Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
No more back door for RDP-based attacks (ransomware)
#1
[Image: LawGanA.png]

Quote:Remote Desktop Protocol (RDP) is by far the most common attack method used by criminals to gain access to your Windows computer and install ransomware or other malware.

RDP was developed to allow technicians to access software problems remotely. However, if the protocol is not adequately protected via a VPN or other means, it is an open invitation for attackers - especially with company servers that are online around the clock.

The protection software from Emsisoft now monitors the status of the RDP service in real time. If multiple failed login attempts are detected, an alert is issued to administrators through the Cloud Console. You can then decide whether to better disable the service on the affected device.


In addition, the status for the RDP service is displayed on the respective device in the overview of the individual devices.

Note: The RDP function is supported from Windows 10 and Windows Server 2012.

New sidebar for notifications

We have added a new notification function to Emsisoft Cloud Console that makes work easier for security administrators. All events that need urgent action are highlighted here, such as newly found threats, partially deactivated security components or missing software updates.

New fully customizable workspace and device list

A function that is frequently requested by our customers is the possibility to individually select the columns of the device properties in the workspace overview in Cloud Console. There are now over 25 columns of data to choose from. This enables you to optimize your daily processes without missing important security-relevant information.


All improvements in 2020.7

Emsisoft Anti-Malware
New: RDP attack alarms
Various small improvements and bug fixes

MyEmsisoft / Cloud Console
New: RDP attack alarms
New: sidebar for notifications
New: Fully customizable workspace and device list
Improved: License area in workspace settings
Improved: Settings for multi-level authentication
Various small improvements and bug fixes
How do you get the new version?
If automatic updates are activated in your program, you will receive the current version automatically as always during the scheduled updates (set to hourly by default).

Note for business users : If you have set the update feed to "Delayed" in the settings for your clients, you will receive the new software version at the earliest 30 days after the availability of the regular "Stable" version. This gives you enough time to first run internal compatibility tests on all clients before a new version is automatically deployed.

We wish you a great and well-protected time.

SOURCE
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Ransomware gangs add DDoS attacks to their extortion arsenal tarekma7 0 1,457 10-02-2020 , 12:54 PM
Last Post: tarekma7
  How to protect RDP from ransomware attacks tarekma7 2 1,797 07-21-2020 , 07:40 PM
Last Post: tarekma7

Forum Jump:


Users browsing this thread: 1 Guest(s)