DOC PREVIEW
GT ECE 4112 - Remote Desktop Security

This preview shows page 1-2-22-23 out of 23 pages.

Save
View full document
View full document
Premium Document
Do you want full access? Go Premium and unlock all 23 pages.
Access to all documents
Download any document
Ad free experience
View full document
Premium Document
Do you want full access? Go Premium and unlock all 23 pages.
Access to all documents
Download any document
Ad free experience
View full document
Premium Document
Do you want full access? Go Premium and unlock all 23 pages.
Access to all documents
Download any document
Ad free experience
View full document
Premium Document
Do you want full access? Go Premium and unlock all 23 pages.
Access to all documents
Download any document
Ad free experience
Premium Document
Do you want full access? Go Premium and unlock all 23 pages.
Access to all documents
Download any document
Ad free experience

Unformatted text preview:

Remote Desktop SecurityWhat is Remote Desktop?MotivationHow Does it Work?History (Microsoft software)DifferencesIn ActionSome Software DistributionsSoftware ComparisonThe LabHacking into Remote DesktopEnable Remote Desktop via NetworkSlide 13Multiuser Desktop HackMultiuser Hack (cont.)Hacking Through A FirewallSecurity MeasuresSecurity Measures (cont.)Slide 19Slide 20Other ToolsLoopback!Any Questions?Remote Desktop SecurityRemote Desktop SecurityRaghav Chawla, Jon UsseryRaghav Chawla, Jon UsseryGroup 20Group 20What is Remote Desktop?What is Remote Desktop?Remote administration softwareRemote administration softwareRan on foreign host’s serverRan on foreign host’s serverDisplayed locallyDisplayed locallyMotivationMotivationVery popular Very popular Increasingly mobile societyIncreasingly mobile societyNeed to access home/work PCsNeed to access home/work PCsExtremely vulnerableExtremely vulnerableEasy to exploit these vulnerabilitiesEasy to exploit these vulnerabilitiesComplete accessComplete accessHow Does it Work?How Does it Work?For Microsoft services:For Microsoft services:Terminal services allow user to access data Terminal services allow user to access data and applications on a remote computerand applications on a remote computerDifferent than appstreaming, as Different than appstreaming, as computations are processed on remote pccomputations are processed on remote pcHistory (Microsoft software)History (Microsoft software)Terminal services were introduced in Terminal services were introduced in Windows NT 4.0Windows NT 4.0Vastly improved in Windows 2000Vastly improved in Windows 2000Vista has new developments as wellVista has new developments as wellClipboardClipboardAudioAudioDifferencesDifferencesIn client versions of Windows OS, In client versions of Windows OS, only one user can be logged in at a only one user can be logged in at a timetimeIn the server version, concurrent In the server version, concurrent sessions are allowedsessions are allowedTerminal Services provide for remote Terminal Services provide for remote software accesssoftware accessIn ActionIn ActionRuns on port 3389Runs on port 3389Includes ActiveX controlIncludes ActiveX controlWinlogon.exe authenticates userWinlogon.exe authenticates userKeyboard and mouse inputs are transmitted via Keyboard and mouse inputs are transmitted via TCP connectionTCP connectionVirtual Channels Virtual Channels allow other devices to work allow other devices to work (such as printers, audio, etc.)(such as printers, audio, etc.)Some Software DistributionsSome Software DistributionsMicrosoft Remote Desktop Microsoft Remote Desktop ConnectionConnectionRealVNCRealVNCTightVNCTightVNCApple Remote Desktop (for Apple Apple Remote Desktop (for Apple pc’s)pc’s)GoToMyPCGoToMyPCSoftware ComparisonSoftware ComparisonThe LabThe LabHacking into remote desktopHacking into remote desktopRemotely Enabling remote desktopRemotely Enabling remote desktopMultiuser remote desktop hackMultiuser remote desktop hackHacking through a firewallHacking through a firewallSecurity measuresSecurity measuresHacking into Remote Hacking into Remote DesktopDesktopTransferred WinVNC files on remote Transferred WinVNC files on remote pcpc Used RegINI.exe to load data Used RegINI.exe to load data (password, socket connections) into (password, socket connections) into registryregistryInstalled VNC through command Installed VNC through command promptpromptEnable Remote Desktop via Enable Remote Desktop via NetworkNetworkUse Regedit to connect to the Use Regedit to connect to the Network registryNetwork registryFind client machine on networkFind client machine on networkAfter a few registry edits, remote desktop After a few registry edits, remote desktop functionality will be availablefunctionality will be availableMultiuser Desktop HackMultiuser Desktop HackBoot Windows in safe modeBoot Windows in safe modeChanged terminal services settingsChanged terminal services settingsReplaced termsrv.dll files with Replaced termsrv.dll files with alternatealternateMultiuser Hack (cont.)Multiuser Hack (cont.)Changed some registry settingsChanged some registry settingsFinally, tweak Terminal Services settingsFinally, tweak Terminal Services settingsHacking Through A FirewallHacking Through A FirewallUseful if port 3389 is blockedUseful if port 3389 is blockedUsed Putty to setup a tunnel for Used Putty to setup a tunnel for accessing RDC Serveraccessing RDC ServerSecurity MeasuresSecurity MeasuresLimit users who can log on remotelyLimit users who can log on remotelySecurity Measures (cont.)Security Measures (cont.)Set an account lockout policySet an account lockout policySecurity Measures (cont.)Security Measures (cont.)Require passwords and at least 128-bit Require passwords and at least 128-bit encryptionencryptionRun - %SystemRootRun - %SystemRoot%\system32\gpedit.msc /s%\system32\gpedit.msc /sSecurity Measures (cont.)Security Measures (cont.)Change the RDP port numberChange the RDP port numberEdit registry as follows:Edit registry as follows:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-TcpServer\WinStations\RDP-TcpOther ToolsOther ToolsLoopback!Loopback!Any Questions?Any


View Full Document

GT ECE 4112 - Remote Desktop Security

Documents in this Course
Firewalls

Firewalls

40 pages

Firewalls

Firewalls

126 pages

Load more
Download Remote Desktop Security
Our administrator received your request to download this document. We will send you the file to your email shortly.
Loading Unlocking...
Login

Join to view Remote Desktop Security and access 3M+ class-specific study document.

or
We will never post anything without your permission.
Don't have an account?
Sign Up

Join to view Remote Desktop Security 2 2 and access 3M+ class-specific study document.

or

By creating an account you agree to our Privacy Policy and Terms Of Use

Already a member?