CN: 1157160 ( 69)
IR: 394527 ( 40)
RU: 265950 ( 65)
US: 175582 ( 173)
GB: 92743 ( 32)
VN: 30885 ( 6)
ID: 29021 ( 5)
IN: 28381 ( 5)
DE: 25188 ( 6)
BZ: 24744 ( 5)
TH: 22816 ( 2)
FR: 19909 ( 2)
TR: 15351 ( 1)
RO: 12276 ( 4)
BG: 11353 ( 5)
LV: 11154 ( 2)
PH: 6252 ( 1)
CA: 5269 ( 2)
UA: 4395 ( 3)
PA: 2832 ( 1)
HK: 2163 ( 4)
LT: 1680 ( 3)
SC: 1095 ( 3)
KR: 1066 ( 2)
PL: 789 ( 1)
CZ: 729 ( 1)
SE: 374 ( 1)
SG: 369 ( 1)
15551 IPs skipped (< 300 attacks)
Total: 28 countries, 445 IPs
Sat Jan 16 09:55:24 2021
Protecting Your Machines
IP List of Brute force attackers is created from a merged of locally observed IPs and 2 hours old IPs registered at badips.com and blocklist.de Our local IPs are farmed from LCSR central Syslog server. BadIPs.com and blocklist.de are abuse trackers, community based IP blacklist service which oursourced their data systematically from people around the world. These data excluded Rutgers public and private IPs.
Check Your IP to find out if your machine is blacklisted and what to do.
Delisting policy:
- If there is no further incoming attacks, automatic delisting occurs as follow:
Attack Count | Delisting time |
30-999 | 2 days |
1000-3000 | 3 days |
3000+ | 7 days |
- If you are Rutgers users and must use our resources, you must now use University VPN.
What to do?
To protect and keep your Linux machines from being attacked, download, save and run our lcsrdrop.sh script every 5 minutes via cron.
This script adds LCSRDrop chain into your IPTable to avoid interference with your existing IPTables.
Example cron entry:
1-56/5 * * * * /usr/local/bin/lcsrdrop.sh > /dev/null 2>&1
Contributing to this project
If you would like to get your machine stats on this page and/or you want to contribute to the log, simply add the following syslog entry to your syslog.conf file and restart your syslogd.
For Linux
authpriv.* @spock.cs.rutgers.edu
Note:
As we get more effective at blocking the attackers, the less data we get. Your contribution will help speed up discovery of new attacks.
Disclaimers
This script is provided for Rutgers community - AS IS with NO WARRANTY and LIABILITY implied whatsoever. Use at your own risks or benefits.
|