I bet that not even @elonmusk can solve this mystery. Local ISP in Serbia surely can't understand how their IP address is suddenly being located by GLS somewhere far above Krasnoyarsk in Siberia. #google#cyberwarfare#russia#sattelite#serbia#siberia
Using most popular CMS without hardening security measures, might not be such a good idea. Specially when your company is dealing with sensitive information. #zastitabeograd
Another example. These accounts are appearing out of nowhere. They stay for a while, until Meta deletes them. Something fishy is going on on that platform in Serbia.
What is this? Who is behind this? There are numerous posts like this targeting various public companies and non-governmental organizations in Serbia. #cyberwarfare#hacking#phishing
Quick fact. A year ago Russia claimed that around 17,500 IP addresses were used in cyber attack on Kremlin. And ever since, they are attacking our honeypot in the Balkans from 931 unique domains and internet service providers, and total ~4000 unique IP addresses. 24/7 #russia
This host is trying to hack computers in foreign countries. Kudos for trying. Now you're reported. 46.31.79.155 - HostLAB Bilisim Teknolojileri A.S. #cyberbalkans#hackers#botnet#turkey
Bookmark it or just filter it out. Botnet device from Bulgaria used in cyber attacks across the region and beyond. 85.14.53.217 - Evolink AD #cyberwarfare#hacking#malware#botnet
Followed by another attack by conficker worm and brute-forcer from Turkey. 78.173.42.147 - Turk Telekomunikasyon Anonim Sirketi #cyberwarfare#hacking#spyware#botnet
Potential security issues due to the invalid whois information on this IP address. One source of whois info says IP belongs to Serbia, other says Albania, and third one says Kosovo. Either way, skilled hacker can remotely use it from any place on planet and cause damage to all.
Turkey is still #1 source of cyber attacks in the Balkans. Currently responsible for 0.8% of all cyber attacks on the honeypot. 141.196.130.77 - TURKCELL ILETISIM HIZMETLERI A.S. #cyberwarfare#hacking#spyware#botnet#mirai#turkye
@StormyCloudInc@_neelc@torproject Thank you @StormyCloudInc . Fully support legitimate Tor use. Unfortunately, blocking specific Tor IP addresses isn't gonna stop the hacking attempts from other networks. So we'll just have to live with it, and stop/block the attacks when they happen.
A hacker may hide behind Onion proxy server and network range unknown to https://t.co/DvQsz8LHOq. However, it shouldn't stop blue team from tracking down ISP and domain from other sources, in order to file a complaint. 23.155.24.3 - https://t.co/19pY3K2Puv @_neelc