempts · 2026-06-11 13:45 GMT+8
  • 114.247.140.114China CNSuspicious SSH authentication attempts · 2026-06-11 13:37 GMT+8
  1. ChinaCN919
  2. IndiaIN642
  3. Republic of KoreaKR327
  4. RussiaRU235
  5. United StatesUS214
  6. BrazilBR172
  7. NetherlandsNL113
  8. TaiwanTW112
  9. MalaysiaMY100
  10. SwedenSE78

Plain IP Blocklists

One IP per line, no reason, source, username, or raw log details.

Choose shorter windows for aggressive blocking or longer windows when you want broader coverage from the active Abuse Radar feed.

Signal Ledger

The signal ledger lists the latest active and archived records with reason, country context, first seen time, last seen time, and blocklist eligibility.

IPReasonSeverityIP DetailFirst SeenLast SeenDetectionsFeed
Leak trap address contacted Medium Australia (AU)Australian Crime Commission 2026-05-31 06:50 GMT+812 days ago 2026-05-31 06:50 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium France (FR)OVH SAS 2026-05-31 06:35 GMT+812 days ago 2026-05-31 06:35 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Brazil (BR)TELEF NICA BRASIL S.A 2026-05-31 06:25 GMT+812 days ago 2026-05-31 06:25 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Seokyung Cable Television CO.. Ltd. 2026-05-31 06:20 GMT+812 days ago 2026-05-31 06:20 GMT+812 days ago 1 15/30d lists
Suspicious SSH authentication attempts Medium Germany (DE)Hetzner Online GmbH 2026-05-31 06:17 GMT+812 days ago 2026-05-31 06:17 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Russia (RU)Pjsc Rostelecom 2026-05-31 06:15 GMT+812 days ago 2026-05-31 06:15 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Korea Telecom 2026-05-24 02:55 GMT+819 days ago 2026-05-31 06:15 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium Russia (RU)JSC Er telecom Holding 2026-05-31 06:00 GMT+812 days ago 2026-05-31 06:00 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Sk Broadband Co LTD 2026-05-25 21:15 GMT+817 days ago 2026-05-31 05:55 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium India (IN)Bharat Sanchar Nigam LTD 2026-05-31 05:45 GMT+812 days ago 2026-05-31 05:45 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Libya (LY)Giga for Telecommunication And Technology Limited 2026-05-31 05:10 GMT+812 days ago 2026-05-31 05:10 GMT+812 days ago 1 15/30d lists
Suspicious SSH authentication attempts Medium Hong Kong (HK)Hkbn Enterprise Solutions Hk Limited 2026-05-31 05:09 GMT+812 days ago 2026-05-31 05:09 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile 2026-05-31 04:45 GMT+812 days ago 2026-05-31 04:45 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium India (IN)Bharti Airtel Limited 2026-05-31 04:45 GMT+812 days ago 2026-05-31 04:45 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Hankuk University of Foreign Studies Computer Center 2026-05-25 08:05 GMT+817 days ago 2026-05-31 04:05 GMT+812 days ago 2 15/30d lists
Suspicious SSH authentication attempts Medium China (CN)China Mobile Communications Corporation 2026-05-31 00:26 GMT+812 days ago 2026-05-31 04:01 GMT+812 days ago 4 15/30d lists
Leak trap address contacted Medium Bangladesh (BD)Net Cafe 2026-05-31 04:00 GMT+812 days ago 2026-05-31 04:00 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium India (IN)Bharti Airtel Limited 2026-05-31 03:55 GMT+812 days ago 2026-05-31 03:55 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Malaysia (MY)Celcom Axiata Berhad 2026-05-31 03:45 GMT+812 days ago 2026-05-31 03:45 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Malaysia (MY)Digi Telecommunications Sdn Bhd., Digi Internet Exchange 2026-05-31 03:25 GMT+812 days ago 2026-05-31 03:25 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Brazil (BR)TELEF NICA BRASIL S.A 2026-05-31 03:25 GMT+812 days ago 2026-05-31 03:25 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Turkey (TR)Turk Telekomunikasyon Anonim Sirketi 2026-05-26 19:55 GMT+816 days ago 2026-05-31 03:25 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium China (CN)No. 1,jin rong Street 2026-05-28 03:20 GMT+815 days ago 2026-05-31 03:25 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium Oman (OM)Omani Qatari Telecommunication Company Saoc 2026-05-31 03:15 GMT+812 days ago 2026-05-31 03:15 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Brazil (BR)Oracle Corporation 2026-05-24 05:40 GMT+819 days ago 2026-05-31 02:50 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium Russia (RU)Pjsc Vimpelcom 2026-05-24 11:55 GMT+818 days ago 2026-05-31 02:30 GMT+812 days ago 2 15/30d lists
Suspicious SSH authentication attempts Medium China (CN)China Telecom 2026-05-20 03:47 GMT+823 days ago 2026-05-31 02:25 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Korea Telecom 2026-05-31 02:15 GMT+812 days ago 2026-05-31 02:15 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Korea Telecom 2026-05-27 20:15 GMT+815 days ago 2026-05-31 02:15 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium China (CN)CHINANET BACKBONE 2026-05-31 01:55 GMT+812 days ago 2026-05-31 01:55 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Brazil (BR)Vivo 2026-05-24 07:00 GMT+818 days ago 2026-05-31 01:55 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium China (CN)Chinanet 2026-05-31 01:45 GMT+812 days ago 2026-05-31 01:45 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Republic of Korea (KR)Korea Telecom 2026-05-31 01:35 GMT+812 days ago 2026-05-31 01:35 GMT+812 days ago 1 15/30d lists
Suspicious SSH authentication attempts Medium Indonesia (ID)Telekomunikasi Indonesia pt 2026-05-30 11:36 GMT+812 days ago 2026-05-31 01:16 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium India (IN)Bharti Airtel Limited 2026-05-31 01:05 GMT+812 days ago 2026-05-31 01:05 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile Communications Corporation 2026-05-31 01:00 GMT+812 days ago 2026-05-31 01:00 GMT+812 days ago 1 15/30d lists
Leak trap address contacted High Brazil (BR)TELEF NICA BRASIL S.A 2026-05-20 21:45 GMT+822 days ago 2026-05-31 00:55 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium India (IN)Bharti Airtel Limited 2026-05-25 00:55 GMT+818 days ago 2026-05-31 00:55 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium Taiwan (TW)Mobile Business Group 2026-05-24 10:50 GMT+818 days ago 2026-05-31 00:35 GMT+812 days ago 2 15/30d lists
Leak trap address contacted High China (CN)CHINANET BACKBONE 2026-05-15 05:00 GMT+828 days ago 2026-05-31 00:35 GMT+812 days ago 3 15/30d lists
Leak trap address contacted Medium Kazakhstan (KZ)JSC Kazakhtelecom 2026-05-24 09:35 GMT+818 days ago 2026-05-31 00:20 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile Communications Corporation 2026-05-30 23:50 GMT+812 days ago 2026-05-30 23:50 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium United States (US)Cablevision Systems Corp. 2026-05-30 23:50 GMT+812 days ago 2026-05-30 23:50 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium India (IN)Bharti Airtel Limited 2026-05-30 23:40 GMT+812 days ago 2026-05-30 23:40 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Unicom China1 Backbone 2026-05-30 23:40 GMT+812 days ago 2026-05-30 23:40 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Malaysia (MY)Digi Telecommunications Sdn Bhd., Digi Internet Exchange 2026-05-30 23:25 GMT+812 days ago 2026-05-30 23:25 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium Iraq (IQ)Hulum Almustakbal Company for Communication Engineering And Services LTD 2026-05-30 23:15 GMT+812 days ago 2026-05-30 23:15 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile 2026-05-30 23:15 GMT+812 days ago 2026-05-30 23:15 GMT+812 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile Communications Corporation 2026-05-16 23:15 GMT+826 days ago 2026-05-30 23:15 GMT+812 days ago 2 15/30d lists
Leak trap address contacted Medium Paraguay (PY)FRANCISCO VILLALBA SANTACRUZ PLUS.NET 2026-05-24 10:45 GMT+818 days ago 2026-05-30 23:05 GMT+812 days ago 3 15/30d lists
Showing 50 of 3130 matched records. Page 13 of 63.