Eblogtip.com
  • Categories
    • News
    • Technology
    • Domains
    • Hosting
    • Promotions

Archives

  • May 2023
  • December 2022

Categories

  • News
  • Technology
  • Uncategorized
eBlogTip
  • Categories
    • News
    • Technology
    • Domains
    • Hosting
    • Promotions
  • News

The FBI is telling businesses to stop using remote desktop software – here’s why

  • May 18, 2023
Total
0
Shares
0
0
0


The FBI, the US Cybersecurity and Infrastructure Security Agency (CISA), and the Australian Cyber Security Centre (ACSC) are urging businesses to “strictly limit the use of Remote Desktop Protocol (opens in new tab) (RDP) and other remote desktop services” and thus minimize the threat coming from the BianLian ransomware group.

In a joint security advisory the law enforcement agencies said BianLian usually targets Windows systmes through RDP credentials, before deploying additional software to steal more credentials, or exfiltrate sensitive data and other important files.

Given that RPD is BianLian’s usual point of entry, locking the door seems like a logical step forward. 

Reducing the impact

The law enforcement agencies also said businesses should increase PowerShell logging, add time-based locks to accounts, as well as track domain controllers and active directories for suspicious new accounts and other shady activities. 

“FBI, CISA, and ACSC encourage critical infrastructure organizations and small- and medium-sized organizations to implement the recommendations in the Mitigations section of this advisory to reduce the likelihood and impact of BianLian and other ransomware incidents,” the advisory reads.

We last heard of BianLian in March 2023, when cybersecurity researchers Redacted spotted the group attempting to extort businesses for money – without encrypting their endpoints first. 

Researchers came up with two possible explanations as to why the threat actors ditched the encryptor, one being that the whole ordeal is too time-consuming, too costly, and redundant, and the other one being that the group never recovered from Avast’s decryptor which was released in January this year. In any case, should your business suffer a ransomware encryption, the FBI recommends not paying the ransom demand.

BianLian was first observed in June 2022, targeting businesses in the healthcare industry, as well as other critical infrastructure verticals.

In a report by The Register, it was said that BianLian is actually multiple ransomware groups growing in size and using newer programming languages, such as Go, or Rust. 

Via: The Register (opens in new tab)


Source link

Total
0
Shares
Share 0
Tweet 0
Pin it 0
Previous Article
  • Technology

Percent lands $30M investment to connect investors with private credit

  • May 18, 2023
View Post
Next Article
  • News

Android fans are switching to iPhones in record numbers – here’s why

  • May 18, 2023
View Post
You May Also Like
View Post
  • News

The Witcher season 3: release date, trailer, cast, plot, and more

  • May 30, 2023
View Post
  • News

6 new Netflix Original movies and shows you can’t miss in June

  • May 30, 2023
View Post
  • News

Google confirms it’s been working on a another foldable but it’s not ready “yet”

  • May 30, 2023
View Post
  • News

Corsair introduces iCUE Link to make building your next PC easier

  • May 30, 2023
View Post
  • News

Windows 11 23H2 update is real, we’re told – but it could disappoint

  • May 30, 2023
View Post
  • News

iFi’s iCan Phantom is a beast of a headphone amp for the fussiest of cans

  • May 30, 2023
View Post
  • News

Microsoft gets defensive and reminds users how great Windows 11 is

  • May 30, 2023
View Post
  • News

Microsoft’s latest Windows 11 mishap causes havoc with AMD graphics cards

  • May 30, 2023

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

eBlogTip.com
  • Categories

Input your search keywords and press Enter.