Poland (PL) Threat Intelligence

PL

Poland has 27,360 malicious IP addresses with 946,764 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, professional threat. Top attacking networks: Orange Polska Spolka Akcyjna (2,787 IPs), 1337 Services GmbH (2,568 IPs), MEVSPACE sp. z o.o. (1,699 IPs). Data collected since 2023-05-26, last activity 2026-07-13.

Threat Assessment: Poland shows substantial cyber threat activity, ranking among the top threat source countries worldwide. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Orange Polska Spolka Akcyjna and 1337 Services GmbH.

Total Reports
946,764
Unique IPs
27,360
First Seen
2023-05-26
Last Activity
2026-07-13

Top Threat Categories

Suspicious Activity 33,706
Severe Abuse 5,453
Moderate Threat 3,186
High Threat 1,315
Professional Threat 1,104

Top Attacking Networks

AS5617 Orange Polska Spolka Akcyjna
2,787 IPs
AS210558 1337 Services GmbH
2,568 IPs
AS201814 MEVSPACE sp. z o.o.
1,699 IPs

Most Reported IPs in Poland

87.251.64.149 461 reports
87.251.64.144 452 reports
87.251.64.145 451 reports
87.251.64.147 449 reports
138.124.20.112 445 reports

Access this data via API

Get Poland threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/PL

View full API documentation

See how we classify and verify threats →

Check any IP from Poland

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS5617 Intelligence AS210558 Intelligence AS201814 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...