A botnet is brute-forcing over 1.5 million RDP servers all over the world

CERT-LatestNews Malware ThreatsCybercrime

, the researcher says the botnet has been seen attacking 1,596,571 RDP endpoints, a number that will most likely rise in the coming days. Named GoldBrute, the botnet works as follows:

Botnet brute-forces and gain access to a Windows system via RDP. Downloads a ZIP file with the GoldBrute malware code.