Cyber Actors Increasingly Exploit The Remote Desktop Protocol

  • 0 Replies
  • 43 Views
*

Offline Bugbatter

  • Microsoft® MVP
  • Administrator
  • Diamond Member
  • 10617
Cyber Actors Increasingly Exploit The Remote Desktop Protocol
« on: September 28, 2018, 08:45:27 PM »
Remote administration tools, such as Remote Desktop Protocol (RDP), as an attack vector has been on the rise since mid-late 2016 with the rise of dark markets selling RDP Access. Malicious cyber actors have developed methods of identifying and exploiting vulnerable RDP sessions over the Internet to compromise identities, steal login credentials, and ransom other sensitive information. The Federal Bureau of Investigation (FBI) and Department of Homeland Security (DHS) recommend businesses and private citizens review and understand what remote accesses their networks allow and take steps to reduce the likelihood of compromise, which may include disabling RDP if it is not needed.

https://www.ic3.gov/media/2018/180927.aspx

Related: https://www.bleepingcomputer.com/news/security/ic3-issues-alert-regarding-remote-desktop-protocol-rdp-attacks/

Microsoft MVP Consumer Security 2006-2016
Microsoft Windows Insider MVP 2016-