Germany (DE) Threat Intelligence

DE

Germany has 103,862 malicious IP addresses with 2,838,416 abuse reports. Top threat categories include suspicious activity, severe abuse, professional threat, moderate threat, high threat. Top attacking networks: DigitalOcean, LLC (13,936 IPs), Deutsche Telekom AG (7,291 IPs), Hetzner Online GmbH (5,618 IPs). Data collected since 2022-10-13, last activity 2026-04-07.

Threat Assessment: Germany is one of the most significant sources of cyber threats globally, with an exceptionally high volume of malicious IP addresses. The dominant attack types are suspicious activity, severe abuse, professional threat. The majority of threats originate from networks operated by DigitalOcean, LLC and Deutsche Telekom AG.

Total Reports
2,838,416
Unique IPs
103,862
First Seen
2022-10-13
Last Activity
2026-04-07

Top Threat Categories

Suspicious Activity 126,767
Severe Abuse 51,325
Professional Threat 20,407
Moderate Threat 7,932
High Threat 6,332

Top Attacking Networks

AS14061 DigitalOcean, LLC
13,936 IPs
AS3320 Deutsche Telekom AG
7,291 IPs
AS24940 Hetzner Online GmbH
5,618 IPs

Most Reported IPs in Germany

213.209.143.62 3,233 reports
140.82.121.4 2,010 reports
140.82.121.3 1,990 reports
139.19.117.129 473 reports
213.209.143.64 398 reports

Access this data via API

Get Germany threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/DE

View full API documentation

See how we classify and verify threats →

Check any IP from Germany

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS14061 Intelligence AS3320 Intelligence AS24940 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...