← Back to feed

AS9318 SK Broadband Co Ltd

ASN Active medium
Why this campaign was detected
7 IPs from the same network (SK Broadband Co Ltd, AS9318) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS9318 · SK Broadband Co Ltd
Subnet
Country
🇰🇷 KR
Cloud Provider
Member Count
7 IPs
Below average
Total Events
5064
Below average by volume
Started / Ended
2026-02-18 06:15 — ongoing
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
39.115.195.164 credential_harvester 83% 2x OSINT 643 3 ssh:bruteforce 2026-05-09 20:27 evidence →
211.186.79.173 credential_harvester 80% 2x OSINT 661 3 ssh:bruteforce 2026-05-08 04:15 evidence →
222.232.176.7 credential_harvester 79% 1x OSINT 1038 3 ssh:bruteforce 2026-05-09 00:26 evidence →
175.118.127.138 credential_harvester 65% 1x OSINT 1198 2 ssh:bruteforce 2026-05-09 14:58 evidence →
58.229.141.26 credential_harvester 64% 2x OSINT 1160 2 ssh:bruteforce 2026-05-07 11:30 evidence →
1.238.106.229 credential_harvester 60% 2x OSINT 295 2 ssh:bruteforce 2026-05-06 08:53 evidence →
1.235.192.214 opportunistic_bruter 56% 1x OSINT 69 2 ssh:bruteforce 2026-05-07 12:16 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds