AS51396 — PFCLOUD
Attacker network profile
Observed by OffSeq honeypot sensors · last 30 days · last seen 10 minutes ago · first observed 2026-08-19 (26 days ago)
6,432
Attacks
66
Distinct source IPs
Attacks from this network most often target T1190 Exploit Public-Facing Application.
OffSeq honeypot sensors recorded 6,432 attacks from 66 distinct hosts within AS51396in the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1190 Exploit Public-Facing Application2,200
- T1595.002 Vulnerability Scanning2,026
- T1046 Network Service Discovery532
- T1595 Active Scanning408
- T1110 Brute Force193
- T1498.002 Reflection Amplification167
- T1552.001 Credentials In Files83
- T1071.003 Mail Protocols13
- T0846 T08468
- T1552 Unsecured Credentials4
- T1021.005 VNC1
Top countries
- St Kitts and Nevis3,122
- Germany2,522
- Iran518
- Spain270