← Back to feed

AS55933 Cloudie Limited

ASN Active medium
Why this campaign was detected
7 IPs from the same network (Cloudie Limited, AS55933) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS55933 · Cloudie Limited
Subnet
Country
🇭🇰 HK
Cloud Provider
Member Count
7 IPs
Below average
Total Events
3587
Below average by volume
Started / Ended
2026-02-28 02:48 — ongoing
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Exfiltration
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
45.64.74.51 credential_harvester 83% DROP1x OSINT 554 3 ssh:bruteforce 2026-05-22 19:03 evidence →
103.231.14.54 credential_harvester 79% DROP1x OSINT 2092 3 ssh:bruteforce spk.cloudie.hk 2026-05-19 18:43 evidence →
185.239.85.154 credential_harvester 66% DROP1x OSINT 188 2 ssh:bruteforce 2026-05-22 11:07 evidence →
185.239.84.249 credential_harvester 62% DROP1x OSINT 418 2 ssh:bruteforce 2026-05-19 22:10 evidence →
185.242.234.173 credential_harvester 58% DROP1x OSINT 303 2 ssh:bruteforce 2026-05-17 18:50 evidence →
43.252.230.112 data_exfiltrator 52% DROP1x OSINT 24 2 ssh:bruteforce 2026-05-18 07:17 evidence →
206.237.8.22 reconnaissance 37% DROP1x OSINT 8 1 ssh:bruteforce 2026-05-19 22:16 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds