2026-03-25 RDP #Honeypot IOCs - 3300 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
183.81.35.16 - 2822
143.198.111.35 - 424
80.94.95.221 - 8

Top ASNs:
AS18403 - 2822
AS14061 - 424
AS396982 - 24

Top Accounts:
hello - 3250
Administr - 12
(empty) - 6

Top ISPs:
FPT Telecom Company - 2822
DigitalOcean, LLC - 424
Google LLC - 24

Top Clients:
Unknown - 3300

Top Software:
Unknown - 3300

Top Keyboards:
Unknown - 3300

Top IP Classification:
Unknown - 2838
hosting & proxy - 424
hosting - 34

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
Bad API request, invalid api_dev_key

#CyberSec #SOC #Blueteam #SecOps #Security