logo

Unmasking the Proxy: Silent Push “Traffic Origin” Exposes True Actor Locations

ID: a1a2c4b1-3943-5797-b7d7-53f0da72e5a6

STIX ID: report--a1a2c4b1-3943-5797-b7d7-53f0da72e5a6

Feed Name: securityonline.info

Date Published: 2026-02-11

Date Updated: 2026-04-23

Author: Ddos

...
...

Silent Push details its Traffic Origin capability, which analyzes network signals to reveal the true source of connections that appear to originate from proxies or VPNs, aiding detection of insider threats and state-aligned activity (e.g., North Korean IT workers, Russian-occupied Eastern Ukraine). Using examples such as IPs 205.198.91.136 and 194.147.16.244, the report shows clusters across high-risk regions and explains how combining Traffic Origin with residential proxy data helps distinguish benign residential IP use from criminal infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.