Lemmy
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 4 days ago

Windows RDP Bug Allows Login With Expired Passwords - Microsoft Confirms No Fix

cybersecuritynews.com

external-link
message-square
15
fedilink
57
external-link

Windows RDP Bug Allows Login With Expired Passwords - Microsoft Confirms No Fix

cybersecuritynews.com

Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 4 days ago
message-square
15
fedilink
Microsoft has confirmed that its Remote Desktop Protocol (RDP) allows users to log into Windows machines using passwords that have already been changed or revoked.
  • ThePantser@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    8
    ·
    4 days ago

    Nobody should be using RDP, it has been swiss cheese since it was created.

    • Onno (VK6FLAB)@lemmy.radio
      link
      fedilink
      English
      arrow-up
      9
      ·
      4 days ago

      All fine and dandy … got any realistic alternatives?

      • Appoxo@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        4 days ago

        Probably VNC (lol).
        I’d rather use something built into windows than use 3rd party.
        Same for MacOS. I wouldnt install an RDP-compatible server on it.

    • Saganaki@lemmy.one
      link
      fedilink
      English
      arrow-up
      2
      ·
      4 days ago

      Realistically, it should be assumed RDP is insecure, so use it via VPN.

    • atro_city@fedia.io
      link
      fedilink
      arrow-up
      2
      arrow-down
      2
      ·
      4 days ago

      I think I had to use that once at work. Is it the thing that only allows passwords with like 6 letters or something?

      • Brkdncr@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        4 days ago

        No. It’s Remote Desktop.

        • atro_city@fedia.io
          link
          fedilink
          arrow-up
          1
          arrow-down
          1
          ·
          4 days ago

          The password length isn’t limited when logging in?

          • Brkdncr@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            4 days ago

            No. I have no idea what would limit password length other than a bad systems admin

            • atro_city@fedia.io
              link
              fedilink
              arrow-up
              2
              ·
              4 days ago

              TIL there’s no password limit on the application and it’s the admin who sets the password limit. No idea wtf our admin was thinking. Wow…

Cybersecurity@sh.itjust.works

cybersecurity@sh.itjust.works

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !cybersecurity@sh.itjust.works

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

  • Be respectful. Everyone should feel welcome here.
  • No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
  • No Ads / Spamming.
  • No pornography.

Community Rules

  • Idk, keep it semi-professional?
  • Nothing illegal. We’re all ethical here.
  • Rules will be added/redefined as necessary.

If you ask someone to hack your “friends” socials you’re just going to get banned so don’t do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 289 users / day
  • 721 users / week
  • 1.6K users / month
  • 3.58K users / 6 months
  • 1 local subscriber
  • 7.16K subscribers
  • 832 Posts
  • 1.3K Comments
  • Modlog
  • mods:
  • Kid@sh.itjust.works
  • Lanky_Pomegranate530@midwest.social
  • BE: 0.19.8
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org