• About
  • Disclaimer
  • Privacy Policy
  • Contact
Saturday, June 14, 2025
Cyber Defense GO
  • Login
  • Home
  • Cyber Security
  • Artificial Intelligence
  • Machine Learning
  • Data Analysis
  • Computer Networking
  • Disaster Restoration
No Result
View All Result
  • Home
  • Cyber Security
  • Artificial Intelligence
  • Machine Learning
  • Data Analysis
  • Computer Networking
  • Disaster Restoration
No Result
View All Result
Cyber Defense Go
No Result
View All Result
Home Cyber Security

New Report Highlights Frequent Passwords in RDP Assaults

Md Sazzad Hossain by Md Sazzad Hossain
0
New Report Highlights Frequent Passwords in RDP Assaults
585
SHARES
3.2k
VIEWS
Share on FacebookShare on Twitter

You might also like

Discord Invite Hyperlink Hijacking Delivers AsyncRAT and Skuld Stealer Concentrating on Crypto Wallets

Why Each Enterprise Wants a Regulatory & Compliance Lawyer—and the Proper IT Infrastructure to Assist Them

Detecting Ransomware on Community: How Community Site visitors Evaluation Helps


A brand new report from cybersecurity consultants at Specops has revealed the most typical passwords utilized in assaults in opposition to Distant Desktop Protocol (RDP) ports. The analysis, which analyzed stay assault information, highlights how weak passwords stay a major safety vulnerability.

The Specops report examined NTLMv2 password hashes collected by their honeypot system between late 2024 and March 2025.

The researchers have been in a position to crack roughly 40% of the recorded hashes, offering perception into the precise passwords being utilized in brute pressure and password-spraying assaults in opposition to RDP.

Most Frequent Passwords in RDP Assaults

The evaluation recognized the ten most ceaselessly used passwords in RDP assaults, that are:

  • 123456
  • 1234
  • Password1
  • 12345
  • P@ssw0rd
  • password
  • Password123
  • Welcome1
  • 12345678
  • Aa123456

The information reveals that attackers ceaselessly depend on primary numeric sequences and predictable variations of the phrase “password.”

Notably, “123456” was additionally essentially the most generally stolen password within the Specops report, underscoring end-users’ continued reliance on straightforward to recollect, and simply guessable, credentials.

Why RDP is a Prime Goal

RDP, which operates over TCP port 3389, is broadly used to facilitate distant work and IT administration. Nonetheless, its accessibility additionally makes it a frequent goal for cybercriminals.

Attackers scan for uncovered RDP servers, leveraging brute pressure techniques to realize entry to company networks.

Many organizations report 1000’s of failed login makes an attempt each day from bots, ransomware operators and different malicious actors.

Learn extra on password safety finest practices: NIST Scraps Passwords Complexity and Obligatory Modifications in New Tips

Password Complexity Developments

The report additionally analyzed the character composition and lengths of passwords utilized in RDP assaults, discovering that:

  • 45% of passwords consisted solely of numbers or lowercase letters
  • Solely 7.56% included a mixture of uppercase, lowercase, numbers and particular characters
  • The most typical password size was eight characters (26.14%)
  • Lower than 1.35% of passwords getting used to assault the RDP port exceeded 12 characters

These findings recommend that implementing longer and extra complicated passwords might considerably cut back the danger of RDP compromise.

Strengthening RDP Safety

Specops recommends a number of measures to defend in opposition to RDP-based assaults, together with:

  • Implementing multi-factor authentication (MFA) for RDP connections
  • Making certain RDP servers should not straight uncovered to the web
  • Frequently updating Home windows servers and making use of safety patches
  • Proscribing RDP entry to a restricted vary of IP addresses
  • Imposing sturdy password insurance policies and blocking compromised credentials

Organizations seeking to assess their present password dangers can use instruments like password auditing software program or credential monitoring providers to determine weak and breached credentials inside their Lively Listing environments.

As cyber-threats proceed to evolve, taking proactive steps to safe RDP connections stays important for stopping unauthorized entry and potential information breaches.

Tags: AttacksCommonHighlightsPasswordsRDPReport
Previous Post

Congratulations, You Are Now an AI Firm – O’Reilly

Next Post

High Tricks to Stop Water Harm in Your Florida Enterprise

Md Sazzad Hossain

Md Sazzad Hossain

Related Posts

Discord Invite Hyperlink Hijacking Delivers AsyncRAT and Skuld Stealer Concentrating on Crypto Wallets
Cyber Security

Discord Invite Hyperlink Hijacking Delivers AsyncRAT and Skuld Stealer Concentrating on Crypto Wallets

by Md Sazzad Hossain
June 14, 2025
The Carruth Knowledge Breach: What Oregon Faculty Staff Must Know
Cyber Security

Why Each Enterprise Wants a Regulatory & Compliance Lawyer—and the Proper IT Infrastructure to Assist Them

by Md Sazzad Hossain
June 14, 2025
Detecting Ransomware on Community: How Community Site visitors Evaluation Helps
Cyber Security

Detecting Ransomware on Community: How Community Site visitors Evaluation Helps

by Md Sazzad Hossain
June 13, 2025
What’s Zero Belief Structure? A Newbie’s Information
Cyber Security

What’s Zero Belief Structure? A Newbie’s Information

by Md Sazzad Hossain
June 13, 2025
Palo Alto Networks Patches Sequence of Vulnerabilities
Cyber Security

Palo Alto Networks Patches Sequence of Vulnerabilities

by Md Sazzad Hossain
June 12, 2025
Next Post
High Tricks to Stop Water Harm in Your Florida Enterprise

High Tricks to Stop Water Harm in Your Florida Enterprise

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

AlphaEvolve: Google DeepMinds revolutionerande algoritmiska kodningsagent

AlphaEvolve: Google DeepMinds revolutionerande algoritmiska kodningsagent

May 15, 2025
ByteDance Open-Sources DeerFlow: A Modular Multi-Agent Framework for Deep Analysis Automation

ByteDance Open-Sources DeerFlow: A Modular Multi-Agent Framework for Deep Analysis Automation

May 10, 2025

Categories

  • Artificial Intelligence
  • Computer Networking
  • Cyber Security
  • Data Analysis
  • Disaster Restoration
  • Machine Learning

CyberDefenseGo

Welcome to CyberDefenseGo. We are a passionate team of technology enthusiasts, cybersecurity experts, and AI innovators dedicated to delivering high-quality, insightful content that helps individuals and organizations stay ahead of the ever-evolving digital landscape.

Recent

Discord Invite Hyperlink Hijacking Delivers AsyncRAT and Skuld Stealer Concentrating on Crypto Wallets

Discord Invite Hyperlink Hijacking Delivers AsyncRAT and Skuld Stealer Concentrating on Crypto Wallets

June 14, 2025
How A lot Does Mould Elimination Value in 2025?

How A lot Does Mould Elimination Value in 2025?

June 14, 2025

Search

No Result
View All Result

© 2025 CyberDefenseGo - All Rights Reserved

No Result
View All Result
  • Home
  • Cyber Security
  • Artificial Intelligence
  • Machine Learning
  • Data Analysis
  • Computer Networking
  • Disaster Restoration

© 2025 CyberDefenseGo - All Rights Reserved

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In