Serbia (RS) Threat Intelligence

RS

Serbia has 5,419 malicious IP addresses with 167,840 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, ssh bruteforce. Top attacking networks: TELEKOM SRBIJA a.d. (1,740 IPs), Yettel d.o.o. (855 IPs), CETIN Ltd. Belgrade (373 IPs). Data collected since 2025-10-13, last activity 2026-09-06.

Threat Assessment: Serbia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by TELEKOM SRBIJA a.d. and Yettel d.o.o..

Total Reports
167,840
Unique IPs
5,419
First Seen
2025-10-13
Last Activity
2026-09-06

Top Threat Categories

Suspicious Activity 4,361
Severe Abuse 508
Moderate Threat 297
High Threat 156
Ssh Bruteforce 44

Top Attacking Networks

AS8400 TELEKOM SRBIJA a.d.
1,740 IPs
AS31042 Yettel d.o.o.
855 IPs
AS15958 CETIN Ltd. Belgrade
373 IPs

Most Reported IPs in Serbia

77.46.136.200 695 reports
109.207.41.125 651 reports
24.135.74.36 645 reports
89.216.52.207 622 reports
109.207.33.248 609 reports

Access this data via API

Get Serbia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/RS

View full API documentation

See how we classify and verify threats →

Check any IP from Serbia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS8400 Intelligence AS31042 Intelligence AS15958 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...