2026-03-20 RDP #Honeypot IOCs - 411 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
193.26.115.213 - 174
103.9.207.80 - 111
167.71.102.165 - 30

Top ASNs:
AS210558 - 174
AS135905 - 111
AS14061 - 45

Top Accounts:
hello - 147
Administrator - 87
Admin - 87

Top ISPs:
1337 Services GmbH - 174
SUNSOFT - 111
DigitalOcean, LLC - 45

Top Clients:
Unknown - 411

Top Software:
Unknown - 411

Top Keyboards:
Unknown - 411

Top IP Classification:
proxy - 180
Unknown - 147
hosting - 81

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
Bad API request, invalid api_dev_key

#CyberSec #SOC #Blueteam #SecOps #Security

2026-03-20 RDP #Honeypot IOCs - 274 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
193.26.115.213 - 116
103.9.207.80 - 74
167.71.102.165 - 20

Top ASNs:
AS210558 - 116
AS135905 - 74
AS14061 - 30

Top Accounts:
hello - 98
Administrator - 58
Admin - 58

Top ISPs:
1337 Services GmbH - 116
SUNSOFT - 74
DigitalOcean, LLC - 30

Top Clients:
Unknown - 274

Top Software:
Unknown - 274

Top Keyboards:
Unknown - 274

Top IP Classification:
proxy - 120
Unknown - 98
hosting - 54

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
Bad API request, invalid api_dev_key

#CyberSec #SOC #Blueteam #SecOps #Security

2026-03-20 RDP #Honeypot IOCs - 137 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
193.26.115.213 - 58
103.9.207.80 - 37
167.71.102.165 - 10

Top ASNs:
AS210558 - 58
AS135905 - 37
AS14061 - 15

Top Accounts:
hello - 49
Administrator - 29
Admin - 29

Top ISPs:
1337 Services GmbH - 58
SUNSOFT - 37
DigitalOcean, LLC - 15

Top Clients:
Unknown - 137

Top Software:
Unknown - 137

Top Keyboards:
Unknown - 137

Top IP Classification:
proxy - 60
Unknown - 49
hosting - 27

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
Bad API request, invalid api_dev_key

#CyberSec #SOC #Blueteam #SecOps #Security

On this week's episode of The Cybersecurity Defenders Podcast, Stel Valavanis, founder of onShore Networks, argues that AI is a significant milestone but does not change where security is headed.

He puts AI alongside the Internet and TCP/IP and makes the case that the path forward is clear: fully embrace it as a tool, regardless of which side of the equation you are on.

He also points out that agentic and automated AI was already being deployed well before LLMs arrived.

The full conversation covers:

> Early Internet assumptions that turned out to be completely wrong
> The risk of over-automating security operations
> What Stel looks for when investing in early-stage companies
> Building and sustaining a security-focused company across three decades

Listen to the full episode: https://www.youtube.com/watch?v=4UvViiDdHz0

#cybersecurity #podcast #secops #ai

Andrew Cook, CTO of Recon InfoSec, joins Defender Fridays today to talk about what it means to build a strong security team and why hiring builders is always a good bet.

Tune in live at 10:30am PT / 1:30pm ET: https://info.limacharlie.io/defender-fridays?utm_source=linkedin&utm_medium=organic_social&utm_content=webinar&utm_campaign=defender_fridays&utm_term=&lead_source_detail=mastodon

#defenders #secops #infosec

🔍 Lambda Watchdog detected that CVE-2026-26127 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/449 #AWS #Lambda #Security #CVE #DevOps #SecOps
🔍 Lambda Watchdog detected that CVE-2026-26131 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/450 #AWS #Lambda #Security #CVE #DevOps #SecOps
🔍 Lambda Watchdog detected that CVE-2026-25679 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/435 #AWS #Lambda #Security #CVE #DevOps #SecOps
CVE-2026-25679 (UNKNOWN): detected in Lambda Docker Images. · Issue #435 · aws/aws-lambda-base-images

CVE Details CVE ID Severity Affected Package Installed Version Fixed Version Date Published Date of Scan CVE-2026-25679 UNKNOWN stdlib v1.25.7 1.25.8, 1.26.1 2026-03-06T22:16:00.72Z 2026-03-07T10:1...

GitHub
🔍 Lambda Watchdog detected that CVE-2026-27142 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/439 #AWS #Lambda #Security #CVE #DevOps #SecOps
🔍 Lambda Watchdog detected that CVE-2026-1757 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/434 #AWS #Lambda #Security #CVE #DevOps #SecOps
CVE-2026-1757 (LOW): detected in Lambda Docker Images. · Issue #434 · aws/aws-lambda-base-images

CVE Details CVE ID Severity Affected Package Installed Version Fixed Version Date Published Date of Scan CVE-2026-1757 LOW libxml2 2.10.4-1.amzn2023.0.17 2.10.4-1.amzn2023.0.18 2026-02-02T13:15:58....

GitHub