Red Piranha Threat Intelligence Report - July 8 - 15 '2018

TRENDS


  • The number of unique attackers from China decreased to 23.61% and the United States decreased to 17.07% 
  • Reconnaissance & Probing - Attack Tool detected - Attack with 448 occurrences was the top alarm this week. 


TOP ATTACKER COUNTRIES


Country No. of Attackers Percentage
China 982 23.61%
United States 710 17.07%
India 397 9.55%
Russian Federation 252  6.06%
Brazil 251 6.04%
France 217 5.22%
Vietnam 176 4.23%
Republic of Korea 155 3.73%
Indonesia 144 3.46%
Germany 114 2.74%
Netherlands 95 2.28%
Canada 94 2.26%
United Kingdom 80 1.92%
Australia 80 1.92%
Italy 78 1.88%
Poland 71 1.71%
Thailand 70 1.68%
Philippines 66 1.59%
Singapore 64 1.54%
Egypt 63 1.51%

Top Cyber Attackers by Country July 8-15 2018


THREAT GEOLOCATION


Cyber Security Threat Geolocations July 8-15 2018


TOP ATTACKING HOSTS


Top Attacker Hosts July 8-15 2018

TOP ATTACKING NETWORKS


Origin AS Announcement Description
AS56047 112.33.250.0/23 China Mobile Communications Corporation
AS17638 221.339.0.0/18 CHINANET TIANJIN PROVINCE NETWORK
AS4134 218.65.0.0/17 CHINANET Jiangxi Province Network 
AS131414 45.118.144.0/22 Long Van Soft Solution JSC
AS45090 139.199.0.0/16 Tencent cloud computing (Beijing) Co., Ltd.
AS4837 119.36.0.0/16 China Unicom HuBei Province Network
AS53340 199.241.136.0/21 VegasNAP, LLC


TOP ALARMS


 

Alarm No. of Occurrences
Reconnaissance & Probing - Attack Tool detected - Attack 448
Environmental Awareness - OTX Indicators of Compromise - PULSE 255
Delivery & Attack - Bruteforce Authentication - SSH 66
Delivery & Attack - Webserver Attack - Attack 23

                             

Comparison to the Previous Report

Alarm No. of Occurrences
AlienVault HIDS: IDS event 563120
Environmental Awareness - OTX Indicators of Compromise - PULSE 193
Delivery & Attack - Bruteforce Authentication - SSH 64
Delivery & Attack - WebServer Attack - Attack 32

Top Cyber Security Alarms July 8-15 2018
Details