Viewing historical forecast View Latest
AI Threat Forecast 2025-12-18T18:01:02.635330 #181

Threat Intelligence Briefing

Analysis period: 2025-12-18T12:00:02.133594 - 2025-12-18T18:00:02.133594 (6 hours)

Executive Summary

Global threat activity increased by 1.0% over the past 6 hours, with 871,421 threats detected from 436,503 unique IPs. The US (162,225) and China (145,350) remain top sources, while Nordic countries show notable activity: Sweden (5,653 threats) led with bruteforce and high-threat attacks, followed by Finland (2,519) with web-based attacks. Norway (1,189) saw Tor exit node activity, Denmark (1,097) had consistent abuse patterns, and Iceland (219) maintained lower but persistent threats. Suspicious activity (634,371) dominated globally, with severe abuse (169,023) and SSH bruteforce prevalent in Nordic regions. Monitor Russian IP <a href="https://ip.wayscloud.services/ip-intelligence/45.135.232.92" target="_blank">45.135.232.92</a> (10 attacks, bruteforce) and Dutch <a href="https://ip.wayscloud.services/ip-intelligence/104.248.198.192" target="_blank">104.248.198.192</a> (8 attacks, SSH abuse). Nordic ISPs should prioritize SSH hardening and inspect traffic from Romanian IPs <a href="https://ip.wayscloud.services/ip-intelligence/2.57.121.25" target="_blank">2.57.121.25</a>/112 (7 attacks each).