Login
Download
Skill UI
Browse and discover
10397+
curated skills
All
Development
Artificial Intelligence
Design & Creative
Product & Business
Data Science
Marketing
Soft Skills
Productivity
Engineering
Languages
Search
credential-compromise
, found
1
results
Default
Newest
Most Downloaded
Detecting RDP Brute Force Attacks Via Event Logs
detecting-rdp-brute-force-attacks
mukul975/Anthropic-Cybersecurity-Skills
419
This skill analyzes Windows Security Event Logs (EVTX) to detect RDP brute force attacks. It parses failed logon events (ID 4625) and correlates them with successful logons (ID 4624), performing source IP frequency analysis to identify attack patterns, username spraying, and potential account compromises. This is critical for SOC analysts and threat hunters investigating lateral movement or credential stuffing attempts.
View Details
1
Language
简体中文
English