Viewing a single comment thread. View all comments

Hopeful_Hamster21 t1_j9p2bk8 wrote

Set up a web server and then check your http logs. My web server gets "attacked" probably 2 or 3 DOZEN times A DAY. It's usually just automated scanning tools looking for well known WordPress vulnerabilities (I'm not running WordPress), but it's there. Turn on RRP RDP, and you'll see someone hitting your server ONCE A SECOND, and this will go on indefinitely.

If you check the source IPs, they're commonly Russia, or China, but I don't really trust those source IPs to be accurate - the attackers could be going through a proxy. The RDP attacks look like they're coming from a bot net, because each second the IP shifts to a different country.

Edit: fixed a typo

6

LomaSpeedling t1_j9xq8cc wrote

My hetzner and cloudflare logs are always interesting to look at.

1