Saudi Arabia (SA) Threat Intelligence

SA

Saudi Arabia has 8,400 malicious IP addresses with 121,073 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, ssh bruteforce. Top attacking networks: Saudi Telecom Company JSC (3,162 IPs), Saudi Telecom Company JSC (1,449 IPs), Etihad Etisalat, a joint stock company (1,210 IPs). Data collected since 2024-03-13, last activity 2026-07-05.

Threat Assessment: Saudi Arabia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Saudi Telecom Company JSC and Saudi Telecom Company JSC.

Total Reports
121,073
Unique IPs
8,400
First Seen
2024-03-13
Last Activity
2026-07-05

Top Threat Categories

Suspicious Activity 4,829
Severe Abuse 1,003
Moderate Threat 356
High Threat 167
Ssh Bruteforce 70

Top Attacking Networks

AS25019 Saudi Telecom Company JSC
3,162 IPs
AS39891 Saudi Telecom Company JSC
1,449 IPs
AS35819 Etihad Etisalat, a joint stock company
1,210 IPs

Most Reported IPs in Saudi Arabia

79.72.3.119 380 reports
144.24.209.174 380 reports
46.152.238.217 353 reports
34.166.5.230 348 reports
46.251.140.71 324 reports

Access this data via API

Get Saudi Arabia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/SA

View full API documentation

See how we classify and verify threats →

Check any IP from Saudi Arabia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS25019 Intelligence AS39891 Intelligence AS35819 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...