Canada (CA) Threat Intelligence

CA

Canada has 140,226 malicious IP addresses with 2,778,380 abuse reports. Top threat categories include tcp scan, suspicious activity, high threat, malware distribution, severe abuse. Top attacking networks: DigitalOcean, LLC (20,529 IPs), OVH SAS (13,253 IPs), 3xK Tech GmbH (4,058 IPs). Data collected since 2022-11-10, last activity 2026-10-04.

Threat Assessment: Canada is one of the most significant sources of cyber threats globally, with an exceptionally high volume of malicious IP addresses. The dominant attack types are tcp scan, suspicious activity, high threat. The majority of threats originate from networks operated by DigitalOcean, LLC and OVH SAS.

Total Reports
2,778,380
Unique IPs
140,226
First Seen
2022-11-10
Last Activity
2026-10-04

Top Threat Categories

Tcp Scan 300,882
Suspicious Activity 259,464
High Threat 93,716
Malware Distribution 64,442
Severe Abuse 10,801

Top Attacking Networks

AS14061 DigitalOcean, LLC
20,529 IPs
AS16276 OVH SAS
13,253 IPs
AS200373 3xK Tech GmbH
4,058 IPs

Most Reported IPs in Canada

85.217.149.74 1,450 reports
85.217.149.73 1,432 reports
85.217.149.70 1,425 reports
85.217.149.54 1,421 reports
85.217.149.49 1,392 reports

Access this data via API

Get Canada threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/CA

View full API documentation

See how we classify and verify threats →

Check any IP from Canada

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS14061 Intelligence AS16276 Intelligence AS200373 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...