Microsoft Slams the Door on Remote Desktop Phishing Scams
Microsoft is rolling out enhanced security measures for Windows to mitigate risks associated with malicious Remote Desktop (.rdp) files. These files are frequently used by attackers in phishing campaigns to gain unauthorized access or deploy malware. The update introduces more prominent warning prompts when users attempt to open RDP files and automatically disables risky shared resources—such as local drives and printers—by default when a connection is established. This move aims to prevent data exfiltration and unauthorized system changes by limiting the level of access an untrusted RDP session can have on a host machine.