TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Cyberthreats Targeting India, October through December 2020

2021-02-11 · Read original ↗

ATT&CK techniques detected

2 predictions
T1071.001Web Protocols
46%
"section covers top 10 in categories like traffic source countries, organizations, services, and ip addresses. top source traffic countries analyzing the geographical source of the ip addresses, the major source for the malicious request, listed in order, were the uk, us, germany,…"
T1046Network Service Discovery
35%
"3, list details on top ten ports scanned and associated services. top attacking ip addresses a single ip address from russia ( 45. 146. 164. 171 from as 49505 ) sent more than 23 million requests. this was followed by an ip address in netherlands which was shy of 10 million reque…"

Summary

India’s attack landscape saw focus on Port 5900 and the highest number of scans from the UK.