HoneyMire Hub

Attack #555808 ssh

Captured 2026-08-13 21:37:19Z by Ka on honeypot FR1 ⬜ docker-edge · firmware 0.1.0.

Source27.8.44.168:43276
Target port22
Authenticatedyes
Commands1
Duration1.0s

Session recording

Loading session…

Transcript

Server output and attacker input as captured, line-grain. Malware URLs are obscured until sign-in.

uname -a
Linux ubuntu-server 5.15.0-91-generic #101-Ubuntu SMP Tue Nov 14 13:30:08 UTC 2023 x86_64 GNU/Linux

Credentials

Username: root

Password: myka$2025

1 login attempt(s) before disconnect.

Geolocation hub-resolved

🇨🇳China · Chongqing · Chongqing

China Unicom Chongqing Province Network · AS4837 CHINA UNICOM China169 Backbone · 29.57,106.55

Network: isp · China Unicom · NSP · peeringdb · medium confidence

Behavioral classification

🤖 55% confidence

Automated tool, unknown family — uniform timing but no matched signature.

Command summary

uname -a

Reported to threat intel

none

HoneyMire Hub · open feed: / · API: /api · docs: /docs · blocklists: /blocklists · about: /about · firmware: github.com/HoneyMire/HoneyMire