Viewable by the world
Group Access to CIO
Can VIEW the space: cio-editors ,  anonymous ,  all-lbnl-users ,  confluence-administrators , 
Can EDIT the space: confluence-administrators , 
Can ADMINISTER the space: confluence-administrators , 

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

As always, we continue to see new and evolving issues in the cyber security space.

Remote Desktop Protocol (RDP) scanning from first worm in 7 years
The most recent evolution was a RDP scanning attack of unprecedented scale, with more than 100k 100K unique hosts attacking the lab. With our strong visibility into traffic of all types, including RDP, we were the first people on the Internet to detect it (a month ahead of the rest of the Internet). We submitted the information to REN-ISAC where an analyst analyzed the automation and communicated it out to other labsquickly shared this information with both the Lab and .edu communities. Our early detection and sharing allowed...

Our response to this attack demonstrates our ability to dynamically adapt. We quickly created new methods to detect and alert on attacking/infected hosts and developed new defenses to block scanning.

...