Netskope is recognized as a Leader again in the Gartner® Magic Quadrant™ for SASE Platforms. Get the Report

close
close
Your Network of Tomorrow
Your Network of Tomorrow
Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.
          Experience Netskope
          Get Hands-on With the Netskope Platform
          Here's your chance to experience the Netskope One single-cloud platform first-hand. Sign up for self-paced, hands-on labs, join us for monthly live product demos, take a free test drive of Netskope Private Access, or join us for a live, instructor-led workshops.
            A Leader in SSE. Now a Leader in Single-Vendor SASE.
            Netskope is recognized as a Leader Furthest in Vision for both SSE and SASE Platforms
            2X a Leader in the Gartner® Magic Quadrant for SASE Platforms
            One unified platform built for your journey
              Securing Generative AI for Dummies
              Securing Generative AI for Dummies
              Learn how your organization can balance the innovative potential of generative AI with robust data security practices.
                Modern data loss prevention (DLP) for Dummies eBook
                Modern Data Loss Prevention (DLP) for Dummies
                Get tips and tricks for transitioning to a cloud-delivered DLP.
                  Modern SD-WAN for SASE Dummies Book
                  Modern SD-WAN for SASE Dummies
                  Stop playing catch up with your networking architecture
                    Understanding where the risk lies
                    Advanced Analytics transforms the way security operations teams apply data-driven insights to implement better policies. With Advanced Analytics, you can identify trends, zero in on areas of concern and use the data to take action.
                        Netskope Technical Support
                        Netskope Technical Support
                        Our qualified support engineers are located worldwide and have diverse backgrounds in cloud security, networking, virtualization, content delivery, and software development, ensuring timely and quality technical assistance
                          Netskope video
                          Netskope Training
                          Netskope training will help you become a cloud security expert. We are here to help you secure your digital transformation journey and make the most of your cloud, web, and private applications.

                            Cloud Threats Memo: Beware Outsourced Cyber Attacks and Compromised Credentials

                            Apr 28 2021

                            The trove of 1.3 million RDP credentials leaked recently is yet again proof that, In the underground economy, initial access brokerage is a flourishing market. Cybercriminals are outsourcing the initial access stage of the attack, so they can better focus on the execution and act more quickly.

                            There is a wide availability of compromised credentials (such as RDP and VPN logins) on the black market: the overnight shift to remote work has led many organizations to publish their internal services without an adequate level of protection (such as multi-factor authentication or a password change policy) exposing them to brute-force or password-spraying attacks. To make matters worse, a perfect storm has hit multiple remote access technologies and on-prem services, including Exchange email servers, which have suffered an unprecedented wave of critical vulnerabilities immediately exploited by attackers. Ironically, those systems that were meant to support organizations the most during the pandemic, have become the entry points.

                            This is a concrete risk for organizations exposed to ransomware attacks (according to a recent report, compromised RDP accounts accounted for nearly 50% of ransomware attacks during Q1 2021), or cyber espionage campaigns.

                            How Netskope mitigates the risk of unsecured exposed services

                            Netskope Private Access allows organizations to publish resources (including RDP servers) in a simple and secure manner, embracing the Zero Trust paradigm and without the limitations of legacy remote access technologies. It is possible to publish and segment resources located in a local data center, or in a public cloud, without requiring inbound connections that can be probed by threat actors. There is also no need for any on-prem hardware device to install, patch, and maintain, which avoids scalability issues and performance bottlenecks. Finally, a check on the security posture of the endpoint is enforced before accessing the target application. A smarter and more secure way to provide remote connectivity in the “new normal.”

                            Stay safe!

                            author image
                            Paolo Passeri
                            Paolo supports Netskope’s customers in protecting their journey to the cloud and is a security professional, with 20+ years experience in the infosec industry.
                            Paolo supports Netskope’s customers in protecting their journey to the cloud and is a security professional, with 20+ years experience in the infosec industry.
                            Connect with Netskope

                            Subscribe to the Netskope Blog

                            Sign up to receive a roundup of the latest Netskope content delivered directly in your inbox every month.