Attack traffic from Lithuania
Honeypot telemetry for sources geolocated to Lithuania
Observed by OffSeq honeypot sensors · last 30 days · last seen 10 minutes ago · first observed 2026-08-03 (30 days ago)
18,422
Attacks
68
Distinct source IPs
Attack traffic is led by BELCLOUD Premium IP transit network.
OffSeq honeypot sensors recorded 18,422 attacks from 68 distinct hosts geolocated to Lithuaniain the last 30 days. Source addresses are aggregated to /16 networks — Mirage never publishes an individual attacker IP.
Techniques
- T1110 Brute Force13,620
- T1021.005 VNC2,299
- T1595 Active Scanning859
- T1071.003 Mail Protocols191
- T1595.002 Vulnerability Scanning175
- T1190 Exploit Public-Facing Application134
- T1589.002 Email Addresses36
- T1046 Network Service Discovery20
- T1210 Exploitation of Remote Services13
- T1552 Unsecured Credentials10
- T1059 Command and Scripting Interpreter9
- T1498.002 Reflection Amplification9
Top networks (ASNs)
- BELCLOUD Premium IP transit network3,954
- TELE-AS Tele Asia Limited3,695
- GCS-AS1,133
- CIPHER OPERATIONS DOO BEOGRAD - NOVI BEOGRAD1,069
- HOSTBALTIC603
- UAB Cherry Servers72
- Limited Network LTD54
- CHERRYSERVERS3-AS20
- VPN Consumer Vilnius, Lithuania6
- TELE26
- Hostinger International Limited4
- Sigitas Balsevicius home provider3