Poland (PL) Threat Intelligence

PL

Poland has 17,538 malicious IP addresses with 655,147 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, professional threat. Top attacking networks: Orange Polska Spolka Akcyjna (1,846 IPs), 1337 Services GmbH (1,286 IPs), MEVSPACE sp. z o.o. (1,058 IPs). Data collected since 2023-05-26, last activity 2026-04-05.

Threat Assessment: Poland shows substantial cyber threat activity, ranking among the top threat source countries worldwide. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Orange Polska Spolka Akcyjna and 1337 Services GmbH.

Total Reports
655,147
Unique IPs
17,538
First Seen
2023-05-26
Last Activity
2026-04-05

Top Threat Categories

Suspicious Activity 33,706
Severe Abuse 5,453
Moderate Threat 3,186
High Threat 1,315
Professional Threat 1,104

Top Attacking Networks

AS5617 Orange Polska Spolka Akcyjna
1,846 IPs
AS210558 1337 Services GmbH
1,286 IPs
AS201814 MEVSPACE sp. z o.o.
1,058 IPs

Most Reported IPs in Poland

54.38.52.18 261 reports
193.106.245.20 241 reports
194.147.34.192 240 reports
138.124.20.112 237 reports
31.6.212.12 233 reports

Access this data via API

Get Poland threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/PL

View full API documentation

See how we classify and verify threats →

Check any IP from Poland

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS5617 Intelligence AS210558 Intelligence AS201814 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...