Serbia (RS) Threat Intelligence

RS

Serbia has 2,479 malicious IP addresses with 108,821 abuse reports. Top threat categories include ssh bruteforce, generic bruteforce, web attack. Top attacking networks: TELEKOM SRBIJA a.d. (774 IPs), Serbia BroadBand-Srpske Kablovske mreze d.o.o. (390 IPs), TRUF d.o.o. (184 IPs). Data collected since 2025-12-06, last activity 2026-04-16.

Threat Assessment: Serbia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are ssh bruteforce, generic bruteforce, web attack. The majority of threats originate from networks operated by TELEKOM SRBIJA a.d. and Serbia BroadBand-Srpske Kablovske mreze d.o.o..

Total Reports
108,821
Unique IPs
2,479
First Seen
2025-12-06
Last Activity
2026-04-16

Top Threat Categories

Ssh Bruteforce 26
Generic Bruteforce 7
Web Attack 2

Top Attacking Networks

AS8400 TELEKOM SRBIJA a.d.
774 IPs
AS31042 Serbia BroadBand-Srpske Kablovske mreze d.o.o.
390 IPs
AS52026 TRUF d.o.o.
184 IPs

Most Reported IPs in Serbia

109.206.115.23 213 reports
37.46.115.19 208 reports
37.46.115.17 208 reports
212.200.119.102 205 reports
89.216.92.113 204 reports

Access this data via API

Get Serbia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/RS

View full API documentation

See how we classify and verify threats →

Check any IP from Serbia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS8400 Intelligence AS31042 Intelligence AS52026 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...