AS211298 — DRIFTNET
Attacker network profile
Observed by OffSeq honeypot sensors · last 30 days · last seen 22 minutes ago · first observed 2026-08-14 (26 days ago)
16,884
Attacks
800
Distinct source IPs
Attacks from this network most often target T1046 Network Service Discovery.
OffSeq honeypot sensors recorded 16,884 attacks from 800 distinct hosts within AS211298in the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1046 Network Service Discovery6,734
- T1595 Active Scanning4,664
- T1110 Brute Force3,457
- T1190 Exploit Public-Facing Application1,433
- T0846 T0846207
- T1498.002 Reflection Amplification143
- T1595.002 Vulnerability Scanning84
- T1210 Exploitation of Remote Services32
- T1187 Forced Authentication30
- T1105 Ingress Tool Transfer26
- T1021.005 VNC16
Top countries
- Germany5,711
- Türkiye5,614
- United Kingdom5,559