Uganda (UG) Threat Intelligence

UG

Uganda has 1,969 malicious IP addresses with 70,916 abuse reports. Top threat categories include suspicious activity, moderate threat, severe abuse, ssh bruteforce, high threat. Top attacking networks: MTN Uganda (394 IPs), ZAINUGAS (394 IPs), UGANDA-TELECOM Uganda Telecom (383 IPs). Data collected since 2025-10-13, last activity 2026-09-06.

Threat Assessment: Uganda exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, moderate threat, severe abuse. The majority of threats originate from networks operated by MTN Uganda and ZAINUGAS.

Total Reports
70,916
Unique IPs
1,969
First Seen
2025-10-13
Last Activity
2026-09-06

Top Threat Categories

Suspicious Activity 1,540
Moderate Threat 240
Severe Abuse 198
Ssh Bruteforce 182
High Threat 44

Top Attacking Networks

AS20294 MTN Uganda
394 IPs
AS37075 ZAINUGAS
394 IPs
AS21491 UGANDA-TELECOM Uganda Telecom
383 IPs

Most Reported IPs in Uganda

41.220.3.101 772 reports
196.0.113.110 734 reports
196.0.41.134 733 reports
196.0.107.158 733 reports
196.0.34.106 714 reports

Access this data via API

Get Uganda threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/UG

View full API documentation

See how we classify and verify threats →

Check any IP from Uganda

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS20294 Intelligence AS37075 Intelligence AS21491 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...