All families 路 Network
Attacks observed on haoxiangyun (AS141718)
All families attack observations affecting AS141718 haoxiangyun: targeted prefixes, attack methods, destination ports, and timing over the last 30 days.
19 observations 路 Last 30 days 路 Latest observation
Most affected countries
Last 30 days
Most observed methods
- Cereal2: TCP connection and session-pool flood variant 16
- Cereal2: UDP flood with minimal datagrams (default 1-byte payload)3
- Cereal2: Raw IPv4/TCP packet flood variant 23
- Cereal2: Raw IPv4/TCP packet flood variant 32
- Cereal2: UDP flood with large datagrams (default 1400-byte payload)2
- Potassium: TCP connection flood1
- Cereal2: Stateful TCP connection and session flood1
- Cereal2: Configurable custom-payload UDP flood1
Last 30 days
Recent observations
- Potassium: TCP connection flood103.211.103.197/32TCP/80802mNetherlands
- Cereal2: Raw IPv4/TCP packet flood variant 3103.209.129.0/24TCP/801mSweden
- Cereal2: UDP flood with minimal datagrams (default 1-byte payload)103.209.129.0/24UDP/801mSweden
- Cereal2: UDP flood with minimal datagrams (default 1-byte payload)103.209.129.100/32UDP/801mSweden
- Cereal2: UDP flood with large datagrams (default 1400-byte payload)103.209.129.100/32UDP/801mSweden
- Cereal2: TCP connection and session-pool flood variant 1103.209.129.100/32TCP/801mSweden
- Cereal2: Raw IPv4/TCP packet flood variant 2103.209.129.0/24TCP/801mSweden
- Cereal2: Raw IPv4/TCP packet flood variant 3103.209.129.0/24TCP/801mSweden
- Cereal2: UDP flood with minimal datagrams (default 1-byte payload)103.209.129.0/24UDP/801mSweden
- Cereal2: TCP connection and session-pool flood variant 1103.209.129.0/24TCP/801mSweden
- Cereal2: TCP connection and session-pool flood variant 1103.209.129.0/24TCP/801mSweden
- Cereal2: TCP connection and session-pool flood variant 1103.209.129.0/24TCP/801mSweden
- Cereal2: TCP connection and session-pool flood variant 1103.209.129.0/24TCP/801mSweden
- Cereal2: TCP connection and session-pool flood variant 1103.209.129.0/24TCP/8030sSweden
- Cereal2: Stateful TCP connection and session flood103.209.129.0/24TCP/8030sSweden
- Cereal2: Raw IPv4/TCP packet flood variant 2103.209.129.0/24TCP/8030sSweden
- Cereal2: Configurable custom-payload UDP flood103.209.129.0/24UDP/RANDOM1mSweden
- Cereal2: Raw IPv4/TCP packet flood variant 2103.209.129.0/24TCP/801mSweden
- Cereal2: UDP flood with large datagrams (default 1400-byte payload)103.209.129.0/24UDP/RANDOM1mSweden
botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.