RED PIRANHA THREAT INTELLIGENCE REPORT - MAY 14-21 '2018

TRENDS


  • The number of unique attackers from the United State decreased to 6% compared to last week.
  • Top Alarm was: Delivery & Attack - Bruteforce Authentication - SSH with 447 occurrences.


TOP ATTACKER COUNTRIES


Country No. of Attackers Percentage
United States of America 908 30.94%
China 506 17.24%
Russian Federation 171 5.83%
France 161 5.49%
Unknown 143 4.87%
Vietnam 114 3.88%
Republic of Korea 108 3.68%
Brazil 106 3.61%
India 92 3.13%
Australia 90 3.07%
Germany 71 2.42%
United Kingdom 71 2.41%
Singapore 59 2.01%
Netherlands 55 1.87%
Canada 53 1.81%
Taiwan 47 1.60%
Japan 47 1.60%
Italy 47 1.60%
Indonesia 46 1.57%
Thailand 40 1.36%

Top Cyber Attackers by Country May 14-21 2018


THREAT GEOLOCATION


Cyber Security Threat Geolocations May 14-21 2018


TOP ATTACKING HOSTS


Top Attacker Hosts May 14-21 2018


TOP ATTACKING NETWORKS


Origin AS Announcement Description
AS6939 216.218.128.0/17 Hurricane Electric LLC 
AS49981 217.23.0.0/20 WorldStream B.V.
AS4134 61.177.0.0/16 CHINANET Jiangsu Province Network
AS42708 178.73.192.0/18 Portlane AB
AS11878 173.249.192.0/18 Tzulo, Inc.
AS57043 5.101.40.0/24 United Protection (UK) Security Limited


TOP ALARMS


Alarm No. of Occurrences
Delivery & Attack - Bruteforce Authentication - SSH 447
Environmental Awareness - OTX Indicators of Compromise - PULSE 261
Delivery & Attack - Bruteforce Authentication - Windows Login 3
Delivery & Attack - Bruteforce Authentication - Linux/Unix 101

                                                 

Comparison to the Previous Report

Alarm No. of Occurrences
Delivery & Attack - Bruteforce Authentication - SSH 631
Environmental Awareness - OTX Indicators of Compromise - PULSE 66
Delivery & Attack - Bruteforce Authentication - Windows Login 1

Top Cyber Security Alarms May 14-21 2018
Details