← Back to feed
Location
🇺🇸 US / San Antonio
ASN
AS8075 · Microsoft Corporation
Cloud Provider
Microsoft Azure
Total Events
7
Below average by volume
Agent Count
1
First / Last Seen
2026-04-28 09:44 — 2026-04-28 09:44
Attack Types
MITRE ATT&CK Techniques
External Corroboration
CINS Army
cins:bad_reputation
Campaigns
Subnet 20.65.193.0/24
SUBNET
Active
high
🇺🇸 US
3 IPs
21 events
ssh:bruteforce
2026-04-28 — ongoing · 3 IPs from the same /24 subnet (20.65.193.0/24) were observed attacking our sensors within the same time window. …
HASSH 084386fa7ae5… — SSH-2.0-Go (54 IPs, 13 countries)
HASSH
Active
high
🇺🇸 US
54 IPs
95303 events
ssh:bruteforce
2026-02-23 — ongoing · 54 IPs are running an identical SSH client (HASSH fingerprint 084386fa7ae5…). Top network: Microsoft Corporation (AS8075). Geographic and …
Session Forensics
Sessions
2
Avg Depth Score
0.15
Commands Executed
0
Files Downloaded
0
Fingerprints
HASSH
SSH Client
Evidence Timeline
Scanner
f84b80611e2b
15%
Loading events...
MGLNDD_172.232.167.15_22