Mmastodon TechnologyCybersecurity first seen 18 h ago, last 18 h ago, peak #11
RDP honeypot logs flag 110 scans and fresh IOCs
Original: 2026-10-05 RDP # Honeypot IOCs - 110 scans Thread with top 3 features in each category and links to the full dataset # D
Cybersecurity researchers have published indicators of compromise drawn from an RDP honeypot, covering 110 scans recorded on October 5, 2026. The report lists the most active source IPs, including 82.85.225.167 with 12 scans, the top networks involved such as AS8075, and the most targeted accounts, with links to the full dataset for defenders.
Why now: Security teams monitor shared IOC feeds to block active RDP scanning and brute-force sources.
RDP honeypotAS807582.85.225.167infosec.exchange
Evidence
- 2026-10-05 RDP # Honeypot IOCs - 110 scans Thread with top 3 features in each category and links to the full dataset # DFIR # InfoSec Top IPs: 82.85.225.167 - 12 50.250.207.222 - 11 109.49.210.201 - 9 Top ASNs: AS8075 - 15 AS8612 - 12 AS7922 - 11 Top Accounts: 142.93.8.59 - 71… · rdpsnitch@infosec.exchange · 1
API: https://socialmediatrends-api.osmike.com/v1/trends/1172244