AS24940 — Hetzner Online GmbH
Attacker network profile
Observed by OffSeq honeypot sensors · last 30 days · last seen 6 hours ago · first observed 2026-08-03 (30 days ago)
3,678
Attacks
139
Distinct source IPs
Attacks from this network most often target T1595 Active Scanning.
OffSeq honeypot sensors recorded 3,678 attacks from 139 distinct hosts within AS24940in the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1595 Active Scanning2,874
- T1110 Brute Force471
- T1059 Command and Scripting Interpreter62
- T1190 Exploit Public-Facing Application57
- T1552 Unsecured Credentials15
- T1071.003 Mail Protocols8
- T1595.002 Vulnerability Scanning5
- T1046 Network Service Discovery4
- T1078 Valid Accounts1
- T1210 Exploitation of Remote Services1
Top countries
- Germany3,369
- Finland192
- The Netherlands69
- Iran46
- United Arab Emirates2