Extreme Threat
IP 182.93.95.56 is a critical-risk address originating from Subisu Cablenet Pvt Ltd in Kathmandu, Nepal, with a threat level of 10/10 and a 94% confidence score based on 643 total abuse reports. This IP has been definitively linked to widespread hacking activity, representing one of the most hostile addresses currently tracked by automated honeypot sensors.
The overwhelming majority of recent reports, all 20 recent submissions, categorize the activity as hacking, with detection confirmed across 20 separate automated honeypot sensors. The activity frequency of 8/10 indicates sustained, repeated offensive operations rather than opportunistic scanning. The address was first and most recently reported in January 2026, suggesting the malicious traffic pattern is recent and ongoing. Operating through AS4007 (Subisu Cablenet Pvt Ltd), this Nepali infrastructure has become a confirmed source of automated intrusion attempts targeting exposed services globally.
The dominant threat category, hacking, encompasses a broad spectrum of intrusion techniques designed to exploit vulnerabilities, gain unauthorized access, or compromise targeted systems. With 643 accumulated reports and consistent high-frequency activity, this address poses a substantial risk to any exposed SSH, Telnet, or administrative interfaces. The scale of reporting indicates the activity is systematic and likely part of coordinated credential stuffing or vulnerability exploitation campaigns.
Site operators should immediately block this IP at the firewall level and implement rate-limiting on authentication endpoints. Deploying tools such as fail2ban can automatically ban IPs exhibiting brute-force patterns. Enforcing strong, unique credentials alongside multi-factor authentication dramatically reduces the effectiveness of intrusion attempts. Continuous monitoring of authentication logs for sources matching this address or similar patterns is strongly recommended.