TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Regional Threat Perspectives: Europe

2019-04-17 · Read original ↗

ATT&CK techniques detected

2 predictions
T1071.001Web Protocols
62%
"s online sas ( asn 12876 ), and nforce entertainment ( asn 43350 ), also from the netherlands. all three of these companies are web hosting providers whose networks routinely show up in our top threat actor networks lists. to get a sense of attack volume by asn, figure 2 shows th…"
T1071.001Web Protocols
38%
"access — very similar to what we saw in australia and canada. - europe received more attacks from within its own geographic region than any other region. top attacking countries systems deployed in europe are targeted by ips all over the world. looking at the source countries of …"

Summary

Attackers are using IP addresses in the Netherlands, United States, and China to target systems in Europe over SIP, Microsoft SMB, and SSH.