nanog mailing list archives
Re: SentryPeer: A distributed peer to peer list of bad IP addresses and phone numbers collected via a SIP Honeypot
From: Gavin Henry <ghenry () suretec co uk>
Date: Fri, 26 Nov 2021 12:26:37 +0000
On Thu, 25 Nov 2021 at 00:53, Eric Kuhnke <eric.kuhnke () gmail com> wrote:
Anecdotally, anyone that's had reason to manually go through logs for port 5060 SIP for any public facing ipv4 /32 will see the vast amounts of random "things" out there on the internet trying common extension password combos to register. It's been a large amount of background noise on the internet for a very log time now.
Hi Eric, Have you done anything with this data before? Thanks.
Current thread:
- SentryPeer: A distributed peer to peer list of bad IP addresses and phone numbers collected via a SIP Honeypot Gavin Henry (Nov 24)
- Re: SentryPeer: A distributed peer to peer list of bad IP addresses and phone numbers collected via a SIP Honeypot Eric Kuhnke (Nov 24)
- Re: SentryPeer: A distributed peer to peer list of bad IP addresses and phone numbers collected via a SIP Honeypot Gavin Henry (Nov 26)
- Re: SentryPeer: A distributed peer to peer list of bad IP addresses and phone numbers collected via a SIP Honeypot Max Tulyev (Nov 26)
- Re: SentryPeer: A distributed peer to peer list of bad IP addresses and phone numbers collected via a SIP Honeypot Eric Kuhnke (Nov 24)
