RDP shop explained

An RDP shop is a website where access to hacked computers is sold to cybercriminals.

The computers may be acquired via scanning the web for open Remote Desktop Protocol connections and brute-forcing passwords.[1] High-value ransomware targets are sometimes available such as airports.[2] Access to a compromised machine retails from $3 to $19 depending on automatically gathered system and network metrics using a standardised back door.[3]

Russian sites such as xDedic[4] do not sell access to machines within the former Soviet nations.[5]

Commercial RDP Services

In addition to illegal RDP shops, legitimate services offer remote desktop access for various purposes such as business operations, remote work, and server management. Some of these services include:

Notes and References

  1. News: Olenick . Doug . Dark Web shops selling RDP connections on the cheap . 27 August 2018 . 11 July 2018.
  2. News: International Airport Review . Hackers can buy access to a major airport's security systems for just $10 . 27 August 2018 . 17 July 2018.
  3. News: THE ASIAN AGE . Organisations vulnerable to cheap RDP attacks: Report . 27 August 2018 . 16 Jul 2018.
  4. News: Guerrilla. American. xDedic is Back in Business on the Dark Web. https://archive.today/20160719095856/https://www.deepdotweb.com/2016/07/19/xdedic-back-business-dark-web/. dead. 19 July 2016. 22 December 2016. 19 July 2016.
  5. News: SCUK . Russian underground shop selling RDP servers for £11 or less . 27 August 2018 . 25 October 2017.