logo

Remote Access Infra Remains Riskiest Corp. Attack Surface

ID: 6d810492-7f73-5c21-84f9-9824e9fb2d03

STIX ID: report--6d810492-7f73-5c21-84f9-9824e9fb2d03

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2025-03-14

Date Updated: 2026-04-21

Author: Robert Lemos, Contributing Writer

...
...

Analysis of Black Basta chat logs and industry data shows ransomware actors leveraging nearly 3,000 unique credentials to target Internet-exposed remote-access services (RDP, VPNs, remote login portals) as primary initial access vectors; Coalition's report finds many companies have publicly exposed login panels, with compromised credentials accounting for a large share of ransomware initial access, and recommends firmware patching, phishing-resistant MFA, and adoption of zero-trust architectures to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.