Watch out for Password Spraying Attacks…

by

August 13, 2019

The Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning to Network Administrators regarding an increase in Password Spraying attacks.

What is a Password Spraying Attack?

Pretty much exactly what it sounds like. It’s a brute-force style attack where a would-be attacker literally sprays passwords at a user accounts until one sticks.

By using one password at a time across multiple accounts the attacker is usually able to remain undetected.

Typical Targets

Attackers go after a wide array of targets including, but not limited to:

  • Webmail
  • Remote Desktop Software
  • Active Directory Federated Services
  • Cloud Services (i.e. Office365)

What to Look For

  • A high number of authentication attempts within a set period of time
  • Large numbers of bad usernames
  • High number of account lockouts within a set period of time

How to Stop a Password Spraying Attack

  • Implement multifactor authentication
  • Use complex passwords
  • Implement a strong password reset policy
  • Increase alerting and monitoring

Like our blog? Subscribe using the CTA in the upper right hand corner of this page. Feel like sharing your thoughts with us? Use the comment section below.

Don’t forget to follow us on LinkedIn and Twitter

Carl Keyser is the Content Manager at Integris.

Keep reading

Bridging the Gap between Automation and Innovation

Bridging the Gap between Automation and Innovation

Automation and Innovation. Some people might say those two words cancel each other out. Yet, I believe these two concepts can create capacity for each other—if your business leverages the free time automation creates to foster innovation. Automation can be...

Hot New Ways to Customize Microsoft Teams for Your Industry in 2024

Hot New Ways to Customize Microsoft Teams for Your Industry in 2024

Nearly everyone with Microsoft Teams knows what a tremendous tool it is for chat, document sharing, and meetings between individuals or large groups. We’re used to using the tool as it appears on our screens daily. But did you know hundreds of integrations available...

Why Is My Laptop Draining So Fast?

Why Is My Laptop Draining So Fast?

Before You Replace Your Laptop Battery, Try These Fixes First Stuck with a laptop that’s running out way before it’s standard 8-10 hours of run time? Don't throw it out just yet.  Try these quick fixes to extend its life: Reduce your screen brightness If possible,...