Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Can someone assist me in finding IoC on host system related to this particular IPS event. I read somewhere that they could be false positive events linked to device that perform some security related function. Traffic source is from Shodan (66.250.205.34) reported by Firepower ASA.