• Platformchevron right
  • Solutionschevron right
  • Modern NDRchevron right
  • Resourceschevron right
  • Companychevron right

DETECTION OVERVIEW

New Telnet Activity

Risk Factors

While the Telnet protocol is an older and vulnerable protocol, it is often enabled by default. Data is sent over the Telnet protocol as plaintext, which increases the risk of exposing passwords to attackers and leading to further exploits of higher-value assets.

The system might change the risk score for this detection.

Kill Chain

Caution

Risk Score

Detection diagram
Next in Caution: Non-standard SSH Port

Attack Background

N/A

Mitigation Options

Disable Telnet unless required

Configure a firewall to block untrusted IP addresses from accessing devices that have Telnet enabled

Implement strict access controls to devices that have Telnet enabled

What else can RevealX do for you?