Latest Cyber Attacks — Real-Time Threat Feed
Live feed of the most recent cyber attacks detected by the WAYSCloud threat intelligence network. Each entry represents an independently verified malicious event reported by automated monitoring systems and verified threat reporters. This page refreshes with new data every 5 minutes.
| Time | IP Address | Attack Type | Severity | Country | Network |
|---|---|---|---|---|---|
| 2026-07-21 02:41:30 | 193.26.157.32 | SSH Brute Force | MEDIUM | Germany | netcup GmbH |
| 2026-07-21 02:39:53 | 195.178.110.30 | SSH Brute Force | MEDIUM | Bulgaria | Techoff Srv Limited |
| 2026-07-21 02:38:10 | 88.26.75.151 | SSH Brute Force | HIGH | Spain | Telefonica De Espana S.a.u. |
| 2026-07-21 02:33:26 | 101.47.156.170 | SSH Brute Force | MEDIUM | Singapore | Byteplus Pte. Ltd. |
| 2026-07-21 02:32:52 | 179.32.222.55 | SSH Brute Force | MEDIUM | Colombia | COLOMBIA TELECOMUNICACIONES S.A. ESP BIC |
| 2026-07-21 02:32:49 | 159.89.133.65 | SSH Brute Force | MEDIUM | United States | DigitalOcean, LLC |
| 2026-07-21 02:31:02 | 118.194.234.8 | SSH Brute Force | HIGH | Singapore | UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED |
| 2026-07-21 02:28:52 | 23.91.97.170 | SSH Brute Force | MEDIUM | Hong Kong | UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED |
| 2026-07-21 02:28:51 | 190.196.253.7 | Web Attack | HIGH | Argentina | MEGALINK S.R.L. |
| 2026-07-21 02:27:41 | 209.90.232.249 | SSH Brute Force | HIGH | United States | Wowrack.com |
| 2026-07-21 02:25:13 | 51.75.27.166 | SSH Brute Force | HIGH | France | OVH SAS |
| 2026-07-21 02:24:29 | 20.229.115.183 | SSH Brute Force | MEDIUM | The Netherlands | Microsoft Corporation |
| 2026-07-21 02:22:58 | 179.48.248.245 | SSH Brute Force | MEDIUM | Costa Rica | Data Miners S.A. ( Racknation.cr ) |
| 2026-07-21 02:21:33 | 194.55.245.200 | SSH Brute Force | MEDIUM | Russia | Kviktel LLC |
| 2026-07-21 02:20:59 | 152.32.182.8 | SSH Brute Force | HIGH | United States | UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED |
| 2026-07-21 02:20:25 | 91.92.40.200 | SSH Brute Force | HIGH | The Netherlands | TechTies Inc. |
| 2026-07-21 02:19:04 | 189.126.4.42 | SSH Brute Force | MEDIUM | Brazil | GA Telecom |
| 2026-07-21 02:18:47 | 112.219.151.50 | SSH Brute Force | HIGH | South Korea | LG DACOM Corporation |
| 2026-07-21 02:16:35 | 91.185.75.244 | SSH Brute Force | HIGH | Russia | MTS PJSC |
| 2026-07-21 02:15:07 | 34.17.114.241 | Web Brute Force | HIGH | Italy | Google LLC |
| 2026-07-21 02:15:07 | 164.92.148.165 | Web Brute Force | HIGH | The Netherlands | DigitalOcean, LLC |
| 2026-07-21 02:15:07 | 185.248.245.105 | Web Brute Force | HIGH | Italy | T&T Tecnologie e Telecomunicazioni Srl |
| 2026-07-21 02:15:07 | 111.70.6.219 | Web Brute Force | HIGH | Taiwan | Mobile Business Group |
| 2026-07-21 02:15:07 | 2401:4900:74d7:5199:1429:1dc8:e8fb:8fab | Web Brute Force | HIGH | India | Bharti Airtel Ltd. AS for GPRS Service |
| 2026-07-21 02:15:07 | 173.239.224.226 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 193.37.33.183 | Web Brute Force | HIGH | United States | F.n.s. Holdings Limited |
| 2026-07-21 02:15:07 | 178.65.12.53 | Web Brute Force | HIGH | Russia | Rostelecom |
| 2026-07-21 02:15:07 | 137.59.230.227 | Web Brute Force | HIGH | Pakistan | Cyber Internet Services (Pvt) Ltd. |
| 2026-07-21 02:15:07 | 218.157.132.6 | Web Brute Force | HIGH | South Korea | Korea Telecom |
| 2026-07-21 02:15:07 | 211.228.96.4 | Web Brute Force | HIGH | South Korea | Korea Telecom |
| 2026-07-21 02:15:07 | 157.52.92.42 | Web Brute Force | HIGH | Singapore | Fastly, Inc. |
| 2026-07-21 02:15:07 | 103.153.170.65 | Web Brute Force | HIGH | Bangladesh | Plusnet Inc |
| 2026-07-21 02:15:07 | 218.92.34.74 | Web Brute Force | HIGH | China | Chinanet |
| 2026-07-21 02:15:07 | 103.204.209.59 | Web Brute Force | HIGH | Bangladesh | Level3 Carrier Ltd. |
| 2026-07-21 02:15:07 | 2a09:bac5:27be:1282::1d8:224 | Web Brute Force | HIGH | Germany | Cloudflare, Inc. |
| 2026-07-21 02:15:07 | 172.98.33.214 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 209.50.180.133 | Web Brute Force | HIGH | United Kingdom | 3xK Tech GmbH |
| 2026-07-21 02:15:07 | 154.203.68.190 | Web Brute Force | HIGH | Cabo Verde | CABO VERDE TELECOM, S.A |
| 2026-07-21 02:15:07 | 172.98.33.223 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 147.93.171.186 | Web Brute Force | HIGH | India | Contabo Asia Private Limited |
| 2026-07-21 02:15:07 | 172.98.33.213 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 89.56.88.69 | Web Brute Force | HIGH | Germany | SWN Stadtwerke Neumuenster GmbH |
| 2026-07-21 02:15:07 | 172.98.33.224 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 168.228.157.191 | Web Brute Force | HIGH | Brazil | POWERNET TELECOM |
| 2026-07-21 02:15:07 | 172.98.33.222 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 172.98.33.226 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 172.98.33.228 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 172.98.33.225 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 172.98.33.219 | Web Brute Force | HIGH | United States | Latitude.sh |
| 2026-07-21 02:15:07 | 172.98.33.236 | Web Brute Force | HIGH | United States | Latitude.sh |
Understanding Attack Types
Automated login attempts against SSH servers using common or leaked credential lists. One of the most prevalent attack vectors on internet-facing servers.
Systematic probing of network ports to identify running services and potential vulnerabilities. Often a precursor to targeted exploitation.
Serving malicious payloads via compromised or dedicated servers. Includes ransomware, trojans, information stealers, and exploit kits.
Coordination servers used to control networks of compromised machines. These IPs issue commands to infected endpoints for DDoS, spam, and data theft.
Automated credential stuffing and login attempts against web application authentication endpoints such as WordPress, cPanel, or custom login pages.
Anomalous network behavior flagged by automated detection systems. May include reconnaissance, unusual traffic patterns, or early-stage intrusion attempts.
About This Feed
This real-time threat feed aggregates data from multiple independent sources including automated intrusion detection systems, verified fail2ban reporters, curated threat intelligence lists, and community abuse databases. Each event shown here has been independently detected and reported through our threat intelligence network.
For programmatic access to this data, use the WAYSCloud API. To investigate any IP address in detail, click through to its threat intelligence report.