Philippines (PH) Threat Intelligence

PH

Philippines has 12,863 malicious IP addresses with 350,515 abuse reports. Top threat categories include ssh bruteforce, botnet c2, generic bruteforce, rdp bruteforce, mail bruteforce. Top attacking networks: Philippine Long Distance Telephone Company (4,215 IPs), Converge ICT Solutions Inc. (2,195 IPs), Globe Telecom Inc. (1,586 IPs). Data collected since 2023-11-30, last activity 2026-04-16.

Threat Assessment: Philippines shows substantial cyber threat activity, ranking among the top threat source countries worldwide. The dominant attack types are ssh bruteforce, botnet c2, generic bruteforce. The majority of threats originate from networks operated by Philippine Long Distance Telephone Company and Converge ICT Solutions Inc..

Total Reports
350,515
Unique IPs
12,863
First Seen
2023-11-30
Last Activity
2026-04-16

Top Threat Categories

Ssh Bruteforce 318
Botnet C2 171
Generic Bruteforce 51
Rdp Bruteforce 17
Mail Bruteforce 8

Top Attacking Networks

AS9299 Philippine Long Distance Telephone Company
4,215 IPs
AS17639 Converge ICT Solutions Inc.
2,195 IPs
AS132199 Globe Telecom Inc.
1,586 IPs

Most Reported IPs in Philippines

161.49.89.39 269 reports
61.245.11.87 260 reports
27.110.166.67 253 reports
120.28.109.188 248 reports
103.62.152.202 247 reports

Access this data via API

Get Philippines threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/PH

View full API documentation

See how we classify and verify threats →

Check any IP from Philippines

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS9299 Intelligence AS17639 Intelligence AS132199 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...