← Back to feed

AS151858 INTERDIGI JOINT STOCK COMPANY

ASN Active medium
Why this campaign was detected
8 IPs from the same network (INTERDIGI JOINT STOCK COMPANY, AS151858) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS151858 · INTERDIGI JOINT STOCK COMPANY
Subnet
Country
🇻🇳 VN
Cloud Provider
Member Count
8 IPs
Below average
Total Events
2761
Below average by volume
Started / Ended
2026-02-28 04:11 — ongoing
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
103.118.29.129 credential_harvester 74% 1x OSINT 467 3 ssh:bruteforce 2026-05-19 05:30 evidence →
103.167.89.222 credential_harvester 73% 1x OSINT 395 3 ssh:bruteforce 2026-05-18 17:11 evidence →
160.187.147.124 credential_harvester 66% 1x OSINT 423 2 ssh:bruteforce 2026-05-23 03:58 evidence →
103.75.182.178 credential_harvester 57% 1x OSINT 201 1 ssh:bruteforce 2026-05-22 21:28 evidence →
103.118.28.15 opportunistic_bruter 57% 1x OSINT 46 2 ssh:bruteforce 2026-05-20 03:44 evidence →
36.50.176.13 credential_harvester 50% 1x OSINT 1168 1 ssh:bruteforce 2026-05-23 19:08 evidence →
103.245.236.231 credential_harvester 40% 1x OSINT 38 1 ssh:bruteforce 2026-05-21 15:40 evidence →
103.75.183.232 credential_probe 28% 1x OSINT 23 1 ssh:bruteforce 2026-05-21 20:12 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds