IOC Radar
IPMediumSignal 49/100

24.199.86.70

Location
United StatesUnited States
North Bergen, New Jersey
ASN
AS14061
DigitalOcean, LLC
First Seen
Jan 22, 2026
Last Seen
May 3, 2026
Jan 22
First Seen
140d ago
May 3
Last Seen
39d ago
9
Reports
source reports
49%
Confidence
medium
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
49%
Signal Score
49 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

25 techniques

Network Information

CountryUSUnited States
RegionNorth Bergen, New Jersey
ASNAS14061
OrganizationDigitalOcean, LLC

Feed Intelligence Summary

9 reports49% confidence
9
Source reports
49%
Confidence score
Category tags
active scanactive scanningadbhoney honeypotattackaustraliabad web botblocklist_allblog spambotnetbotnet activitybrute forcebrute force attackciscocisco devicecommand and controlcommunication protocolcowriecowrie honeypotcredential accesscredential harvestingcredential stuffingdata exfiltrationdata store exposuredatabase attackdatabase securityddosdecoy systemdenial of servicedevice managementdionaeadionaea honeypotelasticpot honeypotelasticsearch monitoringemailenterprise networkingexploitexploitation activityfattftp brute forcehackinghoneytrap honeypothttp brute forceidentity & access exploitationindicatorintrusion detectioniociot securitylamplateral movementmailoney honeypotmalicious activitymalwaremalware behaviourmalware capturenetworknetwork infrastructurenetwork intrusion attemptsnetwork scanningnetwork securitynorth americaoceaniaopenctip0fpassword attacksphishingphishing attackphishing trapprotocol exploitationreconnaissanceredis honeypotredishoneypotresearchedresource hijackingscannerscripting attackssensor-taggedsentrypeer botnetsftpsftp attacksipsmtp brute forcesocial engineeringspamsshssh attackssh monitoringt-pott1021t1040t1041t1059t1059.007t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1204.002t1496t1499.001t1566.001t1566.002t1566.003t1566.004t1595t1595.001t1595.002t1595.003tannertargeting databasetelecommunicationstelnet threatthreat actorthreat detectionthreat intelligencetor nodetpotunited statesusvoipvoip attackweb application attackweb attackweb exploitationweb spam

Activity Timeline

1 total obs
May 3May 3

Threat Activity Heatmap

· Peak: 2026-05-03
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
49
SIGNAL
Signal Score
49%
Confidence
9
Reports
First seenJan 22, 2026
Last seenMay 3, 2026
GeolocationUS
CountryUnited States
LocationNorth Bergen, New Jersey
ASNAS14061
OrgDigitalOcean, LLC
Coords37.7510, -97.8220

VirusTotal

Not checked

WHOIS

raw
NetRange: 24.199.64.0 - 24.199.127.255 CIDR: 24.199.64.0/18 NetName: DIGITALOCEAN-24-199-64-0 NetHandle: NET-24-199-64-0-1 Parent: NET24 (NET-24-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: DigitalOcean, LLC (DO-13) RegDate: 2022-04-19 Updated: 2022-06-09 Ref: https://rdap.arin.net/registry/ip/24.199.64.0 OrgName: DigitalOcean, LLC OrgId: DO-13 Address: 105 Edgeview Drive, Suite 425 City: Broomfield StateProv: CO PostalCode: 80021 Country: US RegDate: 2012-05-14 Updated: 2025-04-11 Ref: https://rdap.arin.net/registry/entity/DO-13 OrgNOCHandle: NOC32014-ARIN OrgNOCName: Network Operations Center OrgNOCPhone: +1-646-827-4366 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN OrgAbuseHandle: DIGIT19-ARIN OrgAbuseName: DigitalOcean Abuse OrgAbusePhone: +1-646-827-4366 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/DIGIT19-ARIN OrgTechHandle: NOC32014-ARIN OrgTechName: Network Operations Center OrgTechPhone: +1-646-827-4366 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
references
https://github.com/telekom-security/tpotce

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 months ago · Last seen 1 month ago
Appeared in 9 threat reports