Japan (JP) Threat Intelligence

JP

Japan has 125,075 malicious IP addresses with 3,101,122 abuse reports. Top threat categories include tcp scan, suspicious activity, high threat, professional threat, malware distribution. Top attacking networks: BEKKOAME INTERNET INC. (17,135 IPs), KDDI CORPORATION (6,907 IPs), NTT DOCOMO BUSINESS,Inc. (4,651 IPs). Data collected since 2022-10-25, last activity 2026-10-05.

Threat Assessment: Japan is one of the most significant sources of cyber threats globally, with an exceptionally high volume of malicious IP addresses. The dominant attack types are tcp scan, suspicious activity, high threat. The majority of threats originate from networks operated by BEKKOAME INTERNET INC. and KDDI CORPORATION.

Total Reports
3,101,122
Unique IPs
125,075
First Seen
2022-10-25
Last Activity
2026-10-05

Top Threat Categories

Tcp Scan 466,500
Suspicious Activity 175,534
High Threat 146,851
Professional Threat 44,000
Malware Distribution 41,002

Top Attacking Networks

AS4686 BEKKOAME INTERNET INC.
17,135 IPs
AS2516 KDDI CORPORATION
6,907 IPs
AS4713 NTT DOCOMO BUSINESS,Inc.
4,651 IPs

Most Reported IPs in Japan

124.155.125.131 1,394 reports
111.238.174.6 1,368 reports
160.251.101.169 1,364 reports
160.251.182.78 1,274 reports
139.162.113.212 1,241 reports

Access this data via API

Get Japan threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/JP

View full API documentation

See how we classify and verify threats →

Check any IP from Japan

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS4686 Intelligence AS2516 Intelligence AS4713 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...