One Day Sec

What is the main use case for establishing tunnels using Remote Desktop Protocol?

The main use case is when only one Windows server's remote desktop is accessible due to firewall restrictions, and an attacker wants to use that server as a pivot to access the internal network. By leveraging RDP's virtual channels or file sharing, they can tunnel traffic through the RDP connection, similar to Bypassing firewall using IIS port sharing feature but with RDP as the carrier.
RDP tunnelingpivotfirewall bypassvirtual channels

Browse all Q&A →