We launched high-interaction honeypots on the Internet from which we collected and analyzed over 3.4 million connections attempts that supplied hashed credentials over a period of 3 months. We used that information to measure the extent of human involvement and the level of sophistication behind brute-force attacks on Remote Desktop Protocol. Different time patterns in attacks are presented, and five different clusters of attackers' strategies are revealed. Risk mitigations are discussed.
Andréanne Bergeron
Cybersecurity Researcher, GoSecure
@AndreanBergeron
Andréanne Bergeron has a Ph.D. in criminology from the University of Montreal and works as a cybersecurity researcher at GoSecure. Acting as the social and data scientist of the team, she is interested in online attackers’ behaviors. She is an experienced presenter with over 38 academic conferences and is now focusing on the infosec field. She has presented at BSides Montreal, NorthSec, CypherCon and Human Factor in Cybercrime amongst others.
-----
Recorded Sept 21, 2023 at Strange Loop 2023 in St. Louis, MO.
https://thestrangeloop.com
Watch video "Human Involvement Behind Remote Desktop Protocol Brute-Force Attacks" by Andréanne Bergeron online without registration, duration hours minute second in high quality. This video was added by user Strange Loop Conference 07 October 2023, don't forget to share it with your friends and acquaintances, it has been viewed on our site 838 once and liked it like people.