HoneyMire Hub

Attack #292075 ssh

Captured 2026-06-29 19:37:38Z by Ka on honeypot NY1 ⬜ docker-edge · firmware 0.1.0.

Source117.50.130.61:52126
Target port22
Authenticatedyes
Commands1
Duration123.4s

Session recording

Loading session…

Transcript

Server output and attacker input as captured, line-grain. Malware URLs are obscured until sign-in.

uname -s -v -n -r -m
Linux #101-Ubuntu SMP Tue Nov 14 13:30:08 UTC 2023 ubuntu-server 5.15.0-91-generic x86_64

Credentials

Username: gitlab

Password: gitlab

1 login attempt(s) before disconnect.

Geolocation hub-resolved

🇨🇳China · Beijing · Beijing

UCLOUD · AS23724 IDC, China Telecommunications Corporation · 39.90,116.41

Network: unknown · UCLOUD · geoip · low confidence

Behavioral classification

🤖 55% confidence

Automated tool, unknown family — uniform timing but no matched signature.

Command summary

uname -s -v -n -r -m

Reported to threat intel

none

HoneyMire Hub · open feed: / · API: /api · docs: /docs · blocklists: /blocklists · about: /about · firmware: github.com/HoneyMire/HoneyMire