Viewing historical forecast View Latest
AI Threat Forecast 2025-12-19T06:00:52.489713 #183

Threat Intelligence Briefing

Analysis period: 2025-12-19T00:00:01.601611 - 2025-12-19T06:00:01.601611 (6 hours)

Executive Summary

Global threat activity increased 2.7% over the past 6 hours, with 880,528 total threats detected. Suspicious activity dominated (71.2% of cases), followed by severe abuse (19.3%). The US (166,604 threats) and China (144,222) remain top sources, while Nordic countries showed notable activity: Sweden led with 5,644 threats (primarily anonymizer and brute force attacks), Finland had 2,499 (focused on malware C2 and web attacks), and Norway recorded 1,198 incidents (scanning and web brute force). Denmark (1,095) and Iceland (225) saw similar patterns with SSH brute force prevalent. Critical IPs to monitor include <a href="https://ip.wayscloud.services/ip-intelligence/45.135.232.92" target="_blank">45.135.232.92</a> (Russia, SSH bruteforce) and <a href="https://ip.wayscloud.services/ip-intelligence/84.252.120.115" target="_blank">84.252.120.115</a> (Germany, botnet C2). Threat actors increasingly target Nordic infrastructure through SSH and web application attacks, requiring enhanced monitoring of these vectors and immediate blocking of high-frequency attacker IPs.