RW (RW) Threat Intelligence

RW

RW has 310 malicious IP addresses with 10,685 abuse reports. Top threat categories include suspicious activity, severe abuse, ssh bruteforce, moderate threat, high threat. Top attacking networks: MTNRW-ASN (86 IPs), Olleh-Rwanda-Networks (82 IPs), Liquid Telecommunication Rwanda Limited (45 IPs). Data collected since 2025-10-13, last activity 2026-07-21.

Threat Assessment: RW has a relatively low level of observed cyber threat activity. The dominant attack types are suspicious activity, severe abuse, ssh bruteforce. The majority of threats originate from networks operated by MTNRW-ASN and Olleh-Rwanda-Networks.

Total Reports
10,685
Unique IPs
310
First Seen
2025-10-13
Last Activity
2026-07-21

Top Threat Categories

Suspicious Activity 104
Severe Abuse 88
Ssh Bruteforce 68
Moderate Threat 12
High Threat 9

Top Attacking Networks

AS36890 MTNRW-ASN
86 IPs
AS37228 Olleh-Rwanda-Networks
82 IPs
AS37006 Liquid Telecommunication Rwanda Limited
45 IPs

Most Reported IPs in RW

196.216.81.126 475 reports
197.243.14.52 468 reports
196.12.128.158 408 reports
41.242.142.196 403 reports
197.243.0.62 390 reports

Access this data via API

Get RW threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/RW

View full API documentation

See how we classify and verify threats →

Check any IP from RW

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS36890 Intelligence AS37228 Intelligence AS37006 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...