← Back to feed

AS42708 Glesys AB

ASN Active medium
Why this campaign was detected
5 IPs from the same network (Glesys AB, AS42708) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS42708 · Glesys AB
Subnet
Country
πŸ‡ΈπŸ‡ͺ SE
Cloud Provider
Member Count
5 IPs
Below average
Total Events
37
Below average by volume
Started / Ended
2026-05-11 01:56 — ongoing
Attack Types
http:scan ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
178.73.210.62 credential_harvester 33% 112 2 ssh:bruteforce β€” 2026-06-30 14:11 evidence →
193.181.16.99 web_probe 31% 3 2 http:scanssh:bruteforce β€” 2026-06-14 00:16 evidence →
94.247.172.129 web_probe 20% 5 1 http:scan β€” 2026-09-11 07:53 evidence →
192.71.142.146 web_probe 14% 2 1 http:scan β€” 2026-06-11 21:52 evidence →
192.71.142.134 web_probe 14% 2 1 http:scan β€” 2026-06-17 06:20 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds
{# Cloudflare Web Analytics β€” cookieless, public pages only. The context processor withholds the token from authenticated requests. #}