Breaking News

TerraMaster F4-425 Pro features the world’s first AI-native TOS 7 NAS system Samsung Unveils UFS 5.0 COLORFUL Presents Limited Edition Chitu MAG-60 Magnetic Keyboard Inspired by the Year of the Horse AMD Advances the Hybrid Future of Quantum Computing Flowtica Announces Commercial Availability of Upgraded Flowtica Scribe AI Recording Pen

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

NSA Urges Users to Patch Remote Desktop Services on Legacy Versions of Windows

NSA Urges Users to Patch Remote Desktop Services on Legacy Versions of Windows

Enterprise & IT Jun 6,2019 0

The National Security Agency (NSA) is urging Microsoft Windows administrators and users to ensure they are using a patched and updated system in the face of growing threats.

Some time ago Microsoft said that Windows users should patch their systems against the BlueKeep (CVE-2019-0708) vulnerability. The company later issued a further warning stressing the importance of installing a patch. Microsoft says that this flaw is potentially “wormable,” meaning it could spread without user interaction across the internet.

Now the NSA has got involved, joining Microsoft in begging users to secure their Windows XP and Windows 7 computers.

BlueKeep is a vulnerability in the Remote Desktop (RDP) protocol. It is present in Windows 7, Windows XP, Server 2003 and 2008.

This is the type of vulnerability that malicious cyber actors frequently exploit through the use of software code that specifically targets the vulnerability. For example, the vulnerability could be exploited to conduct denial of service attacks. It is likely only a matter of time before remote exploitation code is widely available for this vulnerability.

In order to increase resilience against this threat while large networks patch and upgrade, there are additional measures that can be taken:

  • Block TCP Port 3389 at your firewalls, especially any perimeter firewalls exposed to the internet. This port is used in RDP protocol and will block attempts to establish a connection.
  • Enable Network Level Authentication. This security improvement requires attackers to have valid credentials to perform remote code authentication.
  • Desktop Services if they are not required. Disabling unused and unneeded services helps reduce exposure to security vulnerabilities overall.

Tags: CybersecuritypatchMicrosoft
Previous Post
ZTE Axon 10 Pro 5G To Hit the European Market Soon
Next Post
Huawei to Offer 5G Expertise to Russian Telecoms

Related Posts

  • NVIDIA and Microsoft Reinvent Windows PCs for the Age of Personal AI

  • Snapdragon X Series is the Exclusive Platform to Power the Next Generation of Windows PCs with Copilot+ Today

  • Activision Blizzard King to Team Xbox

  • NVIDIA Studio Lineup Adds RTX-Powered Microsoft Surface Laptop Studio 2

  • Samsung and Microsoft Unveil First On-Device Attestation Solution for Enterprise

  • Introducing Xbox Game Pass Core, Coming This September

  • Announcing the next wave of AI innovation with Microsoft Bing and Edge

  • Microsoft Announces Security Copilot AI

Latest News

TerraMaster F4-425 Pro features the world’s first AI-native TOS 7 NAS system
Enterprise & IT

TerraMaster F4-425 Pro features the world’s first AI-native TOS 7 NAS system

Samsung Unveils UFS 5.0
Enterprise & IT

Samsung Unveils UFS 5.0

COLORFUL Presents Limited Edition Chitu MAG-60 Magnetic Keyboard Inspired by the Year of the Horse
PC components

COLORFUL Presents Limited Edition Chitu MAG-60 Magnetic Keyboard Inspired by the Year of the Horse

AMD Advances the Hybrid Future of Quantum Computing
Enterprise & IT

AMD Advances the Hybrid Future of Quantum Computing

Flowtica Announces Commercial Availability of Upgraded Flowtica Scribe AI Recording Pen
Consumer Electronics

Flowtica Announces Commercial Availability of Upgraded Flowtica Scribe AI Recording Pen

Popular Reviews

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Soft2bet and the unseen hardware that makes instant play possible

Soft2bet and the unseen hardware that makes instant play possible

Crucial T710 2TB NVME SSD

Crucial T710 2TB NVME SSD

be quiet! Pure power 13M 750W

be quiet! Pure power 13M 750W

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed