TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Cyberthreats Targeting Canada, Winter 2019

2020-04-03 · Read original ↗

ATT&CK techniques detected

3 predictions
T1046Network Service Discovery
96%
“, unlike ovh sas, which for years has routinely shown up on top attacking network lists in our hunt for iot report series. in canada, the rest of the top attacking asns followed similar patterns to the rest of the world. top attacking ip addresses thirty - eight percent of the to…”
T1190Exploit Public-Facing Application
73%
“was attacked around the world during this time period. however, targeting rfb / vnc port 5900 is not typically at the top of the list. f5 labs first noticed this activity in may 2019 and we continue to actively investigate this worldwide ipv4 activity. another commonly attacked p…”
T1071.001Web Protocols
63%
“cyberthreats targeting canada, winter 2019 f5 labs, in conjunction with our partner baffin bay networks, researches global attack traffic region to region to gain a deeper understanding of the cyberthreat landscape. aside from attack campaigns targeting the entire internet ( ipv4…”

Summary

The Canadian threat landscape was characterized by a large amount of attack traffic from in-county systems, which can be the most difficult to filter.