Weekly internet-wide measurement of infrastructure conditions associated with systemic cybersecurity risk.
CyberGreen measures publicly observable internet infrastructure conditions associated with systemic cybersecurity risk. This dashboard summarizes country-level indicators derived from internet-wide observations, including exposure to services and configurations that may contribute to reflection and amplification attacks.
The public dashboard provides a six-month country-level view to support research, policy analysis, and operational awareness. Higher values generally indicate greater observed exposure or estimated amplification potential, depending on the selected indicator.
These measurements describe observable infrastructure conditions and should not be interpreted as attribution of malicious activity by any country, network, or organization.
Need the full CyberGreen dataset? Historical records, ASN-level observations, archived datasets, and bulk downloads are available through subscription-based data access.
Request Subscription AccessThe latest reporting week is compared with the prior week to identify the largest country-level shifts in estimated DDoS amplification potential.
Loading latest weekly changes...
Select a country to explore its internet infrastructure health.
The heat map is a point-in-time snapshot for the latest processed reporting week. It compares country-level exposure for the currently selected risk indicator or calculated DDoS potential metric.
Heat map values show observed counts for scanned risk indicators, and estimated TBit/sec for DDoS potential. For more detail on calculations, see the Data & Metrics page.
The DDoS chart is a time-series view. It shows how estimated global DDoS amplification potential has changed across the six-month public reporting window, rather than only the latest week. Estimated DDoS potential is measured in TBit/sec and assumes infinite upstream ISP capacity.