- Joined
- Nov 5, 2019
- Messages
- 24
- Reaction score
- 3
One of my PBX has been target of hacking attempts for last about 1.5 months.. Every day I get 4-5 IPs blacklisted and still the hackers haven't run out of IPs.
Apparently, they have access to some kind of botnet and are using different user agent, I have noticed at least 9 different user agents as in 3 screenshots.
I had increased lock out period to 15 days, now I increased to 40 days, but the Advanced persistent threat still persists.
Is there a way to get the credentials that hackers are trying? to understand how close they are from figuring out actual credentials.
Is there any other measures I should take to ward off this APT?
Apparently, they have access to some kind of botnet and are using different user agent, I have noticed at least 9 different user agents as in 3 screenshots.
I had increased lock out period to 15 days, now I increased to 40 days, but the Advanced persistent threat still persists.
Is there a way to get the credentials that hackers are trying? to understand how close they are from figuring out actual credentials.
Is there any other measures I should take to ward off this APT?