October 2024 Activity with Username chenzilong, (Thu, Oct 31st)

SANS Internet Storm Center, InfoCON: green 2024-10-31

Summary:

After reviewing the Top 10 Not So Common SSH Usernames and Passwords &#;x26;#;x5b;1&#;x26;#;x5d; published by Johannes 2 weeks ago, I noticed activity by one in his list that we don&#;x26;#;39;t really know what it is. Beginning 12 October 2024, my DShield sensor started storing one of the usernames mentioned in his diary that I had never seen before (I have over a year of data). The username chenzilong has been used with 5 different passwords including, some combination with the same username. So far, this account activity has been used with 302 different IPs.

Link:

https://isc.sans.edu/diary/rss/31400

From feeds:

Intel Hub ยป T01 - SANS Internet Storm Center, InfoCON: green

Tags:

Date tagged:

10/31/2024, 00:51

Date published:

10/30/2024, 20:16