Keep bad guys off your network by finding out where they live

Keep bad guys off your network by finding out where they live

It can also be used to identify your potential threats or particular network traffic patterns that would otherwise be lost in a sea of terse log entries. They can produce powerful visualizations that can be used to illustrate top network bottlenecks …
See all stories on this topic »

Heavy rain causing high water, flash flooding across viewing are – WBTV 3 News …

Heavy rain causing high water, flash flooding across viewing are – WBTV 3 News, Weather, Sports, and Traffic for Charlotte, NC. SITE SEARCH WEB SEARCH BY Google. HOME · Watch CBS Shows · ConnecTV · Jobs · Dyle TV · Web Extra Links · Lifestyle …
See all stories on this topic »

Alligator, Kangaroo Found During Traffic Stop

An alligator found during a traffic stop in Lancaster. (Los Angeles County Sheriff's Department). LANCASTER (KTLA)-. Deputies in Lancaster who responded to a suspicious activity call discovered some exotic passengers during a traffic stop, authorities …
See all stories on this topic »

Popular Questions

How can finding out where bad actors live help keep them off your network?

Review the source IP address of suspicious login attempts, connection requests, and unusual traffic to identify the likely country, region, or hosting provider involved. Compare that location with your users’ normal access patterns and your approved business regions before taking action. Use the findings to strengthen firewall rules, block confirmed malicious ranges, or require additional verification for unexpected locations.

What network data should you collect to determine where unwanted visitors are connecting from?

Collect authentication logs, firewall events, DNS records, VPN activity, and web-server access logs that include timestamps and source IP addresses. Use a reputable IP geolocation and reputation service to associate addresses with approximate locations, autonomous systems, and known hosting networks. Preserve the original records so you can correlate repeated activity across devices and accounts.

Can blocking an attacker’s location keep bad guys off your network?

Geographic blocking can reduce exposure when malicious traffic consistently comes from regions your organization never needs to serve. It should not be treated as a complete defense because attackers can use VPNs, proxies, compromised devices, or cloud servers in other locations. Combine location-based rules with multifactor authentication, rate limits, endpoint protection, and prompt credential resets.

How should you respond after identifying where suspicious network activity originates?

First, confirm that the activity is genuinely malicious by checking the account, device, time, and request pattern rather than relying on location alone. Then contain the threat by disabling compromised credentials, isolating affected systems, blocking validated indicators, and reviewing related logs for additional access. Document the source information and update monitoring rules so similar activity from the same infrastructure receives closer scrutiny.

Scroll to Top