AS8075 — MICROSOFT-CORP-MSN-AS-BLOCK
Attacker network profile
Observed by OffSeq honeypot sensors · last 30 days · last seen 14 minutes ago · first observed 2026-08-10 (30 days ago)
111,222
Attacks
2,750
Distinct source IPs
14
KEV exploit hits
Attacks from this network most often target T1595 Active Scanning.
OffSeq honeypot sensors recorded 111,222 attacks from 2,750 distinct hosts within AS8075in the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1595 Active Scanning79,268
- T1110 Brute Force13,721
- T1190 Exploit Public-Facing Application12,545
- T1046 Network Service Discovery1,301
- T1595.002 Vulnerability Scanning1,166
- T1505.003 Web Shell840
- T1505 Server Software Component785
- T1592 Gather Victim Host Information427
- T1552.001 Credentials In Files200
- T0846 T0846126
- T1498.002 Reflection Amplification119
- T1021.005 VNC98