If you or your customers only do commerce within your own country, or know for sure you don't need access to some regions (eg southeast Asia), you can use CSF to block entire countries in /etc/csf/csf.conf:
CC_DENY = "CN,KP,VN"
Do a search and see what are the top 10 hacking countries and include those in the block list.