Abuse intelligence, cleaned for public use.
Collector signals are normalized into a public-safe feed with source details, usernames, hostnames, and raw logs removed.
The Abuse Radar Threat Feed publishes sanitized SSH abuse, mail brute force, credential guessing, and leak trap signals for defenders who need current IP threat intelligence without exposing private infrastructure logs. IP context can be checked against the AbuseIPDB reference while this page keeps bulk IP lookup links out of the table to avoid noisy external-link counts.
Use the sections below to check an IP, review active signals, download blocklists, and integrate the public JSON API.
Attack Mix
Active detections grouped by public-safe category.
This mix helps separate SSH attacks, mail authentication abuse, leak trap hits, and other abuse patterns before reviewing individual IP records.
Country Signal Map
Approximate country placement from IP geolocation. Point size follows detection volume.
The map is a quick geographic view of current threat feed activity and should be treated as operational context, not attribution.
Collector Health
- SSH Sensor 012026-06-12 14:00 GMT+8Live
- SSH Sensor 022026-06-12 13:25 GMT+8Live
- Mail Sensor 012026-06-12 04:40 GMT+8Warm
- SSH Sensor 032026-06-11 23:22 GMT+8Warm
- Leak Trap Sensor 012026-06-11 18:55 GMT+8Warm
- Mail Sensor 022026-06-11 10:15 GMT+8Quiet
- SSH Sensor 042026-06-11 07:39 GMT+8Quiet
Latest Geo Signals
113.185.45.196Vietnam VNSuspicious SSH authentication attempts · 2026-06-12 14:00 GMT+827.206.221.216China CNSuspicious SSH authentication attempts · 2026-06-12 13:25 GMT+814.153.215.38China CNSuspicious SSH authentication attempts · 2026-06-12 11:29 GMT+8180.214.179.130Taiwan TWSuspicious SSH authentication attempts · 2026-06-12 09:08 GMT+878.189.162.27Turkey TRSuspicious SSH authentication attempts · 2026-06-12 08:43 GMT+8141.98.10.91Republic of Lithuania LTSuspicious mail authentication attempts · 2026-06-12 04:40 GMT+8
- ChinaCN922
- IndiaIN642
- Republic of KoreaKR327
- RussiaRU235
- United StatesUS214
- BrazilBR172
- TaiwanTW115
- NetherlandsNL113
- MalaysiaMY100
- SwedenSE78
Plain IP Blocklists
One IP per line, no reason, source, username, or raw log details.
Choose shorter windows for aggressive blocking or longer windows when you want broader coverage from the active Abuse Radar feed.
Signal Ledger
The signal ledger lists the latest active and archived records with reason, country context, first seen time, last seen time, and blocklist eligibility.
| IP | Reason | Severity | IP Detail | Last Seen | Detections | Feed |
|---|---|---|---|---|---|---|
| Leak trap address contacted | Medium | Taiwan (TW)Far Easttone Telecommunication Co., Ltd. | 2026-05-29 05:55 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 05:55 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Poland (PL)P Sp. Z O.O. | 2026-05-29 05:50 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Sweden (SE)Telia Company Ab | 2026-05-29 05:45 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Hong Kong (HK)Pccw Ims Limited | 2026-05-29 05:45 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 05:45 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Stn Infotech Pvt. Ltd. | 2026-05-29 05:45 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Gambia (GM)Netpage Company Limited | 2026-05-29 05:45 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Republic of Korea (KR)Korea Telecom | 2026-05-29 05:45 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)No. 1,jin rong Street | 2026-05-29 05:35 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Singapore (SG)Alibaba us Technology Co., Ltd. | 2026-05-29 05:30 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Sweden (SE)Bahnhof Ab | 2026-05-29 05:25 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Republic of Korea (KR)Korea Telecom | 2026-05-29 05:20 GMT+814 days ago | 1 | 15/30d lists | |
| Suspicious SSH authentication attempts | High | China (CN)China Unicom China1 Backbone | 2026-05-29 05:07 GMT+814 days ago | 5 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)China Mobile | 2026-05-29 05:05 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)Chinanet | 2026-05-29 05:00 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Netherlands (NL)Baykov Ilya Sergeevich | 2026-05-29 05:00 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)No. 1,jin rong Street | 2026-05-29 04:40 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 04:25 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | United States (US)Frontier Communications of America, Inc. | 2026-05-29 04:20 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Malaysia (MY)Digi Telecommunications Sdn Bhd., Digi Internet Exchange | 2026-05-29 04:10 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | United States (US)Vyve Broadband | 2026-05-29 04:05 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)China Unicom China1 Backbone | 2026-05-29 03:55 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | United Arab Emirates (AE)Emirates Integrated Telecommunications Company Pjsc | 2026-05-29 03:55 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Brazil (BR)Vivo | 2026-05-29 03:55 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 03:40 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Cityonline Services LTD | 2026-05-29 03:35 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Russia (RU)Pjsc Megafon | 2026-05-29 03:30 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Spain (ES)Adamo Telecom Iberia S.A. | 2026-05-29 03:30 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)Chinatelecom Jiangsu Yangzhou Idc Networkdescr Yangzhou, Jiangsu Province, P.R.CHINA. | 2026-05-29 03:25 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Republic of Korea (KR)Korea Telecom | 2026-05-29 03:25 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)Hengyang | 2026-05-29 03:15 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Brazil (BR)V Tal | 2026-05-29 02:55 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Taiwan (TW)Far Easttone Telecommunication Co., Ltd. | 2026-05-29 02:50 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Russia (RU)Ugmk telecom LLC | 2026-05-29 02:50 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 02:40 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Brazil (BR)TELEF NICA BRASIL S.A | 2026-05-29 02:35 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)SHYAM SPECTRA PVT LTD | 2026-05-29 02:30 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Singapore (SG)M1 LIMITED | 2026-05-29 02:25 GMT+814 days ago | 2 | 15/30d lists | |
| Suspicious SSH authentication attempts | Medium | China (CN)China Mobile Communications Corporation | 2026-05-29 02:22 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Russia (RU)JSC Er telecom Holding | 2026-05-29 02:10 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Sweden (SE)Bahnhof Ab | 2026-05-29 02:00 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Poland (PL)Polkomtel Sp. Z O.O. | 2026-05-29 01:55 GMT+814 days ago | 1 | 15/30d lists | |
| Suspicious SSH authentication attempts | Medium | United Kingdom (GB)Virgin Media Limited | 2026-05-29 01:54 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 01:50 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | High | China (CN)No. 1,jin rong Street | 2026-05-29 01:45 GMT+814 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Bharti Airtel Limited | 2026-05-29 01:45 GMT+814 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Malaysia (MY)Digi Telecommunications Sdn Bhd., Digi Internet Exchange | 2026-05-29 01:35 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Brazil (BR)V Tal | 2026-05-29 01:30 GMT+814 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Bangladesh (BD)Zipnet Limited | 2026-05-29 01:30 GMT+814 days ago | 1 | 15/30d lists |