Mongolia (MN) Threat Intelligence

MN

Mongolia has 1,235 malicious IP addresses with 71,966 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, tcp scan. Top attacking networks: UNIVISION LLC (508 IPs), Mobinet LLC. AS Mobinet Internet Service Provider (138 IPs), GEMNET LLC (133 IPs). Data collected since 2025-10-13, last activity 2026-09-06.

Threat Assessment: Mongolia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by UNIVISION LLC and Mobinet LLC. AS Mobinet Internet Service Provider.

Total Reports
71,966
Unique IPs
1,235
First Seen
2025-10-13
Last Activity
2026-09-06

Top Threat Categories

Suspicious Activity 1,815
Severe Abuse 343
Moderate Threat 270
High Threat 162
Tcp Scan 99

Top Attacking Networks

AS17882 UNIVISION LLC
508 IPs
AS9484 Mobinet LLC. AS Mobinet Internet Service Provider
138 IPs
AS45204 GEMNET LLC
133 IPs

Most Reported IPs in Mongolia

66.181.171.136 732 reports
202.21.114.114 721 reports
203.21.120.126 671 reports
203.23.199.88 635 reports
202.72.245.146 551 reports

Access this data via API

Get Mongolia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/MN

View full API documentation

See how we classify and verify threats →

Check any IP from Mongolia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS17882 Intelligence AS9484 Intelligence AS45204 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...