๐ฆ๐บ
AWW-Admin
2026-08-22 23:02:45
(13 hours ago)
(imapd) Failed IMAP login from 196.0.122.190 (UG/Uganda/-)
Brute-Force
๐ฎ๐ฉ
sockominfo
2026-08-19 07:00:53
(4 days ago)
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6.5/10 (HIGH). Confidence: 40 ...
show more
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6.5/10 (HIGH). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 77%. MITRE ATT&CK: T1083 (File and Directory Discovery). Tactic: TA0001. Freshness: Very Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฉ๐ช
jasperedv.de
2026-08-19 04:48:50
(4 days ago)
Failed IMAP Login - Brutforcing
Email Spam
Brute-Force
๐ต๐พ
SecOpsSL
2026-08-17 15:23:22
(5 days ago)
2026-08-17 12:23:22,245 WARN [ImapSSLServer-910] [ip=192.168.0.25;oip=196.0.122.190;via=192.168.0.2 ...
show more
2026-08-17 12:23:22,245 WARN [ImapSSLServer-910] [ip=192.168.0.25;oip=196.0.122.190;via=192.168.0.25(nginx/1.20.0);ua=Zimbra/8.8.15_GA_4717;cid=21227;] security - cmd=Auth; [email protected] ; protocol=imap; error=authentication failed for [[email protected] ], invalid password;
show less
Email Spam
Brute-Force
๐บ๐ธ
entangled_mongoose
2026-08-13 20:57:45
(1 week ago)
Failed SMTP authentication with username 'user_sha_256d0@domain_sha_70fc2'.
Brute-Force
Email Spam
๐ธ๐ฐ
Schomburg
2026-08-12 05:18:20
(1 week ago)
Automatic report from SCH firewall log.
https://github.com/Ragnarocek/Windows_FW_AbuseIPDB_Report ...
show more
Automatic report from SCH firewall log.
https://github.com/Ragnarocek/Windows_FW_AbuseIPDB_Reporting ID: h4HzKqgiaPye1efTS3DViM0Hd91Jghg8
show less
Port Scan
Hacking
Brute-Force
๐จ๐ฆ
Julio Covolato
2026-08-11 15:25:02
(1 week ago)
Imap or Submission login brute-force attacks.
Brute-Force
๐ธ๐ฐ
Schomburg
2026-08-11 00:48:04
(1 week ago)
Automatic report from SCH firewall log.
https://github.com/Ragnarocek/Windows_FW_AbuseIPDB_Report ...
show more
Automatic report from SCH firewall log.
https://github.com/Ragnarocek/Windows_FW_AbuseIPDB_Reporting ID: mIKnp4OJP8hDP5Y4nWTLEwtckzs7rvWl
show less
Port Scan
Hacking
Brute-Force
Anonymous
2026-08-09 11:42:54
(2 weeks ago)
IMAP password guessing
Brute-Force
๐ฎ๐ฉ
sockominfo
2026-08-09 00:00:53
(2 weeks ago)
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6.2/10 (MEDIUM). Confidence: ...
show more
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6.2/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 77%. MITRE ATT&CK: T1083 (File and Directory Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-08-08 23:00:53
(2 weeks ago)
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6.4/10 (MEDIUM). Confidence: ...
show more
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6.4/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 77%. MITRE ATT&CK: T1083 (File and Directory Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-08-08 22:00:09
(2 weeks ago)
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6/10 (MEDIUM). Reported by Ta ...
show more
Zimbra: Login failures from malicious IP: 196.0.122.190. Threat Score: 6/10 (MEDIUM). Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
๐ช๐ธ
elcruzado.es
2026-08-07 20:25:16
(2 weeks ago)
(imapd) Failed IMAP login from 196.0.122.190 (UG/Uganda/-)
Brute-Force
๐ฟ๐ฆ
hostsec_za
2026-08-03 00:55:04
(2 weeks ago)
IMAP/POP3 Auth Attack. 25 failed logins in 24 hours.
Brute-Force
๐บ๐ธ
TAY
2026-08-02 07:59:58
(3 weeks ago)
2026-08-02 15:59:39 auth-worker(84038): Info: sql([email protected] ,196.0.122.190,< ...
show more
2026-08-02 15:59:39 auth-worker(84038): Info: sql([email protected] ,196.0.122.190,<gtyvzQtY1M3EAHq+>): unknown user
2026-08-02 15:59:46 auth-worker(84038): Info: sql([email protected] ,196.0.122.190,<gtyvzQtY1M3EAHq+>): unknown user
2026-08-02 15:59:53 auth-worker(84038): Info: sql([email protected] ,196.0.122.190,<gtyvzQtY1M3EAHq+>): unknown user
2026-08-02 15:59:58 imap-login: Info: Disconnected (auth failed, 3 attempts in 19 secs): user=<[email protected] >, method=PLAIN, rip=196.0.122.190, lip=162.220.160.187, TLS, session=<gtyvzQtY1M3EAHq+>
...
show less
Brute-Force