Question
Traffic from China, Germany, Brazil, Russian Federation and Australia Targeting Port 8
Our firewall anomaly logs constantly show traffic from China, Germany, Brazil, Russian Federation, Australia and more all primarily targeting port 8. Our action is clear_session and we have a threshold of 100 to prevent the DoS. Anyone have any idea what this type of attack might be and if it is an indicator of some other type of compromise.
