Red Piranha Threat Intelligence Report - April 30 - May 06 '2018

TRENDS


  • The number of unique attackers decreased by 36.41% compared to last week.
  • Top Alarm was: Delivery & Attack - Bruteforce Authentication - SSH with 574 occurrences.


TOP ATTACKER COUNTRIES


Country No. of Attackers Percentage
United States of America 545 24.85%
China 392 17.88%
France 172 7.84%
Russian Federation 151 6.89%
Vietnam 137 6.25%
Brazil 110 5.02%
Germany 95 4.33%
Republic of Korea 87 3.97%
India 70 3.19%
United Kingdom 52 2.37%
Netherlands 50 2.28%
Unknown 50 2.28%
Italy 43 1.96%
Taiwan 38 1.73%
Canada 38 1.73%
Indonesia 36 1.64%
Ukraine 36 1.64%
Singapore 34 1.55%
Mexico 30 1.37%
Ecuador 27 1.23%
Top Cyber Attackers by Country April 30 - May 6 2018


THREAT GEOLOCATION


Cyber Security Threat Geolocations April 30 - May 6 2018


TOP ATTACKING HOSTS


Top Attacker Hosts April 30 - May 6 2018


TOP ATTACKING NETWORKS


Origin AS Announcement Description
AS57043 5.101.40.0/24 United Protection (UK) Security LIMITED
AS135905 103.99.0.0/22 VPSONLINE Ltd
AS45090 118.24.0.0/15 Tencent Cloud Computing (Beijing) Co., Ltd
AS4837 221.194.0.0/17 China Unicom Hebei Province Network
AS23650 112.73.64.0/18 FoShan RuiJiang Science and Tech Ltd
AS4766 121.131.0.0/17 KT Korea Telecom Network


TOP ALARMS


Alarm No. of Occurrences
Delivery & Attack - Bruteforce Authentication - SSH 574
Environmental Awareness - OTX Indicators of Compromise - PULSE 128
Delivery & Attack - Bruteforce Authentication - Windows Login 1

                                                 

Comparison to the Previous Report

Alarm No. of Occurrences
Delivery & Attack - Bruteforce Authentication - SSH 992
Environmental Awareness - OTX Indicators of Compromise - PULSE 302
Delivery & Attack - WebServer Attack - SQL Injection - Attack Pattern Detection  1

Top Cyber Security Alarms April 30 - May 6 2018
Details