IOC Radar
IPMediumSignal 68/100

114.119.154.186

Location
SingaporeSingapore
Singapore, North West
ASN
AS136907
Huawei Cloud
First Seen
Aug 17, 2021
Last Seen
May 31, 2026
Aug 17
First Seen
1761d ago
May 31
Last Seen
14d ago
9
Reports
source reports
68%
Confidence
medium
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
68%
Signal Score
68 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

10 techniques

Network Information

CountrySGSingapore
RegionSingapore, North West
ASNAS136907
OrganizationHuawei Cloud

Feed Intelligence Summary

9 reports68% confidence
9
Source reports
68%
Confidence score
Category tags
active scanactive scanningasiabad web botbotnet activitybrute forcebrute force attackbrute force attackercredential accesscredential stuffingcyber securityddosddos attackdefensedenial of serviceexploitation activityexploited hosthackingidentity & access exploitationindicatoriocnetworknextraypassword attacksphishingreconnaissanceresearchedscannersgsingaporespamt1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1595.001t1595.002t1595.003webweb app attackweb application attackweb exploitationweb spam

Activity Timeline

1 total obs
May 31May 31

Threat Activity Heatmap

· Peak: 2026-05-31
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

This Indicator of Compromise (IOC) represents a significant threat to organizational security, warranting immediate attention. The IPv4 address `114.119.154.186` has been associated with a high volume of malicious activity, including reconnaissance, vulnerability scanning, and brute-force attacks, as evidenced by its high threat score of 68.22 and its presence in numerous threat intelligence feeds such as AbuseIPDB, AlienVault OTX, and Brute Force Attackers. If this IOC is observed within our ne…

Threat ScoreMedium Risk
68
SIGNAL
Signal Score
68%
Confidence
9
Reports
First seenAug 17, 2021
Last seenMay 31, 2026
GeolocationSG
CountrySingapore
LocationSingapore, North West
ASNAS136907
OrgHuawei Cloud
Coords1.3673, 103.8014

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected performing web attacks against Cloudflare honeypot edge
raw
inetnum: 114.119.128.0 - 114.119.159.255 netname: Huawei-Cloud-SG descr: Huawei-Cloud-SG country: SG geofeed: https://res-static.hc-cdn.cn/cloudbu-site/china/zh-cn/IP-location/google-geo-feed.csv admin-c: HIPL7-AP tech-c: HIPL7-AP abuse-c: AH905-AP status: ALLOCATED NON-PORTABLE mnt-by: MAINT-HIPL-SG mnt-irt: IRT-HIPL-SG last-modified: 2024-08-07T13:47:18Z source: APNIC irt: IRT-HIPL-SG address: 15A Changi Business Park Central 1 Eightrium e-mail: [email protected] abuse-mailbox: [email protected] admin-c: HIPL4-AP tech-c: HIPL4-AP auth: # Filtered remarks: [email protected] remarks: [email protected] was validated on 2026-01-30 mnt-by: MAINT-HIPL-SG last-modified: 2026-01-30T02:18:52Z source: APNIC role: ABUSE HIPLSG country: ZZ address: 15A Changi Business Park Central 1 Eightrium phone: +000000000 e-mail: [email protected] admin-c: HIPL4-AP tech-c: HIPL4-AP nic-hdl: AH905-AP remarks: Generated from irt object IRT-HIPL-SG remarks: [email protected] was validated on 2026-01-30 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2026-01-30T02:19:07Z source: APNIC role: HUAWEI INTERNATIONAL PTE LTD administrator address: 15A Changi Business Park Central 1 Eightrium #03-03/04, Singapore 486035 country: SG phone: +8618730601505 e-mail: [email protected] admin-c: HIPL7-AP tech-c: HIPL7-AP nic-hdl: HIPL7-AP notify: [email protected] mnt-by: MAINT-HIPL-SG last-modified: 2021-06-04T07:42:42Z source: APNIC route: 114.119.154.0/24 origin: AS136907 descr: HUAWEI INTERNATIONAL PTE. LTD. 15A Changi Business Park Central 1 Eightrium #03-03/04 mnt-by: MAINT-HIPL-SG last-modified: 2025-05-29T01:46:08Z source: APNIC
references
https://jamesbrine.com.au/cfglobal-web-ip-list-2026-04-16/, https://jamesbrine.com.au, Direcciones -IP.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 14 days ago
Appeared in 9 threat reports