← Back to feed

AS24086 Viettel Corporation

ASN Active medium
Why this campaign was detected
6 IPs from the same network (Viettel Corporation, AS24086) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS24086 · Viettel Corporation
Subnet
Country
🇻🇳 VN
Cloud Provider
Member Count
6 IPs
Below average
Total Events
513
Below average by volume
Started / Ended
2026-03-16 05:06 — ongoing
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
116.99.174.238 credential_harvester 61% 1x OSINT 157 2 ssh:bruteforce 2026-05-13 03:10 evidence →
116.99.170.93 credential_harvester 60% 1x OSINT 93 2 ssh:bruteforce 2026-05-13 03:07 evidence →
116.110.23.200 credential_harvester 36% 94 1 ssh:bruteforce 2026-05-07 10:20 evidence →
116.99.175.46 credential_harvester 34% 84 1 ssh:bruteforce 2026-05-06 17:30 evidence →
116.110.23.206 credential_harvester 18% 30 1 ssh:bruteforce 2026-05-07 10:09 evidence →
116.99.172.72 credential_harvester 18% 55 1 ssh:bruteforce 2026-05-06 17:34 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds