Elevated Risk
IP 207.90.244.18 is a high-risk address associated with persistent hacking activity, with 425 abuse reports documenting systematic unauthorized access attempts originating from Cogent Communications infrastructure over approximately ten months of sustained operation.
The IP, registered to AS174 (Cogent-174) in the United States, demonstrates an 8/10 activity frequency with a 96% confidence score indicating highly reliable threat attribution. Automated honeypot sensors across twenty distinct detection points recorded twenty confirmed hacking-related incidents between August 2025 and June 2026, with the most recent activity occurring in June 2026. The volume and consistency of reports suggest deliberate, methodical scanning and exploitation attempts rather than opportunistic background noise, with the attacker maintaining persistent presence throughout the observation window.
The dominant threat category—general hacking activity—encompasses intrusion attempts, vulnerability exploitation, and unauthorized access probes targeting exposed services. This pattern indicates the address is likely part of an automated campaign scanning for misconfigured systems, weak credentials, or known software vulnerabilities. For organizations running publicly accessible services matching the probed attack surface, successful exploitation could result in data compromise, system takeover, or use of the compromised host as a pivot point for further network intrusion.
Site operators should immediately block or rate-limit traffic from this address at the firewall or load-balancer level. Implementing authentication hardening measures—including enforcement of strong, unique credentials and multi-factor authentication—substantially reduces the effectiveness of credential-based attacks. Deploying intrusion detection signatures or security rules matching known exploitation patterns provides additional protection. Regular patch management and monitoring of authentication logs for failed attempts from this source will help identify any successful compromise attempts early.