Daily threat intelligence analysis generated by a local AI model running on the same Raspberry Pi 5 that operates HoneyAI. No data leaves the device.
Honeypot Threat Analysis — April 18, 2026
532 SSH connections from 78 IPs with Vietnamese IP clusters emerging as a dominant attack source.
Honeypot Threat Analysis — April 17, 2026
Medium-severity day with 351 SSH connections from 70 IPs. A brief respite in the storm of automated scanning.
Honeypot Threat Analysis — April 16, 2026
High-severity activity with 1,270 SSH connections. Attack volume cools from yesterday's critical peak but remains elevated.
Honeypot Threat Analysis — April 15, 2026
Critical threat level — 2,380 SSH connections and 365 commands from 72 IPs. The most intense attack day since deployment.
Honeypot Threat Analysis — April 14, 2026
High-severity day with 1,373 SSH connections and 195 post-auth commands. Attackers escalate from probing to active exploitation.
Honeypot Threat Analysis — April 13, 2026
Steady brute force attacks continue with 360 SSH connections from 77 unique IPs. Cryptocurrency-targeted credentials dominate.
Honeypot Threat Analysis — April 12, 2026
SSH attacks explode from 10 to 423 connections as botnets discover the new honeypot. 59 unique IPs launch credential stuffing campaigns.