Threat Intelligence Briefing
Analysis period: 2025-12-12T06:00:01.894736 - 2025-12-12T12:00:01.894736 (6 hours)
Executive Summary
Global threat activity decreased by 2.3% over the past 6 hours, with 874,979 total threats detected. The Nordic region saw Sweden (6,158 threats) as the most active, followed by Finland (2,329), Norway (1,189), Denmark (1,102), and Iceland (220). Sweden exhibited diverse attack patterns including brute force, SSH attacks, and web-based threats. Globally, the US (165,570) and China (145,281) led in threat volume, with suspicious activity (636,644) dominating categories. Notable attack sources included Dutch IPs <a href="https://ip.wayscloud.services/ip-intelligence/161.35.80.73" target="_blank">161.35.80.73</a> and <a href="https://ip.wayscloud.services/ip-intelligence/134.122.61.226" target="_blank">134.122.61.226</a> (12 attacks each), specializing in SSH and web brute force attacks. Russian IP <a href="https://ip.wayscloud.services/ip-intelligence/45.135.232.92" target="_blank">45.135.232.92</a> showed similar patterns. Organizations should prioritize monitoring these IPs and implement rate limiting on SSH ports. Nordic networks should focus on web application firewalls given the regional prevalence of web-based attacks.