Afghanistan (AF) Threat Intelligence

AF

Afghanistan has 260 malicious IP addresses with 11,269 abuse reports. Top threat categories include ssh bruteforce, generic bruteforce. Top attacking networks: AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK (100 IPs), Datacamp Limited (20 IPs), M247 Europe SRL (16 IPs). Data collected since 2025-12-06, last activity 2026-04-16.

Threat Assessment: Afghanistan has a relatively low level of observed cyber threat activity. The dominant attack types are ssh bruteforce, generic bruteforce. The majority of threats originate from networks operated by AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK and Datacamp Limited.

Total Reports
11,269
Unique IPs
260
First Seen
2025-12-06
Last Activity
2026-04-16

Top Threat Categories

Ssh Bruteforce 20
Generic Bruteforce 4

Top Attacking Networks

AS55330 AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK
100 IPs
AS212238 Datacamp Limited
20 IPs
AS9009 M247 Europe SRL
16 IPs

Most Reported IPs in Afghanistan

36.50.21.246 228 reports
74.118.81.174 228 reports
149.54.62.66 222 reports
180.94.74.94 221 reports
149.54.15.90 220 reports

Access this data via API

Get Afghanistan threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/AF

View full API documentation

See how we classify and verify threats →

Check any IP from Afghanistan

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS55330 Intelligence AS212238 Intelligence AS9009 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...