Mongolia (MN) Threat Intelligence

MN

Mongolia has 981 malicious IP addresses with 59,623 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, ssh bruteforce. Top attacking networks: UNIVISION LLC (389 IPs), GEMNET LLC (132 IPs), Mobinet LLC. AS Mobinet Internet Service Provider (115 IPs). Data collected since 2025-10-13, last activity 2026-07-05.

Threat Assessment: Mongolia has a relatively low level of observed cyber threat activity. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by UNIVISION LLC and GEMNET LLC.

Total Reports
59,623
Unique IPs
981
First Seen
2025-10-13
Last Activity
2026-07-05

Top Threat Categories

Suspicious Activity 1,815
Severe Abuse 343
Moderate Threat 270
High Threat 162
Ssh Bruteforce 59

Top Attacking Networks

AS17882 UNIVISION LLC
389 IPs
AS45204 GEMNET LLC
132 IPs
AS9484 Mobinet LLC. AS Mobinet Internet Service Provider
115 IPs

Most Reported IPs in Mongolia

203.23.199.88 373 reports
66.181.171.136 369 reports
202.21.114.114 361 reports
180.149.125.172 330 reports
180.149.125.169 324 reports

Access this data via API

Get Mongolia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/MN

View full API documentation

See how we classify and verify threats →

Check any IP from Mongolia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS17882 Intelligence AS45204 Intelligence AS9484 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...