akkaorig / ezwinban Goto Github PK
View Code? Open in Web Editor NEWThis project forked from neil-sabol/ezwinban
Builds on and automates Nathan Studebaker's brute force attack detection and blacklisting on Windows Server with powershell script. See: https://blog.watchpointdata.com/rdp-brute-force-attack-detection-and-blacklisting-with-powershell. Like Fail2Ban or DenyHosts but for Microsoft Windows. Bans, blocks and blacklists IP addresses with multiple failed login attempts to Microsoft services (that log EventCode 4740).