Abuse intelligence, cleaned for public use.
Collector signals are normalized into a public-safe feed with source details, usernames, hostnames, and raw logs removed.
The Abuse Radar Threat Feed publishes sanitized SSH abuse, mail brute force, credential guessing, and leak trap signals for defenders who need current IP threat intelligence without exposing private infrastructure logs. IP context can be checked against the AbuseIPDB reference while this page keeps bulk IP lookup links out of the table to avoid noisy external-link counts.
Use the sections below to check an IP, review active signals, download blocklists, and integrate the public JSON API.
Attack Mix
Active detections grouped by public-safe category.
This mix helps separate SSH attacks, mail authentication abuse, leak trap hits, and other abuse patterns before reviewing individual IP records.
Country Signal Map
Approximate country placement from IP geolocation. Point size follows detection volume.
The map is a quick geographic view of current threat feed activity and should be treated as operational context, not attribution.
Collector Health
- SSH Sensor 012026-08-11 10:49 GMT+8Live
- SSH Sensor 022026-08-11 10:45 GMT+8Live
- Leak Trap Sensor 012026-08-11 10:15 GMT+8Live
- Mail Sensor 012026-08-11 04:10 GMT+8Warm
- Mail Sensor 022026-08-10 19:55 GMT+8Warm
- SSH Sensor 032026-08-06 17:46 GMT+8Quiet
- SSH Sensor 042026-08-04 15:44 GMT+8Quiet
Latest Geo Signals
124.153.16.122Indonesia IDSuspicious SSH authentication attempts · 2026-08-11 10:49 GMT+8180.254.224.252Indonesia IDSuspicious SSH authentication attempts · 2026-08-11 10:45 GMT+8191.210.72.37Brazil BRLeak trap address contacted · 2026-08-11 10:15 GMT+8109.173.38.135Russian Federation RULeak trap address contacted · 2026-08-11 10:05 GMT+814.116.172.42China CNLeak trap address contacted · 2026-08-11 10:05 GMT+868.225.62.190United States USLeak trap address contacted · 2026-08-11 09:55 GMT+8
- ChinaCN806
- South KoreaKR449
- IndiaIN414
- United StatesUS298
- Russian FederationRU297
- BrazilBR225
- TaiwanTW146
- NetherlandsNL145
- IranIR109
- SwedenSE101
Plain IP Blocklists
One IP per line, no reason, source, username, or raw log details.
Choose shorter windows for aggressive blocking or longer windows when you want broader coverage from the active Abuse Radar feed.
Signal Ledger
The signal ledger lists the latest active and archived records with reason, country context, first seen time, last seen time, and blocklist eligibility.
| IP | Reason | Severity | IP Detail | Last Seen | Detections | Feed |
|---|---|---|---|---|---|---|
| Leak trap address contacted | Medium | South Korea (KR)Korea Telecom | 2026-07-31 02:25 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | United States (US)RCN | 2026-07-31 02:20 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Hong Kong (HK)Smartone Mobile Communications Limited | 2026-07-31 01:55 GMT+811 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | Brazil (BR)TELEFÔNICA BRASIL S.A | 2026-07-31 01:55 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Malaysia (MY)Equinix (EMEA) Acquisition Enterprises B.V. | 2026-07-31 00:50 GMT+811 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | Ethiopia (ET)Ethio Telecom | 2026-07-31 00:50 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | United States (US)Comcast Cable Communications, LLC | 2026-07-31 00:50 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Belgium (BE)Orange Belgium SA | 2026-07-30 23:15 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Taiwan (TW)Mobile Business Group | 2026-07-30 22:45 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Germany (DE)D-hosting die Rackspace & Connectivity GmbH | 2026-07-30 22:45 GMT+811 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | Russian Federation (RU)Pjsc Megafon | 2026-07-30 22:15 GMT+811 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | Russian Federation (RU)Pjsc Rostelecom | 2026-07-30 22:10 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Viet Nam (VN)Vnpt Corp | 2026-07-30 20:35 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Russian Federation (RU)Pjsc Rostelecom | 2026-07-30 20:35 GMT+811 days ago | 4 | 15/30d lists | |
| Leak trap address contacted | Medium | South Korea (KR)Korea Telecom | 2026-07-30 20:20 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)China Unicom China169 Backbone | 2026-07-30 20:00 GMT+811 days ago | 2 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 19:55 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 19:55 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 19:55 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 19:55 GMT+811 days ago | 4 | 15/30d lists | |
| Leak trap address contacted | Medium | Finland (FI)Telia Finland Oyj | 2026-07-30 18:10 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | France (FR)Free SAS | 2026-07-30 18:10 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)China Telecom (Group) | 2026-07-30 17:50 GMT+811 days ago | 2 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:40 GMT+811 days ago | 4 | 15/30d lists | |
| Leak trap address contacted | Medium | United States (US)Fidelity Communication International Inc. | 2026-07-30 17:30 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)China Mobile | 2026-07-30 17:30 GMT+811 days ago | 2 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:30 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:20 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:10 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:10 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:05 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 17:00 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 16:55 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 16:50 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 16:50 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 16:50 GMT+811 days ago | 4 | 15/30d lists | |
| Suspicious mail authentication attempts | Medium | Iran (IR)Iranian Research Organization for Science & Technology | 2026-07-30 16:50 GMT+811 days ago | 4 | 15/30d lists | |
| Leak trap address contacted | Medium | India (IN)Cityonline Services LTD | 2026-07-30 16:30 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | Canada (CA)Telus Communications Inc. | 2026-07-30 16:30 GMT+811 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | Iran (IR)Atrin Information & Communications Technology Company PJS | 2026-07-30 15:55 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Germany (DE)Digitalocean, LLC | 2026-07-30 15:55 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Russian Federation (RU)JSC ER-Telecom Holding | 2026-07-30 15:30 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | High | Indonesia (ID)Pt Pascal Indonesia | 2026-07-30 15:30 GMT+811 days ago | 6 | 15/30d lists | |
| Leak trap address contacted | Medium | Philippines (PH)Philippine Long Distance Telephone Co. | 2026-07-30 15:25 GMT+811 days ago | 4 | 15/30d lists | |
| Leak trap address contacted | Medium | South Korea (KR)Cmb Kwangju Broadcasting | 2026-07-30 15:00 GMT+811 days ago | 3 | 15/30d lists | |
| Leak trap address contacted | Medium | South Korea (KR)Korea Telecom | 2026-07-30 13:30 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Türkiye (TR)TURKCELL ILETISIM HIZMETLERI A.S. | 2026-07-30 13:20 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | China (CN)China Mobile Communications Corporation | 2026-07-30 13:20 GMT+811 days ago | 1 | 15/30d lists | |
| Leak trap address contacted | Medium | Brazil (BR)VERO S.A | 2026-07-30 13:10 GMT+811 days ago | 2 | 15/30d lists | |
| Leak trap address contacted | Medium | United States (US)Comcast Cable Communications, LLC | 2026-07-30 13:10 GMT+811 days ago | 2 | 15/30d lists |