July 31, 2022, 4:28 p.m. | /u/opl3sa2

cybersecurity www.reddit.com

It seems to me like someone downloaded a script or something and is targeting the FQDN of our EAS server. I'm not 100% sure it isn't one of the MSSP companies we are late on signing an agreement with. Anyways.

We've installed RDPguard on the server in question, and it seems to be properly blocking the ip addresses in question, one by one. Three attempts, then it blocks that ip address. Within 5 minutes, it's another ip address that it …

advanced advanced persistent threat cybersecurity eas persistent persistent threat server threat

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Engineer II, Offensive Security Penetration Testing

@ Amazon.com | US, TX, Virtual Location - Texas

Cybersecurity Specialist (Security Engineering)

@ Triton AI Pte Ltd | Singapore, Singapore, Singapore

Information Systems Security Officer (ISSO)

@ ARA | Arlington, Virginia, United States

Lead - IT Risk compliance & Info Security

@ First Advantage | Bengaluru-560042, Karnataka

Embedded VSOC Analyst

@ Sibylline Ltd | Australia, Australia