Poland (PL) Threat Intelligence

PL

Poland has 28,761 malicious IP addresses with 1,023,474 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, professional threat. Top attacking networks: Orange Polska Spolka Akcyjna (2,939 IPs), 1337 Services GmbH (2,568 IPs), MEVSPACE sp. z o.o. (1,862 IPs). Data collected since 2023-05-26, last activity 2026-08-15.

Threat Assessment: Poland shows substantial cyber threat activity, ranking among the top threat source countries worldwide. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Orange Polska Spolka Akcyjna and 1337 Services GmbH.

Total Reports
1,023,474
Unique IPs
28,761
First Seen
2023-05-26
Last Activity
2026-08-15

Top Threat Categories

Suspicious Activity 33,706
Severe Abuse 5,453
Moderate Threat 3,186
High Threat 1,315
Professional Threat 1,104

Top Attacking Networks

AS5617 Orange Polska Spolka Akcyjna
2,939 IPs
AS210558 1337 Services GmbH
2,568 IPs
AS201814 MEVSPACE sp. z o.o.
1,862 IPs

Most Reported IPs in Poland

134.112.56.47 637 reports
54.38.52.18 636 reports
138.124.20.112 630 reports
195.3.220.7 621 reports
89.68.245.7 617 reports

Access this data via API

Get Poland threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/PL

View full API documentation

See how we classify and verify threats →

Check any IP from Poland

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS5617 Intelligence AS210558 Intelligence AS201814 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...