⤷ Title: Rogue RDP via Spear Phishing: Initial Access Tactic
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Fri, 21 Feb 2025 09:27:27 GMT
════════════════════════
⌗ Tags: #remote_desktop_protocol #red_team #rdp #phishing #hacking
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Fri, 21 Feb 2025 09:27:27 GMT
════════════════════════
⌗ Tags: #remote_desktop_protocol #red_team #rdp #phishing #hacking
Medium
Rogue RDP via Spear Phishing: Initial Access Tactic
Summary
⤷ Title: From Domain to Dominance: Exploiting and Securing RDP in Active Directory Environments
════════════════════════
𐀪 Author: Sam Achek
════════════════════════
ⴵ Time: Mon, 10 Mar 2025 19:05:33 GMT
════════════════════════
⌗ Tags: #information_security #active_directory #ethical_hacking #cybersecurity #remote_desktop
════════════════════════
𐀪 Author: Sam Achek
════════════════════════
ⴵ Time: Mon, 10 Mar 2025 19:05:33 GMT
════════════════════════
⌗ Tags: #information_security #active_directory #ethical_hacking #cybersecurity #remote_desktop
Medium
From Domain to Dominance: Exploiting and Securing RDP in Active Directory Environments
Introduction
⤷ Title: How to Enable and Use RDP Incognito Mode for Secure Remote Access
════════════════════════
𐀪 Author: C. Oscar Lawshea
════════════════════════
ⴵ Time: Fri, 14 Mar 2025 17:02:32 GMT
════════════════════════
⌗ Tags: #rdp #remote_desktop #microsoft #cybersecurity
════════════════════════
𐀪 Author: C. Oscar Lawshea
════════════════════════
ⴵ Time: Fri, 14 Mar 2025 17:02:32 GMT
════════════════════════
⌗ Tags: #rdp #remote_desktop #microsoft #cybersecurity
Medium
How to Enable and Use RDP Incognito Mode for Secure Remote Access
Introduction
⤷ Title: CVE-2025-32428: Jupyter Remote Desktop Proxy Exposes TigerVNC to Network Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 01:55:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_32428 #data science security #Jupyter #JupyterLab #Linux Security #Remote Desktop #TigerVNC #VNC vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 01:55:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_32428 #data science security #Jupyter #JupyterLab #Linux Security #Remote Desktop #TigerVNC #VNC vulnerability
Daily CyberSecurity
CVE-2025-32428: Jupyter Remote Desktop Proxy Exposes TigerVNC to Network Access
CVE-2025-32428 flaw in Jupyter Remote Desktop Proxy exposes TigerVNC over the network. Patch to version 3.0.1 or switch to TurboVNC to mitigate.
⤷ Title: Microsoft RDP Flaw Lets Old Passwords Keep Working — Even After You Change Them
════════════════════════
𐀪 Author: Raj Kumar M
════════════════════════
ⴵ Time: Sun, 04 May 2025 05:36:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #remote_desktop #information_security #microsoft #windows
════════════════════════
𐀪 Author: Raj Kumar M
════════════════════════
ⴵ Time: Sun, 04 May 2025 05:36:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #remote_desktop #information_security #microsoft #windows
Medium
Microsoft RDP Flaw Lets Old Passwords Keep Working — Even After You Change Them
Microsoft has confirmed that Remote Desktop Protocol (RDP) on Windows can still accept old passwords — even if they’ve already been…
⤷ Title: Race Condition in Windows Remote Desktop Gateway Enables RCE – PoC Demonstrates Exploitability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 May 2025 00:18:26 +0000
════════════════════════
⌗ Tags: #Vulnerability #aaedge.dll #CVE_2025_21297 #Exploit #Microsoft #PoC #proof_of_concept #race condition #rce #RD Gateway #Remote Code Execution #Remote Desktop Gateway #UAF #use after free
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 May 2025 00:18:26 +0000
════════════════════════
⌗ Tags: #Vulnerability #aaedge.dll #CVE_2025_21297 #Exploit #Microsoft #PoC #proof_of_concept #race condition #rce #RD Gateway #Remote Code Execution #Remote Desktop Gateway #UAF #use after free
Daily CyberSecurity
Race Condition in Windows Remote Desktop Gateway Enables RCE - PoC Demonstrates Exploitability
CVE-2025-21297 in Windows RD Gateway allows remote code execution via race condition. PoC proves exploitability. Patch now to stay secure.
⤷ Title: Attacking RDP
════════════════════════
𐀪 Author: Fatimahasan
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 07:26:09 GMT
════════════════════════
⌗ Tags: #remote_desktop #oscp #ethical_hacking #pentesting
════════════════════════
𐀪 Author: Fatimahasan
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 07:26:09 GMT
════════════════════════
⌗ Tags: #remote_desktop #oscp #ethical_hacking #pentesting
Medium
Attacking RDP
Default Port — 3389
⤷ Title: Day 27: Investigating RDP Brute-force Attack
════════════════════════
𐀪 Author: Mikey O.
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 14:19:14 GMT
════════════════════════
⌗ Tags: #homelab #cybersecurity #security_operation_center #remote_desktop #cybersecurity_training
════════════════════════
𐀪 Author: Mikey O.
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 14:19:14 GMT
════════════════════════
⌗ Tags: #homelab #cybersecurity #security_operation_center #remote_desktop #cybersecurity_training
Medium
Day 27: Investigating RDP Brute-force Attack
Welcome to Day 27 of the 30-Day SOC Analyst Challenge! Today, we’ll be investigating an RDP Brute Force Attack. Similar to investigating an…
⤷ Title: RansomHub Breach: Six-Day Attack Leveraged RDP, RMM Tools & Mimikatz for Data Exfiltration & Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 30 Jun 2025 02:09:12 +0000
════════════════════════
⌗ Tags: #Malware #Atera #cybersecurity #data exfiltration #DFIR Report #lateral movement #mimikatz #Password Spraying #RansomHub #ransomware #Rclone #RDP #Remote Desktop Protocol #Splashtop
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 30 Jun 2025 02:09:12 +0000
════════════════════════
⌗ Tags: #Malware #Atera #cybersecurity #data exfiltration #DFIR Report #lateral movement #mimikatz #Password Spraying #RansomHub #ransomware #Rclone #RDP #Remote Desktop Protocol #Splashtop
Daily CyberSecurity
RansomHub Breach: Six-Day Attack Leveraged RDP, RMM Tools & Mimikatz for Data Exfiltration & Ransomware
A six-day RansomHub attack exploited RDP, used Atera/Splashtop RMM, Mimikatz, and Rclone to breach an enterprise, exfiltrate data, and deploy ransomware.
⤷ Title: ExpressVPN Fixes RDP Leak: Real IP Addresses Exposed Due to Debugging Code Oversight
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:51:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Debugging Code #ExpressVPN #IP Leak #privacy #RDP #Remote Desktop Protocol #VPN #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:51:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Debugging Code #ExpressVPN #IP Leak #privacy #RDP #Remote Desktop Protocol #VPN #vulnerability
Penetration Testing Tools
ExpressVPN Fixes RDP Leak: Real IP Addresses Exposed Due to Debugging Code Oversight
ExpressVPN patched a critical Windows client flaw (v12.97-12.101.0.2-beta) that exposed users' real IP addresses by allowing RDP traffic to bypass the VPN tunnel. Update immediately!
⤷ Title: Massive RDP Botnet Unleashed: 100,000+ IPs in Coordinated Global Scanning Campaign Targeting US
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 00:18:19 +0000
════════════════════════
⌗ Tags: #Malware #botnet #Coordinated #cyberattack #GreyNoise #Infrastructure #RDP #RDP Scanning #Remote Desktop Protocol
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 00:18:19 +0000
════════════════════════
⌗ Tags: #Malware #botnet #Coordinated #cyberattack #GreyNoise #Infrastructure #RDP #RDP Scanning #Remote Desktop Protocol
Daily CyberSecurity
Massive RDP Botnet Unleashed: 100,000+ IPs in Coordinated Global Scanning Campaign Targeting US
GreyNoise warns of a massive, synchronized RDP botnet using 100,000+ IPs from over 100 countries for RDP scanning and enumeration, with US infrastructure as the primary target.
⤷ Title: Massive RDP Botnet Unleashed: 100,000+ IPs in Coordinated Global Scanning Campaign Targeting US
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:49:33 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #Coordinated #cyberattack #GreyNoise #Infrastructure #RDP #RDP Scanning #Remote Desktop Protocol
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:49:33 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #Coordinated #cyberattack #GreyNoise #Infrastructure #RDP #RDP Scanning #Remote Desktop Protocol
Penetration Testing Tools
Massive RDP Botnet Unleashed: 100,000+ IPs in Coordinated Global Scanning Campaign Targeting US
GreyNoise warns of a massive, synchronized RDP botnet using 100,000+ IPs from over 100 countries for RDP scanning and enumeration, with US infrastructure as the primary target.
⤷ Title: Windows: Enabling Remote Desktop
════════════════════════
𐀪 Author: Dharmendrakumar
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 05:21:09 GMT
════════════════════════
⌗ Tags: #ejpt #rdp #enabling_remote_desktop #remote_desktop #penetration_testing
════════════════════════
𐀪 Author: Dharmendrakumar
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 05:21:09 GMT
════════════════════════
⌗ Tags: #ejpt #rdp #enabling_remote_desktop #remote_desktop #penetration_testing
Medium
Windows: Enabling Remote Desktop
⤷ Title: The Patch After the Patch: Microsoft Issues Emergency Fix for Remote Desktop and Shutdown Bugs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 10:31:44 +0000
════════════════════════
⌗ Tags: #Windows #KB5074109 #KB5077797 #Microsoft #OOB Update #Patch Tuesday #Remote Desktop #Secure Launch #SysAdmin #Tech News 2026 #Windows 10 #Windows 11
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 10:31:44 +0000
════════════════════════
⌗ Tags: #Windows #KB5074109 #KB5077797 #Microsoft #OOB Update #Patch Tuesday #Remote Desktop #Secure Launch #SysAdmin #Tech News 2026 #Windows 10 #Windows 11
Daily CyberSecurity
The Patch After the Patch: Microsoft Issues Emergency Fix for Remote Desktop and Shutdown Bugs
Microsoft releases emergency OOB updates in Jan 2026 to fix critical Remote Desktop login and shutdown/hibernation bugs caused by Patch Tuesday.
⤷ Title: The “Go Client” Trap: Why Your RustDesk ID is Currently Under Automated Botnet Siege
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:03:24 +0000
════════════════════════
⌗ Tags: #Malware #2FA #botnet attack #cybersecurity alert 2026 #Go Client #IT security tips #Remote Access Malware #remote desktop security #RustDesk #self_hosting RustDesk #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:03:24 +0000
════════════════════════
⌗ Tags: #Malware #2FA #botnet attack #cybersecurity alert 2026 #Go Client #IT security tips #Remote Access Malware #remote desktop security #RustDesk #self_hosting RustDesk #social engineering
Daily CyberSecurity
The "Go Client" Trap: Why Your RustDesk ID is Currently Under Automated Botnet Siege
A massive botnet is targeting RustDesk users with fake "Go Client" connection requests. Learn how to lock down your ID and prevent unauthorized remote takeovers.
⤷ Title: RDP HIJACKING
════════════════════════
𐀪 Author: Yashrajghadage
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 14:45:37 GMT
════════════════════════
⌗ Tags: #red_team #remote_desktop_protocol #windows_security #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Yashrajghadage
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 14:45:37 GMT
════════════════════════
⌗ Tags: #red_team #remote_desktop_protocol #windows_security #cybersecurity #ethical_hacking
Medium
RDP HIJACKING
Understanding RDP Session Hijacking: Risks, Detection, and Defense
⤷ Title: The $220,000 Patch: Darknet Vendor Peddles “SYSTEM” Access via Windows RDP Flaw
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 07:41:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2026_21533 #Cyber Security 2026 #Darknet #Infosec #Patch Tuesday #privilege escalation #RDP #Remote Desktop #TermService #windows #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 07:41:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2026_21533 #Cyber Security 2026 #Darknet #Infosec #Patch Tuesday #privilege escalation #RDP #Remote Desktop #TermService #windows #zero_day
Penetration Testing Tools
The $220,000 Patch: Darknet Vendor Peddles "SYSTEM" Access via Windows RDP Flaw
Within the shadowy recesses of a subterranean darknet forum, a highly anomalous lot has materialized: an unidentified vendor
⤷ Title: Beyond the Firewall: How TailVNC Fuses WireGuard and VNC for Untraceable Access
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 09:05:25 +0000
════════════════════════
⌗ Tags: #Open Source Tool #cybersecurity #Headscale #Penetration Testing #red teaming #Remote Desktop #Tailscale #TailVNC #VNC Server #Windows PERSISTENCE #WireGuard
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 09:05:25 +0000
════════════════════════
⌗ Tags: #Open Source Tool #cybersecurity #Headscale #Penetration Testing #red teaming #Remote Desktop #Tailscale #TailVNC #VNC Server #Windows PERSISTENCE #WireGuard
Penetration Testing Tools
Beyond the Firewall: How TailVNC Fuses WireGuard and VNC for Untraceable Access
TailVNC combines Tailscale’s mesh network with a stealthy VNC server. Bypass Windows Session 0 and secure desktops without ever opening a public port.
⤷ Title: The 21 Phantom Servers: How a Tiny Botnet Just Hijacked Global RDP Reconnaissance
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 09:43:07 +0000
════════════════════════
⌗ Tags: #Malware #AS213438 #BOTNET #cybersecurity #GreyNoise #Infosec #network security #RDP Scanning #Remote Desktop Protocol #threat intelligence #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 09:43:07 +0000
════════════════════════
⌗ Tags: #Malware #AS213438 #BOTNET #cybersecurity #GreyNoise #Infosec #network security #RDP Scanning #Remote Desktop Protocol #threat intelligence #Windows Security
Penetration Testing Tools
The 21 Phantom Servers: How a Tiny Botnet Just Hijacked Global RDP Reconnaissance
A diminutive cluster of servers has managed, in a matter of mere hours, to redraw the conventional cartography
⤷ Title: The New Lockdown: How Microsoft’s April 2026 Update Silos Remote Desktop to Kill Phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 10:00:25 +0000
════════════════════════
⌗ Tags: #Windows #cybersecurity #data exfiltration #infosec #Microsoft Update #network_security #Phishing Protection #RDP Security #Remote Desktop Protocol #Windows 11 #Windows Hello
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 10:00:25 +0000
════════════════════════
⌗ Tags: #Windows #cybersecurity #data exfiltration #infosec #Microsoft Update #network_security #Phishing Protection #RDP Security #Remote Desktop Protocol #Windows 11 #Windows Hello
Daily CyberSecurity
The New Lockdown: How Microsoft’s April 2026 Update Silos Remote Desktop to Kill Phishing
Microsoft hardens RDP in the April 2026 update. Discover how new default isolation policies and security warnings stop malicious servers from stealing your data.