{"id":323910,"date":"2023-10-10T09:39:33","date_gmt":"2023-10-10T13:39:33","guid":{"rendered":"https:\/\/www.actionti.com\/?p=323910"},"modified":"2024-05-28T08:29:05","modified_gmt":"2024-05-28T12:29:05","slug":"comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants","status":"publish","type":"post","link":"https:\/\/actionti.com\/en\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/","title":{"rendered":"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants"},"content":{"rendered":"\n<p class=\"has-text-align-center\"><strong>Article offert par GoSecure, partenaire de la&nbsp;<a href=\"https:\/\/www.actionti.com\/jiq\/\">JIQ 2023<\/a><\/strong><\/p>\n\n\n\n<p><strong>R\u00e9sum\u00e9 : Cet article pr\u00e9sente les observations d\u00e9coulant de la surveillance du protocole d\u2019acc\u00e8s \u00e0 distance menant \u00e0 la caract\u00e9risation des attaquants. Celle-ci r\u00e9v\u00e8le cinq groupes distincts d&#8217;attaquants et souligne l&#8217;importance de la collecte d\u2019informations pour comprendre les menaces.<\/strong><\/p>\n\n\n\n<p>par Andr\u00e9anne Bergeron, Ph.D et Olivier Bilodeau<\/p>\n\n\n\n<p>Avec <a href=\"https:\/\/github.com\/gosecure\/pyrdp\">un outil d&#8217;interception du protocole d\u2019acc\u00e8s \u00e0 distance RDP<\/a> (pour <em>Remote Desktop Protocol<\/em>), les chercheurs ont r\u00e9ussi \u00e0 recueillir une grande quantit\u00e9 d&#8217;informations (\u00e9cran, clavier, souris, m\u00e9tadonn\u00e9es) sur les attaquants opportunistes sous forme de vid\u00e9o. Un sp\u00e9cialiste en cybers\u00e9curit\u00e9 et une scientifique des donn\u00e9es criminelles s\u2019unissent pour livrer une histoire \u00e9pique, pr\u00e9sent\u00e9e \u00e0 <a href=\"https:\/\/www.blackhat.com\/us-23\/briefings\/schedule\/index.html#i-watched-you-roll-the-die-unparalleled-rdp-monitoring-reveal-attackers-tradecraft-33110\">BlackHat USA<\/a> sous le titre <a href=\"https:\/\/i.blackhat.com\/BH-US-23\/Presentations\/US-23-Bilodeau-I-Watched-You-Roll-the-Die-Unparalleled-RDP-Monitoring.pdf?_gl=1*1mhmz5m*_gcl_au*MTYwNzc2NDc1MC4xNjk0MDI1NTgw*_ga*MTQ1ODE4ODkzNy4xNjk0MDI1NTgw*_ga_K4JK67TFYV*MTY5NDAyNTU4MC4xLjEuMTY5NDAyNTYyNC4wLjAuMA..&amp;_ga=2.136739440.137847016.1694025580-1458188937.1694025580\">\u00ab Je vous ai regard\u00e9 lancer les d\u00e9s : une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants \u00bb.<\/a> Dans le cadre de leur recherche, ils attirent les attaquants dans leurs pi\u00e8ges afin de pouvoir les \u00e9tudier et mieux comprendre leurs m\u00e9thodes. L\u2019objectif est de concentrer collectivement notre attention sur des menaces plus sophistiqu\u00e9es.<\/p>\n\n\n\n<p>RDP est un vecteur d&#8217;attaque critique utilis\u00e9 par des acteurs malveillants incluant les groupes de ran\u00e7ongiciel. Pour \u00e9tudier les attaques sur RDP, les chercheurs ont construit un r\u00e9seau de honeypots compos\u00e9 de plusieurs serveurs Windows avec RDP expos\u00e9 sur l\u2019infonuagique op\u00e9r\u00e9s pendant trois ans. Les donn\u00e9es collect\u00e9es ont permis d&#8217;\u00e9tudier le comportement des attaquants, ce qui a \u00e9t\u00e9 utilis\u00e9 pour classer les attaquants en diff\u00e9rents groupes.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft size-full\"><img decoding=\"async\" width=\"116\" height=\"132\" data-src=\"https:\/\/www.actionti.com\/wp-content\/uploads\/2023\/10\/Le-rodeur.png\" alt=\"\" class=\"wp-image-323911 lazyload\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 116px; --smush-placeholder-aspect-ratio: 116\/132;\" \/><\/figure>\n<\/div>\n\n\n<p>Les <em>Rodeurs<\/em> explorent les dossiers et fichiers, v\u00e9rifient les caract\u00e9ristiques de performance du r\u00e9seau et de l&#8217;h\u00f4te, effectuent une reconnaissance en cliquant ou en utilisant des programmes\/scripts. Aucune autre action significative n&#8217;est entreprise. Notre hypoth\u00e8se est qu&#8217;ils \u00e9valuent le syst\u00e8me qu&#8217;ils ont compromis afin qu&#8217;un autre profil d&#8217;attaquant puisse revenir ult\u00e9rieurement. <a href=\"https:\/\/youtu.be\/l6FV__uq_dQ\">Pour voir un <em>Rodeur<\/em> en action, visionnez une session enregistr\u00e9e sur YouTube.<\/a><\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft size-full\"><img decoding=\"async\" width=\"97\" height=\"121\" data-src=\"https:\/\/www.actionti.com\/wp-content\/uploads\/2023\/10\/Roublards-1.png\" alt=\"\" class=\"wp-image-323913 lazyload\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 97px; --smush-placeholder-aspect-ratio: 97\/121;\" \/><\/figure>\n<\/div>\n\n\n<p>Les <em>Roublards<\/em> essaient de mon\u00e9tiser l&#8217;acc\u00e8s RDP. Apr\u00e8s avoir pris le contr\u00f4le de l&#8217;ordinateur en modifiant les identifiants d&#8217;acc\u00e8s, ils effectuent diff\u00e9rentes activit\u00e9s visant \u00e0 tirer parti de cet acc\u00e8s. Ils utilisent des outils comme traffmonetizer (proxyware), des navigateurs mon\u00e9tis\u00e9s (participant \u00e0 des syst\u00e8mes <a href=\"https:\/\/en.wikipedia.org\/wiki\/Pay_to_surf\">de navigation r\u00e9mun\u00e9r\u00e9<\/a>), ils installent et utilisent des cryptomineurs, t\u00e9l\u00e9chargent des \u00e9mulateurs Android (pour faire de la fraude mobile), etc.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft size-full is-resized\"><img decoding=\"async\" data-src=\"https:\/\/www.actionti.com\/wp-content\/uploads\/2023\/10\/Barbares.png\" alt=\"\" class=\"wp-image-323914 lazyload\" width=\"99\" height=\"116\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 99px; --smush-placeholder-aspect-ratio: 99\/116;\" \/><\/figure>\n<\/div>\n\n\n<p>Les <em>Barbares<\/em> utilisent une vari\u00e9t\u00e9 d&#8217;outils pour forcer leur passage dans d&#8217;autres ordinateurs. Ils exploitent le syst\u00e8me compromis pour tenter de compromettre d&#8217;autres syst\u00e8mes en travaillant avec des listes d&#8217;adresses IP, de noms d&#8217;utilisateurs et de mots de passe. <a href=\"https:\/\/youtu.be\/ZZAJz9OeTeQ\">Ici, nous pouvons voir un Barbare utilisant Masscan, un outil de balayage de ports.<\/a><\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft size-full\"><img decoding=\"async\" width=\"111\" height=\"154\" data-src=\"https:\/\/www.actionti.com\/wp-content\/uploads\/2023\/10\/Magiciens.png\" alt=\"\" class=\"wp-image-323915 lazyload\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 111px; --smush-placeholder-aspect-ratio: 111\/154;\" \/><\/figure>\n<\/div>\n\n\n<p>Les <em>Magiciens<\/em> utilisent l&#8217;acc\u00e8s RDP comme un portail pour se connecter \u00e0 un autre ordinateur compromis. Ils cachent leur identit\u00e9 en sautant par-dessus des h\u00f4tes compromis. Pour ce faire, ils font preuve d&#8217;un haut niveau de comp\u00e9tence en vivant prudemment \u00ab <a href=\"https:\/\/www.youtube.com\/watch?v=j-r6UonEkUw\">off the land<\/a> \u00bb, c\u2019est \u00e0 dire en utilisant les outils d\u00e9j\u00e0 pr\u00e9sents dans l\u2019environnement. <a href=\"https:\/\/youtu.be\/STP5MuzyJ1k\">Vous pouvez voir un magicien \u00e0 l&#8217;\u0153uvre en suivant ce lien YouTube.<\/a><\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft size-full\"><img decoding=\"async\" width=\"102\" height=\"141\" data-src=\"https:\/\/www.actionti.com\/wp-content\/uploads\/2023\/10\/Bardes.png\" alt=\"\" class=\"wp-image-323916 lazyload\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 102px; --smush-placeholder-aspect-ratio: 102\/141;\" \/><\/figure>\n<\/div>\n\n\n<p>Les <em>Bardes<\/em> sont des individus sans comp\u00e9tences de piratage apparentes. Ils acc\u00e8dent au syst\u00e8me pour accomplir des t\u00e2ches de base, telles que la recherche de virus gr\u00e2ce \u00e0 une simple recherche Google ou pour regarder de la pornographie. Les captures montrent qu&#8217;ils ont potentiellement achet\u00e9 un acc\u00e8s RDP \u00e0 quelqu&#8217;un qui a compromis le syst\u00e8me pour eux, tel qu\u2019un courtier d\u2019acc\u00e8s initial (<em>initial access broker<\/em>).<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p><strong>Conclusion<\/strong><\/p>\n\n\n\n<p>Comprendre et caract\u00e9riser les attaquants nous permet de concentrer collectivement notre attention sur les <em>modus operandi<\/em> les plus courants et sur les menaces les plus sophistiqu\u00e9es.<\/p>\n\n\n\n<p>La recherche met \u00e9galement de l\u2019avant les formidables capacit\u00e9s de<a href=\"https:\/\/github.com\/GoSecure\/pyrdp\/blob\/master\/README.md#pyrdp-lore\"> PyRDP<\/a> et l\u2019utilit\u00e9 potentielle de cette technologie pour les forces de l\u2019ordre et les \u00e9quipes de s\u00e9curit\u00e9, en soulignant la possibilit\u00e9 d\u2019intercepter l\u00e9galement les environnements RDP utilis\u00e9s par les groupes de ran\u00e7ongiciel et d\u2019adopter des mesures proactives pour mieux prot\u00e9ger les organisations contre les attaques opportunistes. Les \u00e9quipes de s\u00e9curit\u00e9 peuvent, quant \u00e0 elles, <a href=\"https:\/\/github.com\/GoSecure\/malware-ioc\/\">exploiter les indicateurs de compromission (IOC)<\/a> et d\u00e9ployer leurs propres pi\u00e8ges pour mieux prot\u00e9ger leurs organisations.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Article offert par GoSecure, partenaire de la&nbsp;JIQ 2023 R\u00e9sum\u00e9 : Cet article pr\u00e9sente les [&hellip;]<\/p>\n","protected":false},"author":29563,"featured_media":323917,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[233],"class_list":["post-323910","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-contenu-partenaire"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants | R\u00e9seau Action TI<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants | R\u00e9seau Action TI\" \/>\n<meta property=\"og:description\" content=\"Article offert par GoSecure, partenaire de la&nbsp;JIQ 2023 R\u00e9sum\u00e9 : Cet article pr\u00e9sente les [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/\" \/>\n<meta property=\"og:site_name\" content=\"R\u00e9seau Action TI\" \/>\n<meta property=\"article:published_time\" content=\"2023-10-10T13:39:33+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-05-28T12:29:05+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/actionti.com\/wp-content\/uploads\/2023\/10\/GoSecure-JIQ-1200x900-1.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Jessica Mimeault\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Jessica Mimeault\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/\"},\"author\":{\"name\":\"Jessica Mimeault\",\"@id\":\"https:\\\/\\\/actionti.com\\\/#\\\/schema\\\/person\\\/b5564bfa291cc2d396d2cf6a23ce33c8\"},\"headline\":\"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants\",\"datePublished\":\"2023-10-10T13:39:33+00:00\",\"dateModified\":\"2024-05-28T12:29:05+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/\"},\"wordCount\":775,\"publisher\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/actionti.com\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/GoSecure-JIQ-1200x900-1.png\",\"articleSection\":[\"Contenu partenaire\"],\"inLanguage\":\"en-CA\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/\",\"url\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/\",\"name\":\"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants | R\u00e9seau Action TI\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/actionti.com\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/GoSecure-JIQ-1200x900-1.png\",\"datePublished\":\"2023-10-10T13:39:33+00:00\",\"dateModified\":\"2024-05-28T12:29:05+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#breadcrumb\"},\"inLanguage\":\"en-CA\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-CA\",\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#primaryimage\",\"url\":\"https:\\\/\\\/actionti.com\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/GoSecure-JIQ-1200x900-1.png\",\"contentUrl\":\"https:\\\/\\\/actionti.com\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/GoSecure-JIQ-1200x900-1.png\",\"width\":1200,\"height\":900},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/actionti.com\\\/publications\\\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/actionti.com\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/actionti.com\\\/#website\",\"url\":\"https:\\\/\\\/actionti.com\\\/\",\"name\":\"R\u00e9seau Action TI\",\"description\":\"Regroupement des professionnels en technologies de l\u2019information (TI)\",\"publisher\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/actionti.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-CA\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/actionti.com\\\/#organization\",\"name\":\"R\u00e9seau Action TI\",\"url\":\"https:\\\/\\\/actionti.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-CA\",\"@id\":\"https:\\\/\\\/actionti.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"http:\\\/\\\/actionti.com\\\/wp-content\\\/uploads\\\/2021\\\/01\\\/Action-TI-RGB-2-couleurs.png\",\"contentUrl\":\"http:\\\/\\\/actionti.com\\\/wp-content\\\/uploads\\\/2021\\\/01\\\/Action-TI-RGB-2-couleurs.png\",\"width\":4501,\"height\":4501,\"caption\":\"R\u00e9seau Action TI\"},\"image\":{\"@id\":\"https:\\\/\\\/actionti.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/actionti.com\\\/#\\\/schema\\\/person\\\/b5564bfa291cc2d396d2cf6a23ce33c8\",\"name\":\"Jessica Mimeault\",\"url\":\"https:\\\/\\\/actionti.com\\\/en\\\/publications\\\/author\\\/jessica-mimeault\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants | R\u00e9seau Action TI","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/","og_locale":"en_US","og_type":"article","og_title":"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants | R\u00e9seau Action TI","og_description":"Article offert par GoSecure, partenaire de la&nbsp;JIQ 2023 R\u00e9sum\u00e9 : Cet article pr\u00e9sente les [&hellip;]","og_url":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/","og_site_name":"R\u00e9seau Action TI","article_published_time":"2023-10-10T13:39:33+00:00","article_modified_time":"2024-05-28T12:29:05+00:00","og_image":[{"width":1200,"height":900,"url":"https:\/\/actionti.com\/wp-content\/uploads\/2023\/10\/GoSecure-JIQ-1200x900-1.png","type":"image\/png"}],"author":"Jessica Mimeault","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Jessica Mimeault","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#article","isPartOf":{"@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/"},"author":{"name":"Jessica Mimeault","@id":"https:\/\/actionti.com\/#\/schema\/person\/b5564bfa291cc2d396d2cf6a23ce33c8"},"headline":"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants","datePublished":"2023-10-10T13:39:33+00:00","dateModified":"2024-05-28T12:29:05+00:00","mainEntityOfPage":{"@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/"},"wordCount":775,"publisher":{"@id":"https:\/\/actionti.com\/#organization"},"image":{"@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#primaryimage"},"thumbnailUrl":"https:\/\/actionti.com\/wp-content\/uploads\/2023\/10\/GoSecure-JIQ-1200x900-1.png","articleSection":["Contenu partenaire"],"inLanguage":"en-CA"},{"@type":"WebPage","@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/","url":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/","name":"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants | R\u00e9seau Action TI","isPartOf":{"@id":"https:\/\/actionti.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#primaryimage"},"image":{"@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#primaryimage"},"thumbnailUrl":"https:\/\/actionti.com\/wp-content\/uploads\/2023\/10\/GoSecure-JIQ-1200x900-1.png","datePublished":"2023-10-10T13:39:33+00:00","dateModified":"2024-05-28T12:29:05+00:00","breadcrumb":{"@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#breadcrumb"},"inLanguage":"en-CA","potentialAction":[{"@type":"ReadAction","target":["https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/"]}]},{"@type":"ImageObject","inLanguage":"en-CA","@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#primaryimage","url":"https:\/\/actionti.com\/wp-content\/uploads\/2023\/10\/GoSecure-JIQ-1200x900-1.png","contentUrl":"https:\/\/actionti.com\/wp-content\/uploads\/2023\/10\/GoSecure-JIQ-1200x900-1.png","width":1200,"height":900},{"@type":"BreadcrumbList","@id":"https:\/\/actionti.com\/publications\/comment-une-surveillance-rdp-inegalee-revele-les-techniques-des-attaquants\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/actionti.com\/en\/"},{"@type":"ListItem","position":2,"name":"Comment une surveillance RDP in\u00e9gal\u00e9e r\u00e9v\u00e8le les techniques des attaquants"}]},{"@type":"WebSite","@id":"https:\/\/actionti.com\/#website","url":"https:\/\/actionti.com\/","name":"R\u00e9seau Action TI","description":"Regroupement des professionnels en technologies de l\u2019information (TI)","publisher":{"@id":"https:\/\/actionti.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/actionti.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-CA"},{"@type":"Organization","@id":"https:\/\/actionti.com\/#organization","name":"R\u00e9seau Action TI","url":"https:\/\/actionti.com\/","logo":{"@type":"ImageObject","inLanguage":"en-CA","@id":"https:\/\/actionti.com\/#\/schema\/logo\/image\/","url":"http:\/\/actionti.com\/wp-content\/uploads\/2021\/01\/Action-TI-RGB-2-couleurs.png","contentUrl":"http:\/\/actionti.com\/wp-content\/uploads\/2021\/01\/Action-TI-RGB-2-couleurs.png","width":4501,"height":4501,"caption":"R\u00e9seau Action TI"},"image":{"@id":"https:\/\/actionti.com\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/actionti.com\/#\/schema\/person\/b5564bfa291cc2d396d2cf6a23ce33c8","name":"Jessica Mimeault","url":"https:\/\/actionti.com\/en\/publications\/author\/jessica-mimeault\/"}]}},"_links":{"self":[{"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/posts\/323910","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/users\/29563"}],"replies":[{"embeddable":true,"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/comments?post=323910"}],"version-history":[{"count":5,"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/posts\/323910\/revisions"}],"predecessor-version":[{"id":323932,"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/posts\/323910\/revisions\/323932"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/media\/323917"}],"wp:attachment":[{"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/media?parent=323910"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/actionti.com\/en\/wp-json\/wp\/v2\/categories?post=323910"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}