How secure is Windows Remote Desktop?

Attackers use tools like Shodan to discover RDP accounts & gain access to their target’s network.

Best practices for RDP security

In next slides, you’ll find the best practices one should follow to ensure safe and secure usage of Remote Desktop Services.

Use Strong Passwords

Use alpha-numeric and symbols in your password to increase your password's strength.

Use 2FA (2-factor authentication)

Departments should consider using a two-factor authentication approach.

Update Your Software

Make sure you are running the latest versions of both the client and server software by enabling and auditing automatic Microsoft Updates.

Restrict Access Using Firewalls

Using an RDP Gateway is highly recommended for restricting RDP access to desktops and servers

Enable Network Level Authentication

NLA should be enabled by default on Windows 10, Windows Server 2012 R2/2016/2019.