In recent weeks I've gotten multiple notices from external sites about a bitnet infection in our cloud. In particular they're reporting an agent that hits web page after web page in quick succession (which their tooling reports as a probe for vulnerability).
In one case the 'attacker' was clearly identified as iabot; in the other it was less explicit but still looks to me like iabot activity.
I've responded to the reporters and explained that iabot is a useful crawler and not an attack vector. Nevertheless, it would be nice to not get these reports... perhaps iabot could throttle its loads, or interleave multiple websites so that it doesn't hammer on any one webserver and get flagged.