Do you use RDP?

๐Ÿ”’ Secure Bits ๐Ÿ’ก
๐——๐—ผ ๐˜†๐—ผ๐˜‚ ๐˜‚๐˜€๐—ฒ ๐—ฅ๐——๐—ฃ?

Thereโ€™s a ๐˜€๐˜‚๐—ฟ๐—ฝ๐—ฟ๐—ถ๐˜€๐—ถ๐—ป๐—ด ๐—ฟ๐—ถ๐˜€๐—ธ you might not be thinking about โ€” and itโ€™s already on your machine.

When you use Remote Desktop (๐—ฅ๐——๐—ฃ) via the ๐— ๐—ฆ๐—ง๐—ฆ๐—– client, any credentials you enter can be retrieved in plaintext in the process ๐—บ๐—ฒ๐—บ๐—ผ๐—ฟ๐˜†. That means your domain admin password could be sitting there, waiting to be pulled โ€” no keylogger needed.

๐Ÿ“Œ You canโ€™t just flip a setting to ๐—ฑ๐—ถ๐˜€๐—ฎ๐—ฏ๐—น๐—ฒ this.

But there are some ๐˜„๐—ฎ๐˜†๐˜€ ๐˜๐—ผ ๐—ฟ๐—ฒ๐—ฑ๐˜‚๐—ฐ๐—ฒ ๐˜๐—ต๐—ฒ ๐—ฟ๐—ถ๐˜€๐—ธ:
1๏ธโƒฃ ๐—จ๐˜€๐—ฒ ๐—ฎ ๐—ฃ๐—ฟ๐—ถ๐˜ƒ๐—ถ๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ ๐—”๐—ฐ๐—ฐ๐—ฒ๐˜€๐˜€ ๐—ช๐—ผ๐—ฟ๐—ธ๐˜€๐˜๐—ฎ๐˜๐—ถ๐—ผ๐—ป (๐—ฃ๐—”๐—ช) โ€” ideally a physical machine, even if you run a VM PAW on top of it.
2๏ธโƒฃ ๐—”๐˜ƒ๐—ผ๐—ถ๐—ฑ ๐—ฅ๐——๐—ฃ โ€” not always practical in Windows environments.
3๏ธโƒฃ ๐—จ๐˜€๐—ฒ ๐— ๐—™๐—” โ€” if thereโ€™s no password typed, thereโ€™s no password to grab from memory.

๐Ÿ” Thatโ€™s one reason I started ๐—ฐ๐—ผ๐—น๐—น๐—ฎ๐—ฏ๐—ผ๐—ฟ๐—ฎ๐˜๐—ถ๐—ป๐—ด ๐˜„๐—ถ๐˜๐—ต Systola. I tested their platform, ๐—ฆ๐˜†๐˜€๐˜๐—ผ๐—Ÿ๐—ข๐—–๐—ž, which brings ๐—ป๐—ฎ๐˜๐—ถ๐˜ƒ๐—ฒ ๐—ฝ๐—ฎ๐˜€๐˜€๐˜„๐—ผ๐—ฟ๐—ฑ๐—น๐—ฒ๐˜€๐˜€ ๐—บ๐˜‚๐—น๐˜๐—ถ-๐—ณ๐—ฎ๐—ฐ๐˜๐—ผ๐—ฟ ๐—ฎ๐˜‚๐˜๐—ต๐—ฒ๐—ป๐˜๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป to the Windows ecosystem โ€” including RDP, Windows login, SAML, Radius, and more.
Itโ€™s simple, works as expected, and the pricing is very reasonable.

๐Ÿงช ๐—ช๐—ฎ๐—ป๐˜ ๐˜๐—ผ ๐˜๐—ฟ๐˜† ๐—ถ๐˜?
Link in comments. Hereโ€™s how it works:
1. Open the page โ†’ youโ€™ll see the license options (one is free).
2. Click Request demo.
3. Systola will create your eval account and send access so you can install and test.

If you give it a spin, ๐˜๐—ฒ๐—น๐—น ๐—บ๐—ฒ ๐—ต๐—ผ๐˜„ ๐—ถ๐˜ ๐—ด๐—ผ๐—ฒ๐˜€ โ€” I can help and may be able to arrange a discount for paid tiers.

Do you use MFA for RDP sessions?