Rikmer
@rikmer.bsky.social
320 followers 360 following 5 posts
Posts Media Videos Starter Packs
rikmer.bsky.social
@shodanhq.bsky.social Awesome! Shodan History is back in the UI. Nice!!! Thank you.
But I have a question regarding trends.shodan.io. all trends I do are stopping at October 2024. Why? Please make them to the current data again. I love it and need it. :)
Shodan
Shodan Trends - Discover how the Internet has changed over time.
trends.shodan.io
Reposted by Rikmer
shadowserver.bsky.social
We are seeing large numbers of sources scanning for RDP services - especially port 1098/TCP (!) - in our sensors last 2 weeks (up to 740 000 (!) distinct source IPs daily, incl up to 405 000 from Brazil).

dashboard.shadowserver.org/statistics/h...

dashboard.shadowserver.org/statistics/h...
rikmer.bsky.social
There is some unusually high RDP worldwide "scanning" going on since the beginning of December. RDP must not be accessible via the internet without additional security measures like VPN.

www.cert.at/de/aktuelles...
rikmer.bsky.social
This is something to watch for, if you have a Zyxel ATP, USG (Flex) or ZyWall ...
blog.sekoia.io/helldown-ran...
Seems that exploitation in 2023 allows Helldown Leaks Ransomware TA, access your network now.
Helldown Ransomware: an overview of this emerging threat
Comprehensive Analysis of Helldown: Tactics, Techniques, and Procedures (TTPs) and Exploitation of Zyxel Vulnerabilities %
blog.sekoia.io
Reposted by Rikmer
rikmer.bsky.social
First post. Just to tell that I am here.
Member of Curated Intelligence and building up a new profile here.
Looking forward to it. Feels good already.