Report for IP: 20.88.55.220

Threat LevelHIGH48/1001 rule type
6 incidents on record · active attack detected · last seen 24d ago
PTR N/A
Org / ASN Microsoft Azure Cloud (northcentralus)
Country 🇺🇸 United States
City Chicago, Illinois
Timezone America/Chicago

Attack Analysis

🇺🇸 United States · Chicago · 8075 · Microsoft Corporation
SSH: Login Attempt — Non-Existent User
This IP attempted to authenticate via SSH using a username that does not exist on the system. This is characteristic of automated credential-stuffing attacks cycling through common username wordlists (admin, root, ubuntu, pi, etc.).

Reports (6)

Date Severity Description
8 Jul 2026 - 06:24 medium SSH: Login attempt using non-existent user
8 Jul 2026 - 06:20 medium SSH: Login attempt using non-existent user
8 Jul 2026 - 06:06 medium SSH: Login attempt using non-existent user
8 Jul 2026 - 06:02 medium SSH: Login attempt using non-existent user
8 Jul 2026 - 06:00 medium SSH: Login attempt using non-existent user
8 Jul 2026 - 05:52 high SSH: Login attempt using non-existent user