AS219502 — STORMCLOUD-AS - Storm Industries LLC
Attacker network profile
Observed by OffSeq honeypot sensors · last 30 days · last seen 10 minutes ago · first observed 2026-08-18 (23 days ago)
33,367
Attacks
54
Distinct source IPs
Attacks from this network most often target T1059 Command and Scripting Interpreter.
OffSeq honeypot sensors recorded 33,367 attacks from 54 distinct hosts within AS219502in the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1059 Command and Scripting Interpreter15,514
- T1110 Brute Force11,648
- T1595.002 Vulnerability Scanning2,428
- T1190 Exploit Public-Facing Application917
- T1498.002 Reflection Amplification488
- T1046 Network Service Discovery439
- T1595 Active Scanning395
- T1021.005 VNC359
- T1552 Unsecured Credentials91
- T1105 Ingress Tool Transfer27
- T1552.001 Credentials In Files2
Top countries
- United Kingdom19,937
- Germany13,179
- Türkiye142
- The Netherlands115