Threat intelligence sensors detected a sustained Telnet brute force attack originating from IP 177.75.49.40, generating 677 credential capture attempts over approximately one hour on March 28-29, 2026. This activity represents a MEDIUM threat level with automated tooling characteristics targeting l…
Posts tagged: CREDENTIAL_CAPTURE
30 postsSource IP 77.46.207.126 conducted a sustained credential capture campaign against Telnet services on March 29, 2026, generating 1,279 attack events over approximately one hour. This represents routine opportunistic scanning activity with low sophistication and minimal threat impact. Network defende…
IP address 45.186.33.225 conducted 219 credential capture attempts against Telnet services over a one-hour period on 2026-03-28. This activity represents typical opportunistic scanning with low novelty and medium threat level. Network defenders should verify Telnet service exposure and implement ap…
IP address 64.89.160.82 conducted sustained SMTP-based reconnaissance and credential capture attempts against mail infrastructure from March 16-28, 2026, generating over 5,200 security events. Despite the high volume of activity, this represents common opportunistic scanning behavior with low sophi…
External IP address 77.83.39.74 conducted sustained SMTP reconnaissance and credential capture attempts against email infrastructure over a 22-day period from March 4-26, 2026. This activity represents initial reconnaissance phases of a potential email-based attack campaign with 8,403 recorded event…