AR

Abuse Radar Threat Feed

Sanitized threat intelligence from monitored infrastructure.

Abuse intelligence, cleaned for public use.

Collector signals are normalized into a public-safe feed with source details, usernames, hostnames, and raw logs removed.

The Abuse Radar Threat Feed publishes sanitized SSH abuse, mail brute force, credential guessing, and leak trap signals for defenders who need current IP threat intelligence without exposing private infrastructure logs. IP context can be checked against the AbuseIPDB reference while this page keeps bulk IP lookup links out of the table to avoid noisy external-link counts.

Use the sections below to check an IP, review active signals, download blocklists, and integrate the public JSON API.

Latest signal2026-08-11 10:49 GMT+8
Unique records4481
Total detections7798
Active records1812
Last 24h164
Leak signals3762
Geo pending0
Total visitors1140
Current visitors1
3958Active signals

Attack Mix

Active detections grouped by public-safe category.

This mix helps separate SSH attacks, mail authentication abuse, leak trap hits, and other abuse patterns before reviewing individual IP records.

SSH attacks419
Mail brute/auth262
Leak trap3277
Other0

Country Signal Map

Approximate country placement from IP geolocation. Point size follows detection volume.

The map is a quick geographic view of current threat feed activity and should be treated as operational context, not attribution.

Live Threat Flow

Collector Health

  • SSH Sensor 012026-08-11 10:49 GMT+8Live
  • SSH Sensor 022026-08-11 10:45 GMT+8Live
  • Leak Trap Sensor 012026-08-11 10:15 GMT+8Live
  • Mail Sensor 012026-08-11 04:10 GMT+8Warm
  • Mail Sensor 022026-08-10 19:55 GMT+8Warm
  • SSH Sensor 032026-08-06 17:46 GMT+8Quiet
  • SSH Sensor 042026-08-04 15:44 GMT+8Quiet

Latest Geo Signals

  • 124.153.16.122Indonesia IDSuspicious SSH authentication attempts · 2026-08-11 10:49 GMT+8
  • 180.254.224.252Indonesia IDSuspicious SSH authentication attempts · 2026-08-11 10:45 GMT+8
  • 191.210.72.37Brazil BRLeak trap address contacted · 2026-08-11 10:15 GMT+8
  • 109.173.38.135Russian Federation RULeak trap address contacted · 2026-08-11 10:05 GMT+8
  • 14.116.172.42China CNLeak trap address contacted · 2026-08-11 10:05 GMT+8
  • 68.225.62.190United States USLeak trap address contacted · 2026-08-11 09:55 GMT+8
  1. ChinaCN806
  2. South KoreaKR449
  3. IndiaIN414
  4. United StatesUS298
  5. Russian FederationRU297
  6. BrazilBR225
  7. TaiwanTW146
  8. NetherlandsNL145
  9. IranIR109
  10. SwedenSE101

Plain IP Blocklists

One IP per line, no reason, source, username, or raw log details.

Choose shorter windows for aggressive blocking or longer windows when you want broader coverage from the active Abuse Radar feed.

Signal Ledger

The signal ledger lists the latest active and archived records with reason, country context, first seen time, last seen time, and blocklist eligibility.

IPReasonSeverityIP DetailFirst SeenLast SeenDetectionsFeed
Leak trap address contacted Medium South Korea (KR)Korea Telecom 2026-07-27 05:20 GMT+815 days ago 2026-07-31 02:25 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium United States (US)RCN 2026-07-31 02:20 GMT+811 days ago 2026-07-31 02:20 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium Hong Kong (HK)Smartone Mobile Communications Limited 2026-05-31 18:00 GMT+82 months ago 2026-07-31 01:55 GMT+811 days ago 3 15/30d lists
Leak trap address contacted Medium Brazil (BR)TELEFÔNICA BRASIL S.A 2026-05-27 08:10 GMT+82 months ago 2026-07-31 01:55 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium Malaysia (MY)Equinix (EMEA) Acquisition Enterprises B.V. 2026-05-23 13:00 GMT+82 months ago 2026-07-31 00:50 GMT+811 days ago 3 15/30d lists
Leak trap address contacted Medium Ethiopia (ET)Ethio Telecom 2026-05-15 19:55 GMT+82 months ago 2026-07-31 00:50 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium United States (US)Comcast Cable Communications, LLC 2026-05-31 11:05 GMT+82 months ago 2026-07-31 00:50 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium Belgium (BE)Orange Belgium SA 2026-07-07 19:20 GMT+81 month ago 2026-07-30 23:15 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium Taiwan (TW)Mobile Business Group 2026-05-24 13:00 GMT+82 months ago 2026-07-30 22:45 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium Germany (DE)D-hosting die Rackspace & Connectivity GmbH 2026-05-28 17:10 GMT+82 months ago 2026-07-30 22:45 GMT+811 days ago 3 15/30d lists
Leak trap address contacted Medium Russian Federation (RU)Pjsc Megafon 2026-05-26 15:00 GMT+82 months ago 2026-07-30 22:15 GMT+811 days ago 3 15/30d lists
Leak trap address contacted Medium Russian Federation (RU)Pjsc Rostelecom 2026-07-18 15:00 GMT+823 days ago 2026-07-30 22:10 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium Viet Nam (VN)Vnpt Corp 2026-07-30 20:35 GMT+811 days ago 2026-07-30 20:35 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium Russian Federation (RU)Pjsc Rostelecom 2026-05-25 03:30 GMT+82 months ago 2026-07-30 20:35 GMT+811 days ago 4 15/30d lists
Leak trap address contacted Medium South Korea (KR)Korea Telecom 2026-07-30 20:20 GMT+811 days ago 2026-07-30 20:20 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Unicom China169 Backbone 2026-05-26 07:30 GMT+82 months ago 2026-07-30 20:00 GMT+811 days ago 2 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 19:50 GMT+811 days ago 2026-07-30 19:55 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 19:50 GMT+811 days ago 2026-07-30 19:55 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 19:50 GMT+811 days ago 2026-07-30 19:55 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 19:45 GMT+811 days ago 2026-07-30 19:55 GMT+811 days ago 4 15/30d lists
Leak trap address contacted Medium Finland (FI)Telia Finland Oyj 2026-05-24 00:55 GMT+82 months ago 2026-07-30 18:10 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium France (FR)Free SAS 2026-05-23 10:35 GMT+82 months ago 2026-07-30 18:10 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium China (CN)China Telecom (Group) 2026-06-01 04:55 GMT+82 months ago 2026-07-30 17:50 GMT+811 days ago 2 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:10 GMT+811 days ago 2026-07-30 17:40 GMT+811 days ago 4 15/30d lists
Leak trap address contacted Medium United States (US)Fidelity Communication International Inc. 2026-05-24 18:45 GMT+82 months ago 2026-07-30 17:30 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile 2026-06-15 13:35 GMT+81 month ago 2026-07-30 17:30 GMT+811 days ago 2 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:25 GMT+811 days ago 2026-07-30 17:30 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:00 GMT+811 days ago 2026-07-30 17:20 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:00 GMT+811 days ago 2026-07-30 17:10 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:00 GMT+811 days ago 2026-07-30 17:10 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:05 GMT+811 days ago 2026-07-30 17:05 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 17:00 GMT+811 days ago 2026-07-30 17:00 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 16:50 GMT+811 days ago 2026-07-30 16:55 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 16:45 GMT+811 days ago 2026-07-30 16:50 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 16:50 GMT+811 days ago 2026-07-30 16:50 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 16:45 GMT+811 days ago 2026-07-30 16:50 GMT+811 days ago 4 15/30d lists
Suspicious mail authentication attempts Medium Iran (IR)Iranian Research Organization for Science & Technology 2026-07-30 16:45 GMT+811 days ago 2026-07-30 16:50 GMT+811 days ago 4 15/30d lists
Leak trap address contacted Medium India (IN)Cityonline Services LTD 2026-06-04 23:00 GMT+82 months ago 2026-07-30 16:30 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium Canada (CA)Telus Communications Inc. 2026-05-31 19:45 GMT+82 months ago 2026-07-30 16:30 GMT+811 days ago 3 15/30d lists
Leak trap address contacted Medium Iran (IR)Atrin Information & Communications Technology Company PJS 2026-07-30 15:55 GMT+811 days ago 2026-07-30 15:55 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium Germany (DE)Digitalocean, LLC 2026-07-30 15:55 GMT+811 days ago 2026-07-30 15:55 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium Russian Federation (RU)JSC ER-Telecom Holding 2026-07-30 15:30 GMT+811 days ago 2026-07-30 15:30 GMT+811 days ago 1 15/30d lists
Leak trap address contacted High Indonesia (ID)Pt Pascal Indonesia 2026-05-24 14:05 GMT+82 months ago 2026-07-30 15:30 GMT+811 days ago 6 15/30d lists
Leak trap address contacted Medium Philippines (PH)Philippine Long Distance Telephone Co. 2026-05-25 06:50 GMT+82 months ago 2026-07-30 15:25 GMT+811 days ago 4 15/30d lists
Leak trap address contacted Medium South Korea (KR)Cmb Kwangju Broadcasting 2026-05-27 22:30 GMT+82 months ago 2026-07-30 15:00 GMT+811 days ago 3 15/30d lists
Leak trap address contacted Medium South Korea (KR)Korea Telecom 2026-07-30 13:30 GMT+811 days ago 2026-07-30 13:30 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium Türkiye (TR)TURKCELL ILETISIM HIZMETLERI A.S. 2026-07-30 13:20 GMT+811 days ago 2026-07-30 13:20 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium China (CN)China Mobile Communications Corporation 2026-07-30 13:20 GMT+811 days ago 2026-07-30 13:20 GMT+811 days ago 1 15/30d lists
Leak trap address contacted Medium Brazil (BR)VERO S.A 2026-05-27 01:35 GMT+82 months ago 2026-07-30 13:10 GMT+811 days ago 2 15/30d lists
Leak trap address contacted Medium United States (US)Comcast Cable Communications, LLC 2026-05-29 16:25 GMT+82 months ago 2026-07-30 13:10 GMT+811 days ago 2 15/30d lists
Showing 50 of 1812 matched records. Page 21 of 37.