LumiWorx<p>Is anyone familiar with <a href="https://mastodon.social/tags/AlphaMountain" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AlphaMountain</span></a> <a href="https://mastodon.social/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> as a new <a href="https://mastodon.social/tags/ThreatIntel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ThreatIntel</span></a> tool or <a href="https://mastodon.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> type service, and perhaps some specifics about who their target audience might be and what they're up to?</p><p>I'm noticing a fair amount of new <a href="https://mastodon.social/tags/UDP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>UDP</span></a> outbound traffic going to their Amazon-AES server, and it certainly looks like something is 'phoning home'. I know the device and timing pattern, but I haven't done a deeper dive yet.</p><p>us-east-1(.)prod(.)service(.)minerva(.)devices(.)a2z(.)com is the endpoint.</p>