Security News > 2022 > July > Microsoft Adds Default Protection Against RDP Brute-Force Attacks in Windows 11
Microsoft is now taking steps to prevent Remote Desktop Protocol brute-force attacks as part of the latest builds for the Windows 11 operating system in an attempt to raise the security baseline to meet the evolving threat landscape.
"Win11 builds now have a DEFAULT account lockout policy to mitigate RDP and other brute-force password vectors," David Weston, Microsoft's vice president for OS security and enterprise, said in a series of tweets last week.
The feature, which follows the company's decision to resume blocking of Visual Basic Application macros for Office documents, is also expected to be backported to older versions of Windows and Windows Server.
Aside from malicious macros, brute-forced RDP access has long been one of the most popular methods used by threat actors to gain unauthorized access to Windows systems.
"Brute-forcing RDP is the most common method used by threat actors attempting to gain access to Windows systems and execute malware, '' Zscaler noted last year."
"A malicious user could programmatically attempt a series of password attacks against all users in the organization," the company notes.
News URL
https://thehackernews.com/2022/07/microsoft-adds-default-protection.html
Related news
- Microsoft Fixes AI, Cloud, and ERP Security Flaws; One Exploited in Active Attacks (source)
- Phishing-as-a-Service "Rockstar 2FA" Targets Microsoft 365 Users with AiTM Attacks (source)
- Microsoft says premature patch could make Windows Recall forget how to work (source)
- Microsoft says having a TPM is "non-negotiable" for Windows 11 (source)
- Microsoft enforces defenses preventing NTLM relay attacks (source)
- Microsoft lifts Windows 11 24H2 block on PCs with USB scanners (source)
- Windows kernel bug now exploited in attacks to gain SYSTEM privileges (source)
- Hackers Use Microsoft MSC Files to Deploy Obfuscated Backdoor in Pakistan Attacks (source)
- Russian hackers use RDP proxies to steal data in MiTM attacks (source)
- Microsoft says Auto HDR causes game freezes on Windows 11 24H2 (source)