The rush to allow users to work from home due to the COVID-19 virus opens up an increased threat vector. As companies struggle to allow their employees to work from home creating social distancing, security may not be sufficiently considered. Before just turning on remote access, please keep these basic rules in mind:
What if you do not have a VPN solution? If you must use RDP remember the following:
Windows 10, Windows Server 2012 R2/2016/2019 also provides Network Level Authentication (NLA) by default. It is best to leave this in place, as NLA provides an extra level of authentication before a connection is established.
NLA should be enabled by default on Windows 10, Windows Server 2012 R2/2016/2019.
Avoid Panic Decisions
The situation is certainly one that needs to be handled with an abundance of caution as we move into unchartered territory. If threat intelligence tells us anything, it’s that threat actors will use any situation to facilitate their ill intent. If decision-makers act too quickly, it will be easy to simply ‘open the network’ in order to be able to continue doing business, but this strategy is extremely risky. Avoid a panic decision and make sure that while making the necessary decisions, we don’t open ourselves to threat actors.