Posts tagged: CREDENTIAL_CAPTURE

30 posts
HIGH 177.75.49.40

Threat intelligence sensors detected a sustained Telnet brute force attack originating from IP 177.75.49.40, generating 677 credential capture attempts over approximately one hour on March 28-29, 2026. This activity represents a MEDIUM threat level with automated tooling characteristics targeting l…

LOW 77.46.207.126

Source IP 77.46.207.126 conducted a sustained credential capture campaign against Telnet services on March 29, 2026, generating 1,279 attack events over approximately one hour. This represents routine opportunistic scanning activity with low sophistication and minimal threat impact. Network defende…

HIGH 45.186.33.225

IP address 45.186.33.225 conducted 219 credential capture attempts against Telnet services over a one-hour period on 2026-03-28. This activity represents typical opportunistic scanning with low novelty and medium threat level. Network defenders should verify Telnet service exposure and implement ap…

HIGH 64.89.160.82

IP address 64.89.160.82 conducted sustained SMTP-based reconnaissance and credential capture attempts against mail infrastructure from March 16-28, 2026, generating over 5,200 security events. Despite the high volume of activity, this represents common opportunistic scanning behavior with low sophi…

MEDIUM 77.83.39.74

External IP address 77.83.39.74 conducted sustained SMTP reconnaissance and credential capture attempts against email infrastructure over a 22-day period from March 4-26, 2026. This activity represents initial reconnaissance phases of a potential email-based attack campaign with 8,403 recorded event…