Nearly 700,000 cyber attacks attempted on Mumbai cloud server honeypot

This was the second biggest attack spread over a month, after Ohio's 950,000 attacks in a time span

Cyber threa
Representative image
Nirmalya Behera Bhubaneswar
2 min read Last Updated : Apr 10 2019 | 7:34 PM IST
Cybercriminals attacked a Mumbai cloud server honeypot with more than 678,000 attempts over a 30-day period, second to a US-based honeypot at Ohio that recorded more than 950,000 login attempts during the same period.

A honeypot is a system designed  to mimic likely targets of cyberattackers, so that security researchers can monitor cybercriminal behaviour. The first login attempt on the Mumbai honeypot was made within 55 minutes and 11 seconds of going live.

According to a Sophos report titled 'Exposed: Cyberattacks on Cloud Honeypots', more than five million attacks were attempted on the global network of honeypots within a 30-day period, demonstrating how cybercriminals are automatically scanning for weak open cloud buckets. Sophos is a global leader in network and endpoint security.

The cloud servers were subjected to 13 attempted attacks per minute per honeypot on average. The most used password by cybercriminals for login attempts globally was 123456.

With businesses across the globe increasingly adopting cloud technology, the report revealed the extent to which enterprises migrating to hybrid and all-cloud platforms are at risk.

“The aggressive speed and scale of attacks on devices demonstrates the use of botnets to target an organisation’s cloud platform. In some instances, it may be a human attacker. However, regardless of this, companies need to set a security strategy to protect what they are putting into the cloud,” said Sunil Sharma, managing director, sales at Sophos (India & SAARC).

Continuous visibility of public cloud infrastructure is vital for businesses to ensure compliance and to know what to protect. However, multiple development teams within an organisation and an ever-changing, auto-scaling environment make this difficult for IT security.

“Instead of inundating security teams with a massive number of undifferentiated alerts, Sophos Cloud Optix significantly minimises alert fatigue by identifying what is truly meaningful and actionable,” said Ross McKerchar, chief information security officer (CISO) of  Sophos.

One subscription. Two world-class reads.

Already subscribed? Log in

Subscribe to read the full story →
*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

Next Story