Ethiopia (ET) Threat Intelligence

ET

Ethiopia has 3,227 malicious IP addresses with 159,603 abuse reports. Top threat categories include severe abuse, suspicious activity, botnet c2, ssh bruteforce, moderate threat. Top attacking networks: Ethiopian Telecommunication Corporation (3,029 IPs), SAFARICOM-TEL (155 IPs), WebSprix IT Solution PLC (15 IPs). Data collected since 2022-10-07, last activity 2026-09-06.

Threat Assessment: Ethiopia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are severe abuse, suspicious activity, botnet c2. The majority of threats originate from networks operated by Ethiopian Telecommunication Corporation and SAFARICOM-TEL.

Total Reports
159,603
Unique IPs
3,227
First Seen
2022-10-07
Last Activity
2026-09-06

Top Threat Categories

Severe Abuse 2,079
Suspicious Activity 2,035
Botnet C2 792
Ssh Bruteforce 478
Moderate Threat 238

Top Attacking Networks

AS24757 Ethiopian Telecommunication Corporation
3,029 IPs
AS328988 SAFARICOM-TEL
155 IPs
AS329227 WebSprix IT Solution PLC
15 IPs

Most Reported IPs in Ethiopia

196.189.155.89 804 reports
196.188.93.169 780 reports
196.191.142.67 762 reports
196.188.187.205 762 reports
213.55.79.195 760 reports

Access this data via API

Get Ethiopia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/ET

View full API documentation

See how we classify and verify threats →

Check any IP from Ethiopia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS24757 Intelligence AS328988 Intelligence AS329227 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...