AS37963 — Aliyun Computing Co., LTD
Attacker network profile
Observed by OffSeq honeypot sensors · last 30 days · last seen 6 minutes ago · first observed 2026-08-19 (21 days ago)
88,942
Attacks
280
Distinct source IPs
Attacks from this network most often target T1021.005 VNC.
OffSeq honeypot sensors recorded 88,942 attacks from 280 distinct hosts within AS37963in the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1021.005 VNC60,962
- T1110 Brute Force1,957
- T1190 Exploit Public-Facing Application993
- T1046 Network Service Discovery409
- T1595 Active Scanning331
- T1059 Command and Scripting Interpreter176
- T1498.002 Reflection Amplification18
- T1210 Exploitation of Remote Services18
- T1071.003 Mail Protocols7
- T1595.002 Vulnerability Scanning6
- T1078 Valid Accounts6
- T1552.001 Credentials In Files3