Posts tagged: RSYNC_RECON

2 posts
HIGH 65.49.1.192

IP address 65.49.1.192 conducted sustained reconnaissance activities over 53 days (March-April 2026) targeting FortiGate appliances and industrial control systems using IEC-104 protocol probes. This represents a MEDIUM threat level with potential critical infrastructure targeting. Organizations shou…

LOW 34.53.160.242

IP address 34.53.160.242 conducted a sustained 25-day campaign targeting RSYNC, SMB, and HTTP services with 192 attack events, demonstrating reconnaissance and exploitation capabilities. This represents a MEDIUM threat level with known attack patterns including SMB1 exploitation attempts and RSYNC a…