Serbia (RS) Threat Intelligence

RS

Serbia has 4,707 malicious IP addresses with 151,330 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, ssh bruteforce. Top attacking networks: TELEKOM SRBIJA a.d. (1,523 IPs), Yettel d.o.o. (765 IPs), TRUF d.o.o. (321 IPs). Data collected since 2025-10-13, last activity 2026-07-27.

Threat Assessment: Serbia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by TELEKOM SRBIJA a.d. and Yettel d.o.o..

Total Reports
151,330
Unique IPs
4,707
First Seen
2025-10-13
Last Activity
2026-07-27

Top Threat Categories

Suspicious Activity 4,361
Severe Abuse 508
Moderate Threat 297
High Threat 156
Ssh Bruteforce 40

Top Attacking Networks

AS8400 TELEKOM SRBIJA a.d.
1,523 IPs
AS31042 Yettel d.o.o.
765 IPs
AS52026 TRUF d.o.o.
321 IPs

Most Reported IPs in Serbia

77.46.136.200 471 reports
24.135.74.36 421 reports
109.207.41.125 414 reports
109.207.33.248 410 reports
109.206.115.23 390 reports

Access this data via API

Get Serbia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/RS

View full API documentation

See how we classify and verify threats →

Check any IP from Serbia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS8400 Intelligence AS31042 Intelligence AS52026 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...