Detecting IP KVMs, (Tue, Mar 24th)
ID: 88577f17-a5e2-547d-a4e6-7b796e469113
STIX ID: report--88577f17-a5e2-547d-a4e6-7b796e469113
Feed Name: SANS ISC Diary
Threat Score
This report explains how rogue IP KVM devices can be used to enable unauthorized remote access, demonstrates detection methods (lsusb USB IDs and HDMI EDID vendor/model strings for PiKVM and NanoKVM), and highlights evasion risks and monitoring gaps that may allow attackers to avoid detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
