Threat Intelligence Briefing
Analysis period: 2025-12-10T00:00:01.649395 - 2025-12-10T06:00:01.649395 (6 hours)
Executive Summary
The global threat landscape shows an alarming 886.5% increase in malicious activity over the past 6 hours, with 38,571 threats detected from 21,246 unique IPs across 161 countries. The US (7,603), Netherlands (2,861), and China (2,783) were top sources, while attacks (7,543), spam (6,269), and brute force (5,044) dominated categories. In the Nordic region, Sweden (180 threats) and Finland (124) faced concentrated attacks, primarily brute force, web attacks, and malware C2 traffic. Denmark (31) and Norway (27) saw similar patterns, with Iceland (8) showing limited but notable activity. High-risk IPs include <a href="https://ip.wayscloud.services/ip-intelligence/41.216.189.163" target="_blank">41.216.189.163</a> (DE, malware C2), <a href="https://ip.wayscloud.services/ip-intelligence/91.92.243.183" target="_blank">91.92.243.183</a> (US, botnet), and <a href="https://ip.wayscloud.services/ip-intelligence/45.135.232.92" target="_blank">45.135.232.92</a> (RU, SSH brute force). Immediate focus should be on blocking these IPs and monitoring for SSH/web brute force attempts, particularly in Nordic networks.