Afghanistan (AF) Threat Intelligence

AF

Afghanistan has 540 malicious IP addresses with 30,908 abuse reports. Top threat categories include severe abuse, suspicious activity, ssh bruteforce, high threat, moderate threat. Top attacking networks: AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK (204 IPs), Datacamp Limited (42 IPs), TELECOM DEVELOPMENT COMPANY AFGHANISTAN (28 IPs). Data collected since 2025-10-13, last activity 2026-07-13.

Threat Assessment: Afghanistan has a relatively low level of observed cyber threat activity. The dominant attack types are severe abuse, suspicious activity, ssh bruteforce. The majority of threats originate from networks operated by AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK and Datacamp Limited.

Total Reports
30,908
Unique IPs
540
First Seen
2025-10-13
Last Activity
2026-07-13

Top Threat Categories

Severe Abuse 228
Suspicious Activity 171
Ssh Bruteforce 47
High Threat 39
Moderate Threat 30

Top Attacking Networks

AS55330 AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK
204 IPs
AS212238 Datacamp Limited
42 IPs
AS45178 TELECOM DEVELOPMENT COMPANY AFGHANISTAN
28 IPs

Most Reported IPs in Afghanistan

149.54.40.222 427 reports
149.54.15.162 423 reports
149.54.36.187 420 reports
180.94.75.42 417 reports
180.94.74.82 412 reports

Access this data via API

Get Afghanistan threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/AF

View full API documentation

See how we classify and verify threats →

Check any IP from Afghanistan

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS55330 Intelligence AS212238 Intelligence AS45178 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...