IOC Radar
IPMediumSignal 65/100

69.164.215.20

Location
United StatesUnited States
Cedar Knolls, NJ
ASN
AS63949
Linode
First Seen
Dec 15, 2025
Last Seen
Apr 23, 2026
Dec 15
First Seen
187d ago
Apr 23
Last Seen
58d ago
6
Reports
source reports
65%
Confidence
medium
Found in 6 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
65%
Signal Score
65 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

10 techniques

Network Information

CountryUSUnited States
RegionCedar Knolls, NJ
ASNAS63949
OrganizationLinode

Feed Intelligence Summary

6 reports65% confidence
6
Source reports
65%
Confidence score
Category tags
active scanactive scanningbad web botbotnet activitybrute forcebrute force attackbrute force attackercredential accesscredential stuffingddosdenial of servicedigital oceanexploitation activityidentity & access exploitationindicatornetworknorth americapassword attacksportscanreconnaissanceresearchedscannerscannersservice scant1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1595.001t1595.002t1595.003united statesweb application attackweb exploitation

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
65
SIGNAL
Signal Score
65%
Confidence
6
Reports
First seenDec 15, 2025
Last seenApr 23, 2026
GeolocationUS
CountryUnited States
LocationCedar Knolls, NJ
ASNAS63949
OrgLinode
Coords40.8229, -74.4592

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected port scanning DigitalOcean London (UK) honeypot
raw
Akamai Technologies, Inc. LINODE-US (NET-69-164-192-0-1) 69.164.192.0 - 69.164.223.255 Linode LINODE (NET-69-164-192-0-2) 69.164.192.0 - 69.164.223.255
references
https://jamesbrine.com.au/digitaloceanlondon-portscan-bruteforce-ip-list-2026-04-17/, https://jamesbrine.com.au, https://jamesbrine.com.au/digitaloceanlondon-portscan-bruteforce-ip-list-2026-04-16/

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 6 months ago · Last seen 1 month ago
Appeared in 6 threat reports