Troubleshooting Syspeace

An interesting support case came to our attention recently. A customer claimed that Syspeace wouldn’t block according to the rules. The bruteforce attacks would continue , even after they should have been blocked. We checked the ususal culprits (verify that the .Net is fully patched, that the customer is running the latest Syspeace version, verify […]

Read more

Troubleshooting Syspeace and why source IP addresses aren’t always resolved by Windowsserver in eventid 4625

Syspeace monitors failed logins attempts on Windows systems Sometimes though, the event (Eventid 4625 or eventid 529 and a few other security events we monitor) doesn’t actually contain the source IP address thus leaving Syspeace with nothing to block. If there’s no IP address to block, it can’t be put into to the Windows Frewall […]

Read more

How to battle slowgrind #bruteforce attacks against #msexchange #windows server #remotedesktop #sharepoint with #Syspeace

Syspeace automatically blocks attacks that occur according to the rules. The default rule is that if an intruder fails to login more than 5 times within 30 minutes, the intruders IP address is blocked, tracked and reported for 2 hours and simply is denied any access to the server. A new trend though has emerged […]

Read more

#infosec #cloudsecurity #Syspeace – Host Intrusion Prevention Software on an external #Windowsserver #VPS in the #Cloud #IaaS #PaaS

Syspeace – Host Intrusion Prevention Software on an external Windows Server VPS in the Cloud There are many variations of IaaS / PaaS / Cloud services. Some are public clouds and some are hybrids and some are private. There’s also the possibility rent an external VPS and use as a server at quite a few […]

Read more

#infosec #cloudsecurity #Syspeace – Host Intrusion Prevention Software on an external #Windowsserver #VPS in the #Cloud #IaaS #PaaS

Syspeace – Host Intrusion Prevention Software on an external Windows Server VPS in the Cloud There are many variations of IaaS / PaaS / Cloud services. Some are public clouds and some are hybrids and some are private. There’s also the possibility rent an external VPS and use as a server at quite a few […]

Read more

#infosec #WordPress Syspeace WordPress Reporter – Brute force protection detector for WordPress #owasp #security

Syspeace WordPress Reporter – Brute force protection detector for WordPress by Syspeace What is the Syspeace WordPress Reporter? Syspeace WordPress Reporter is used to collect relevant login data from your WordPress pages login functionality. The collected data is sent to the Syspeace Web Detector which provides Syspeace with login attempt information. This means that for […]

Read more

#Infosec When and where is Syspeace useful for intrusion prevention ?

In what scenarios Syspeace is useful for preventing brute force attacks? Do I need it if I’ve only got a Windows workstation? Syspeace is an intrusion prevention software mainly targeted for Windows Servers, SBS Server, RDS TS Servers, RDWeb, Sharepoint Servers, SQL Server, Exchange, Sharepoint, Citrix and so on but it will also run on […]

Read more

1 2 3
top