๐ฆ๐บ
AWW-Admin
2026-08-03 21:29:18
(3 weeks ago)
(imapd) Failed IMAP login from 131.255.183.119 (AR/Argentina/dynamic-183-119.grupoesat-ns1.com.ar)
Brute-Force
๐ซ๐ท
EEE
2026-08-03 18:04:00
(3 weeks ago)
This IP address has been reported for abusive activity involving repeated unauthorized attempts. The ...
show more
This IP address has been reported for abusive activity involving repeated unauthorized attempts. The incidents include access attempts by an unknown user through IMAP on an email account. These actions appear suspicious and may indicate a potential security threat.
show less
Email Spam
Port Scan
Brute-Force
๐ฉ๐ช
ksol-hostmaster
2026-08-02 03:17:37
(3 weeks ago)
Aug 2 05:17:37 ksol dovecot[83114]: auth-worker(89095): conn unix:auth-worker (uid=143): auth-worke ...
show more
Aug 2 05:17:37 ksol dovecot[83114]: auth-worker(89095): conn unix:auth-worker (uid=143): auth-worker<5>: sql(anonymized@email,131.255.183.119,<aoQC3QdYkrWD/7d3>): unknown user (given password: I-AM-A-SUCKER-USING-A-WRONG-PASSWORD)
...
show less
Brute-Force
๐น๐ญ
thaizone.com
2026-07-31 04:50:01
(3 weeks ago)
Mail credential brute-force attack (SM3) #1
Email Spam
Brute-Force
Anonymous
2026-07-29 10:53:00
(4 weeks ago)
Brute force password attack
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-07-27 02:42:03
(1 month ago)
Mail: - login with unknown user - bruteforce
Brute-Force
๐บ๐ธ
entangled_mongoose
2026-07-26 13:34:49
(1 month ago)
Failed SMTP authentication with username 'user_sha_14560@domain_sha_70fc2'.
Brute-Force
Email Spam
๐ฎ๐ฉ
sockominfo
2026-07-25 07:00:53
(1 month ago)
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 6/10 (MEDIUM). Confidence: ...
show more
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 6/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 77%. MITRE ATT&CK: T1083 (File and Directory Discovery). Tactic: TA0001. Freshness: Moderate. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-25 06:00:53
(1 month ago)
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 6.1/10 (MEDIUM). Confidence ...
show more
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 6.1/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 77%. MITRE ATT&CK: T1083 (File and Directory Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-25 05:00:54
(1 month ago)
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 6.3/10 (MEDIUM). Confidence ...
show more
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 6.3/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 77%. MITRE ATT&CK: T1083 (File and Directory Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-25 04:00:09
(1 month ago)
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 4.8/10 (MEDIUM). Reported b ...
show more
Zimbra: Login failures from malicious IP: 131.255.183.119. Threat Score: 4.8/10 (MEDIUM). Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
Anonymous
2026-07-24 07:52:25
(1 month ago)
Authentication failure
Brute-Force
๐ท๐บ
DZBOT
2026-07-21 15:02:57
(1 month ago)
DZBOT: [MTA] NO LOGIN / auth failed
Port Scan
Brute-Force
๐ฆ๐น
joe-abuse
2026-07-20 01:40:40
(1 month ago)
Automated report from fail2ban on mail.fitzgerald.eu. Jail: dovecot. First seen: 2026-07-18 02:30:17 ...
show more
Automated report from fail2ban on mail.fitzgerald.eu. Jail: dovecot. First seen: 2026-07-18 02:30:17. Events: 21. Reported by ipdb-security/fitzgerald.eu
show less
Brute-Force
๐บ๐ธ
TAY
2026-07-16 05:45:18
(1 month ago)
2026-07-16 13:45:13 auth-worker(74016): Info: sql([email protected] ,131.255.183.119,<2GSi8bNWX+OD ...
show more
2026-07-16 13:45:13 auth-worker(74016): Info: sql([email protected] ,131.255.183.119,<2GSi8bNWX+OD/7d3>): unknown user
2026-07-16 13:45:18 imap-login: Info: Disconnected (auth failed, 1 attempts in 5 secs): user=<[email protected] >, method=PLAIN, rip=131.255.183.119, lip=162.220.160.187, TLS, session=<2GSi8bNWX+OD/7d3>
...
show less
Brute-Force