Skip to content

PossibleThreat Articles

Articles for the experts…

  • Security
    • Sophos
    • MalwareBytes
    • TrendMicro
    • Microsoft
    • Fortinet
  • Sciences
  • Independent
    • Krebs
    • Wired
    • Securiteam
    • ComputerWorld

RDP

Security Sophos 

The Bite from Inside: The Sophos Active Adversary Report

December 12, 2024 0 Comments active adversary, active adversary report, featured, Incident Response, ir, lolbins, mdr, RDP, security operations, threat research

Credit to Author: Angela Gunn| Date: Thu, 12 Dec 2024 14:00:56 +0000

A sea change in available data fuels fresh insights from the first half of 2024

Read more
Security Sophos 

December Patch Tuesday arrives bearing 71 gifts

December 11, 2024 0 Comments featured, Microsoft, Patch Tuesday, RDP, threat research, Windows

Credit to Author: Angela Gunn| Date: Wed, 11 Dec 2024 08:00:38 +0000

Seventeen Critical-severity CVEs ready to deck your halls; also, new blog guidance for Windows Server admins

Read more
Security Sophos 

RD Web Access abuse: Fighting back

June 14, 2024 0 Comments active adversary, active adversary report, featured, Incident Response, RDP, security operations, sophos x-ops, threat research

Credit to Author: Angela Gunn| Date: Wed, 12 Jun 2024 18:59:54 +0000

Investigation insights and recommendations from a recent welter of incident-response cases

Read more
Security Sophos 

It’s Oh So Quiet (?): The Sophos Active Adversary Report for 1H 2024

April 15, 2024 0 Comments active adversary, active adversary report, case study, featured, Incident Response, RDP, threat research

Credit to Author: Angela Gunn| Date: Wed, 03 Apr 2024 10:01:37 +0000

The latter half of 2023 found numerous fronts on which attackers failed to press ahead. Are defenders failing to take advantage?

Read more
Security Sophos 

Remote Desktop Protocol: The Series

March 20, 2024 0 Comments active adversary, featured, Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops, threat research

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:18:21 +0000

What is RDP, why is it a very nearly ubiquitous finding in incident response, and how can investigators run it to ground it when it goes wrong? An Active Adversary Special Report

Read more
Security Sophos 

Remote Desktop Protocol: Exposed RDP (is dangerous)

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:16:34 +0000

Is it really that risky to expose an RDP port to the internet? What if you change the default port? What if it’s just for a little while? The data answers, loud and clear

Read more
Security Sophos 

Remote Desktop Protocol: Queries for Investigation

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:15:12 +0000

How can defenders begin to make sense of RDP issues on their networks? We present three powerful tools for investigators’ toolkits

Read more
Security Sophos 

Remote Desktop Protocol: How to Use Time Zone Bias

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:13:08 +0000

Where in the world is your attacker? Presenting a less-known but useful event to look for in your logs

Read more
Security Sophos 

Remote Desktop Protocol: Executing the 4624_4625 Login Query

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:11:40 +0000

Keeping an eye on who’s trying to get onto your network – whether or not they’re successful – can pay off on multiple fronts

Read more
Security Sophos 

Remote Desktop Protocol: Executing the External RDP Query

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, query, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:09:06 +0000

On the hunt for successful RDP connections that have entered your network from outside? A step-by-step guide (and a query to get you started)

Read more
  • ← Previous

Recent Posts

  • RFK Jr. Orders HHS to Give Undocumented Migrants’ Medicaid Data to DHS
  • ‘No Kings’ Protests, Citizen-Run ICE Trackers Trigger Intelligence Warnings
  • CBP’s Predator Drone Flights Over LA Are a Dangerous Escalation
  • Here’s What Marines and the National Guard Can (and Can’t) Do at LA Protests
  • How to Protest Safely in the Age of Surveillance

Recent Comments

    Archives

    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • December 2023
    • November 2023
    • October 2023
    • September 2023
    • August 2023
    • July 2023
    • June 2023
    • May 2023
    • April 2023
    • March 2023
    • February 2023
    • January 2023
    • December 2022
    • November 2022
    • October 2022
    • September 2022
    • August 2022
    • July 2022
    • June 2022
    • May 2022
    • April 2022
    • March 2022
    • February 2022
    • March 2020
    • February 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019

    Categories

    • BitCoin
    • Blokt
    • ComputerWorld
    • Currency
    • Digital
    • Fortinet
    • Independent
    • Krebs
    • MalwareBytes
    • Microsoft
    • News
    • QuickHeal
    • Science
    • Securiteam
    • Security
    • Sophos
    • Technology
    • TrendMicro
    • Wired
    Copyright © 2025 PossibleThreat Articles. All rights reserved.
    Theme: ColorMag by ThemeGrill. Powered by WordPress.