← Back to feed

AS10429 TELEFONICA BRASIL S.A

ASN Ended medium
Why this campaign was detected
5 IPs from the same network (TELEFONICA BRASIL S.A, AS10429) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS10429 · TELEFONICA BRASIL S.A
Subnet
Country
🇧🇷 BR
Cloud Provider
Member Count
5 IPs
Below average
Total Events
145
Below average by volume
Started / Ended
2026-02-18 06:52 — 2026-09-08 07:31
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
201.63.223.138 credential_harvester 67% 1209 3 ssh:bruteforce 201-63-223-138.customer.tdatabrasil.net.br 2026-08-02 06:48 evidence →
186.201.54.90 credential_harvester 33% 37 1 ssh:bruteforce 2026-03-07 13:47 evidence →
201.28.237.90 credential_probe 18% 1x OSINT 21 1 ssh:bruteforce 2026-03-16 02:39 evidence →
201.63.52.54 credential_probe 18% 1x OSINT 15 1 ssh:bruteforce 201-63-52-54.customer.tdatabrasil.net.br 2026-03-08 13:30 evidence →
200.232.114.71 credential_probe 16% 1x OSINT 5 1 ssh:bruteforce 2026-03-09 01:06 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds
{# Cloudflare Web Analytics — cookieless, public pages only. The context processor withholds the token from authenticated requests. #}