Feb. 9, 2024, 5:24 p.m. | Mari DeGrazia

Blog – ZeroFox www.zerofox.com

Many threat actors utilize Remote Desktop Protocol (RDP) to move laterally within an environment once they have compromised it. There has been quite a bit of documentation around forensic artifacts associated with the Microsoft MSTSC client which has been around since 1998. However, there is also a Microsoft Remote Desktop App that is available in […]


The post Remote Desktop Application vs MSTSC Forensics: The RDP Artifacts You Might Be Missing appeared first on ZeroFox.

application artifacts blog breaches client compromised desktop desktop application documentation environment forensic forensic artifacts forensics incident response microsoft missing protocol rdp remote desktop remote desktop protocol threat threat actors

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC