Tag

Remote Desktop

All articles tagged with #remote desktop

Microsoft patches misrendered Remote Desktop warnings on multi-monitor PCs
technology25 days ago

Microsoft patches misrendered Remote Desktop warnings on multi-monitor PCs

Microsoft fixed a bug that caused the new Remote Desktop security warning dialog to render incorrectly on multi‑monitor setups after the April 2026 updates; the fix is in the optional Windows 11 KB5083631 preview (with 34 other changes). The issue affected Windows 11/10/Server and could make the warning dialog’s buttons unreadable or non‑interactive; it aligns with the standard RDP warning flow shown when opening preconfigured .rdp files. Separately, KB5083769 caused a VSS timeout that affected some backup apps on Windows 11 24H2/25H2, prompting out‑of‑band server fixes after the April updates.

RDP security prompts can misrender on multi-monitor setups after April updates
security27 days ago

RDP security prompts can misrender on multi-monitor setups after April updates

Microsoft warns of a bug where the new security warnings shown when opening Remote Desktop (RDP) files can render with unreadable text and misaligned buttons when multiple monitors use different display scaling, affecting Windows 11/10/Server after the April 2026 updates. The prompt appears before connecting and shows signer status and resource redirections; the issue follows increased attacker use of RDP in phishing campaigns (e.g., APT29).

Windows tightens RDP file use to block phishing-prone connections
security1 month ago

Windows tightens RDP file use to block phishing-prone connections

Microsoft’s April 2026 updates for Windows 10 and Windows 11 add protections to curb phishing by malicious Remote Desktop (.rdp) files: first-open triggers educate users, and subsequent attempts show a security dialog listing the file’s publisher status, remote address, and local resource redirects with all options off by default. If unsigned, a caution label appears; if signed, the publisher is shown but verification is still encouraged. These protections apply only to opening RDP files, not to connections via the Windows Remote Desktop client, and can be temporarily disabled via a registry setting by admins. Microsoft urges keeping the safeguards enabled, noting that attackers have used rogue RDP files in campaigns (e.g., APT29) to steal data, credentials, or even clipboard contents and smart-card authentication.

Fake Moltbot VS Code Extension Delivers Stealth Remote-Access Backdoor
technology3 months ago

Fake Moltbot VS Code Extension Delivers Stealth Remote-Access Backdoor

Security researchers flagged a fake Moltbot AI coding assistant extension for Visual Studio Code that auto-runs on launch, fetches payloads from malicious domains, and installs a remote-access backdoor (via ScreenConnect) with a DLL sideloading fallback, highlighting broader Moltbot misconfigurations and credential exposure across deployments.

Microsoft Urges Immediate Updates to Patch Critical Windows Vulnerabilities
technology1 year ago

Microsoft Urges Immediate Updates to Patch Critical Windows Vulnerabilities

Microsoft has disclosed a critical vulnerability (CVE-2024-49115) in Windows Remote Desktop Services, allowing remote code execution on affected systems. The flaw, with a CVSS score of 8.1, arises from improper memory handling and use-after-free conditions. It affects multiple Windows Server versions, including 2016, 2019, 2022, and 2025. Although no active exploits have been reported, Microsoft has released patches as part of December 2024's Patch Tuesday updates. Users are urged to install these updates immediately to mitigate risks.

AnyDesk Resets Passwords and Revokes Certificates After Security Breach
technology2 years ago

AnyDesk Resets Passwords and Revokes Certificates After Security Breach

Remote desktop software provider AnyDesk experienced a cyberattack that led to unauthorized access to its production systems, prompting the company to reset passwords and revoke certificates. The company's software, used by millions of IT professionals, was targeted by threat actors and ransomware gangs. AnyDesk confirmed the incident and stated that customer data was not accessed, but security researchers reported stolen account details being sold on cybercrime forums, likely sourced from previous malware infections. The company has faced criticism for its handling of the cyberattack and is working with CrowdStrike to remediate the situation.

AnyDesk Responds to Hack by Resetting Passwords and Revoking Certificates
cybersecurity2 years ago

AnyDesk Responds to Hack by Resetting Passwords and Revoking Certificates

AnyDesk, the popular remote desktop application, has confirmed a hack of their production systems and urged users to change their passwords. The company has called in cyberattack response services to investigate and remediate the compromise, and has revoked all security-related certificates and systems. While they claim the situation is under control and safe to use AnyDesk, users are advised to download the latest client software and change their web portal passwords, as well as consider adding a second authentication factor for account security.