Threat_Intelligence_Report

Trends



  • The top attacker country was United States with 2670 unique attackers (26.11%)



Top Attacker by Country


CountryNo. of AttackersOccurrences
China216826.83%
United States210326.03%
Brazil5206.44%
France4245.25%
Korea3514.34%
India3504.33%
Australia2943.64%
United Kingdom2553.16%
Netherlands2142.65%
Canada2022.50%
Germany1902.35%
Indonesia1752.17%
Vietnam1702.10%
Singapore1541.91%
Taiwan1461.81%
Italy1441.78%
Hong Kong1261.56%
Colombia941.16%


Top Cyber Attackers by Country February 4-10 2019



Threat Geo-location


Cyber Security Threat Geolocations February 4-10 2019



Top Attacking Hosts


HostOccurrences
185.153.196.37159
185.53.91.32151
185.255.31.14147
185.254.123.20142
 

Top Network Attackers


Origin ASAnnouncementDescription
AS13375243.249.36.0/23LeaseWeb Asia Pacific - Hong Kong
AS199264185.53.91.0/24CLOUD STAR HOSTING SERVICES
AS36678203.19.32.0/21CHINANET FUJIAN PROVINCE NETWORK
AS4134115.224.0.0/12CHINANET Zhejiang province network

Exploit Event Types and Top Event NIDS


Top Event NIDS and Exploits February 4-10 2019



Top Alarms



Type of AlarmNo. of Occurrences
Trojan Infection - IDS Event554
OTX Indicators of Compromise - PULSE344
Database Attack - Stored Procedure Access - Attack15
Attack Tool Detected - Attack9
Attack Tool Detected - SSH5
WebServer Attack - Attack3
Bruteforce Authentication - SSH2




Vulnerabilities


SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2019-02-08
securityfocus.com/bid/92630

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2019-02-08
securityfocus.com/bid/93326

Google Android Multiple Qualcomm Components Multiple Security Vulnerabilities
securityfocus.com/bid/102974

Cisco Meeting Server CVE-2019-1678 Denial of Service Vulnerability
2019-02-08
securityfocus.com/bid/106943

Linux Kernel CVE-2018-1087 Local Privilege Escalation Vulnerability
2019-02-08
securityfocus.com/bid/104127

Apache Subversion CVE-2018-11803 Denial of Service Vulnerability
2019-02-08
securityfocus.com/bid/106770

Schneider Electric Zelio Soft 2 CVE-2018-7817 Remote Code Execution Vulnerability
2019-02-08
securityfocus.com/bid/106481

Jenkins Multiple Input Validation Security Vulnerabilities
2019-02-07
securityfocus.com/bid/106774

Apple iOS CVE-2019-7287 Memory Corruption Vulnerability
2019-02-07
securityfocus.com/bid/106952

Apple iOS and macOS CVE-2019-7286 Memory Corruption Vulnerability
2019-02-07
securityfocus.com/bid/106951

Details