Agent Skills: detecting-rdp-brute-force-attacks

Detect RDP brute force attacks by analyzing Windows Security Event Logs for failed authentication patterns (Event ID 4625), successful logons after failures (Event ID 4624), NLA failures, and source IP frequency analysis.

UncategorizedID: plurigrid/asi/detecting-rdp-brute-force-attacks

Install this agent skill to your local

pnpm dlx add-skill https://github.com/plurigrid/asi/detecting-rdp-brute-force-attacks

Skill Files

Browse the full folder contents for detecting-rdp-brute-force-attacks.

Download Skill

Loading file tree…

Select a file to preview its contents.