Cisco Warns of Global Surge in Brute-Force Attacks Targeting VPN and SSH Services

What are Attacks?

attacks are a type of that involves trying every possible combination of characters until the right one is found. In the case of password cracking, the attacker tries every possible password until they find the correct one. Hackers commonly use attacks to gain unauthorized access to systems, steal sensitive information, and launch other attacks.

Attacks on VPN and SSH Services

Virtual Private Networks (VPNs) and Secure Shell (SSH) are remote system access protocols commonly used. attacks on these services involve repeatedly trying different username and password combinations until the correct one is found. Once the attacker gains access to the system, they can steal sensitive data, install malware, and carry out other malicious activities.

The Global Surge in Attacks

Since at least March 18, 2024, researchers from Cisco Talos have observed a significant increase in attacks targeting VPN and SSH services. These attacks are not limited to any specific region or industry. They are being carried out by threat actors using TOR exit nodes and other anonymizing tunnels and proxies. According to Cisco Talos, attackers use many tools and techniques, including password dictionaries, brute-force scripts, and automation tools.

How to Protect Your Systems from Brute-Force Attacks

Following the best password management practices is essential to protect your systems from brute-force attacks. This includes using strong passwords, enforcing policies, and implementing . Additionally, you can use and prevention systems to monitor your network for suspicious activity. Finally, keeping your systems up-to-date with the latest security patches and updates is essential.

