Range of IP:61.20.0.0/16 This is a more serious situation, as the other machines on this VPC may be scanned and hence exposed.
Further assuming the hacker puts in a trojon horse, and LB refuses to pay up, the hacker might attack other machines since he has scanned for other machines.
How do we know if the above will happen? If your machines are using the same ssh public key to connect, there's a very good chance that other machines are also hacked.
Next, the production machines's port 22 is 0.0.0.0/0
, this is EXTREMELY DANGEROUS.