Windows Server Security Vulnerability Assessment

Job ID: 39679915

Budget: ₹600 – ₹1,500 INR

I am seeking an experienced ethical hacker/penetration tester to assess the security of my Windows Server, which is accessible via RDP. The project will include:

Objectives:
Test access without credentials:

Attempt to identify and exploit any vulnerabilities that could provide unauthorized access to the server without username and password.

Test access with admin credentials:

I will provide RDP IP, username, and password.

After logging in, an additional 2-step verification (PIN) is required. I want to verify if it is possible to bypass this second layer and gain full access, even with admin credentials.

Requirements:
Provide a detailed report of all findings, vulnerabilities, and recommended remediations.

Suggest ways to strengthen the server’s security, especially against RDP attacks and 2FA bypass attempts.

Advise on best practices for hardening Windows Server access.

Info:
Windows Server (specify version, e.g., 2016/2019/2022)

RDP with admin credentials and 2-step verification (specify the 2FA solution if possible)

Please detail your experience with Windows Server penetration testing and 2FA security.

Questions to answer in your proposal:
Have you tested/bypassed Windows RDP with 2FA before?

What tools/methods will you use?