Get RDP login failed password from "Remote Desktop Services"
Budget: $250 – $750 USD
Project Title: Retrieve RDP Login Failed Password from "Remote Desktop Services"
Description:
I am a security engineer.
I am currently have a project of honeypot with Remote Desktop Services.
When hackers attempt bruteforce attack to my RDP honeypot, I want to get all of their passwords that failed to login. There are some existing honeypots about RDP, but recent attack can through all of them(rdpy,pyrdp,Heralding,Dionaea...etc). Mimikatz can only gather succesful login.
Hackers can detect honeypot itself and doesn't attack to it. So I have to have program to hook to "%WINDIR%\system32\termsrv.dll" and retrieve all failed passwords from hooking API or lsass on Windows.
- Out out is TSV log file of datetime,user,password,(optional)ip address
- Works on Windows Server 2019.
- Not on network capturing. Not on FreeRDP or other alternative RDP server.
- Not use other honeypot(tpot,rdpy,pyrdp...etc)
- Environment on NLA(Network Level Authentication)
I am looking for a skilled freelancer who can assist me in retrieving the login failed password from "Remote Desktop Services".
Skills and Experience:
- Strong expertise in Remote Desktop Services
- Extensive experience in Windows credential
-- Familiarity with security protocols and methods for password retrieval
- Ability to work with honeypot systems
Application Requirements:
- Applicants should provide past work examples showcasing their expertise and success in attempting failed passwords retrieving
- Detailed project proposals outlining their approach and methodology for retrieving the login failed password
Timeframe:
I am seeking to resolve this issue within a week.
Description:
I am a security engineer.
I am currently have a project of honeypot with Remote Desktop Services.
When hackers attempt bruteforce attack to my RDP honeypot, I want to get all of their passwords that failed to login. There are some existing honeypots about RDP, but recent attack can through all of them(rdpy,pyrdp,Heralding,Dionaea...etc). Mimikatz can only gather succesful login.
Hackers can detect honeypot itself and doesn't attack to it. So I have to have program to hook to "%WINDIR%\system32\termsrv.dll" and retrieve all failed passwords from hooking API or lsass on Windows.
- Out out is TSV log file of datetime,user,password,(optional)ip address
- Works on Windows Server 2019.
- Not on network capturing. Not on FreeRDP or other alternative RDP server.
- Not use other honeypot(tpot,rdpy,pyrdp...etc)
- Environment on NLA(Network Level Authentication)
I am looking for a skilled freelancer who can assist me in retrieving the login failed password from "Remote Desktop Services".
Skills and Experience:
- Strong expertise in Remote Desktop Services
- Extensive experience in Windows credential
-- Familiarity with security protocols and methods for password retrieval
- Ability to work with honeypot systems
Application Requirements:
- Applicants should provide past work examples showcasing their expertise and success in attempting failed passwords retrieving
- Detailed project proposals outlining their approach and methodology for retrieving the login failed password
Timeframe:
I am seeking to resolve this issue within a week.