Saudi Arabia (SA) Threat Intelligence

SA

Saudi Arabia has 10,107 malicious IP addresses with 141,047 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, ssh bruteforce. Top attacking networks: Saudi Telecom Company JSC (3,944 IPs), Saudi Telecom Company JSC (1,753 IPs), Etihad Etisalat, a joint stock company (1,492 IPs). Data collected since 2024-03-13, last activity 2026-08-15.

Threat Assessment: Saudi Arabia shows substantial cyber threat activity, ranking among the top threat source countries worldwide. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Saudi Telecom Company JSC and Saudi Telecom Company JSC.

Total Reports
141,047
Unique IPs
10,107
First Seen
2024-03-13
Last Activity
2026-08-15

Top Threat Categories

Suspicious Activity 4,829
Severe Abuse 1,003
Moderate Threat 356
High Threat 167
Ssh Bruteforce 86

Top Attacking Networks

AS25019 Saudi Telecom Company JSC
3,944 IPs
AS39891 Saudi Telecom Company JSC
1,753 IPs
AS35819 Etihad Etisalat, a joint stock company
1,492 IPs

Most Reported IPs in Saudi Arabia

79.72.3.119 619 reports
144.24.209.174 619 reports
46.152.238.217 506 reports
8.213.81.38 502 reports
34.166.5.230 499 reports

Access this data via API

Get Saudi Arabia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/SA

View full API documentation

See how we classify and verify threats →

Check any IP from Saudi Arabia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS25019 Intelligence AS39891 Intelligence AS35819 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...