Red Piranha Threat Intelligence Report - Sept. 24-30 2017


The UNITED STATES OF AMERICA is our current top Attacker by countries


otx1


TOP HOST ATTACKER – 121.18.238.123


otx2


Detailed Report on Suspicious hosts


Behavior: Scanning hosts

Activity: Continuously using different username password combination existing and non-existing usernames.

We have found following different types of events:

SSHD authentication failed.

Multiple SSHD authentication failures.

Multiple failed logins in a small period of time.

SSH insecure connection attempt (scan).

Failed Password

Invalid User

Input user auth request invalid user

Type of attack: Bruteforce

Source IP Addresses:

121.18.238.123, 103.79.143.34, 203.142.65.20

103.79.143.141103.79.143.3241.78.78.66

121.18.238.119, 103.79.141.39, 103.79.143.108


TOP OTX Activity

otx3
Details
Date Published
October 02, 2017