Viewing historical forecast View Latest
AI Threat Forecast 2025-12-16T00:01:18.230718 #170

Threat Intelligence Briefing

Analysis period: 2025-12-15T18:00:01.349475 - 2025-12-16T00:00:01.349475 (6 hours)

Executive Summary

The global threat landscape showed a slight decrease of 2.1% compared to the previous 6-hour period, with 854,460 threats detected from 427,343 unique IPs across 209 countries. Suspicious activity dominated (71.9%), followed by severe abuse (19.9%). The US and China remained top sources, while Nordic countries showed moderate activity: Sweden (5,794 threats), Finland (2,264), Norway (1,175), and Denmark (1,121). SSH brute-force attacks were prevalent across Nordic networks. Notably, Iceland saw 214 threats focused on high/moderate threats. Russia's <a href="https://ip.wayscloud.services/ip-intelligence/45.135.232.92" target="_blank">45.135.232.92</a> (12 attacks) and Bulgaria's <a href="https://ip.wayscloud.services/ip-intelligence/195.178.110.30" target="_blank">195.178.110.30</a> (11 attacks) led in brute-force attempts against Nordic infrastructures. Monitor these IPs closely due to concentrated SSH attacks. Increase scrutiny on port 22 traffic from Eastern European IPs. Implement geo-blocking for high-risk regions and deploy rate-limiting for SSH access. Nordic ISPs should prioritize patching vulnerable SSH configurations.