Ethiopia (ET) Threat Intelligence

ET

Ethiopia has 1,454 malicious IP addresses with 92,613 abuse reports. Top threat categories include botnet c2, ssh bruteforce, generic bruteforce, rdp bruteforce, repeat offender. Top attacking networks: Ethiopian Telecommunication Corporation (1,382 IPs), SAFARICOM-TEL (46 IPs), WS-ASN (7 IPs). Data collected since 2022-10-07, last activity 2026-04-16.

Threat Assessment: Ethiopia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are botnet c2, ssh bruteforce, generic bruteforce. The majority of threats originate from networks operated by Ethiopian Telecommunication Corporation and SAFARICOM-TEL.

Total Reports
92,613
Unique IPs
1,454
First Seen
2022-10-07
Last Activity
2026-04-16

Top Threat Categories

Botnet C2 266
Ssh Bruteforce 202
Generic Bruteforce 31
Rdp Bruteforce 23
Repeat Offender 8

Top Attacking Networks

AS24757 Ethiopian Telecommunication Corporation
1,382 IPs
AS328988 SAFARICOM-TEL
46 IPs
AS329227 WS-ASN
7 IPs

Most Reported IPs in Ethiopia

196.189.105.178 276 reports
196.189.237.92 263 reports
196.188.80.3 261 reports
196.189.155.89 254 reports
196.189.97.114 252 reports

Access this data via API

Get Ethiopia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/ET

View full API documentation

See how we classify and verify threats →

Check any IP from Ethiopia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS24757 Intelligence AS328988 Intelligence AS329227 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...