# BruteFence > BruteFence is professional protection software that defends Windows computers from Remote Desktop password guessing attempts through automatic attacker blocking, continuous system monitoring (Event ID 4625), and honeypot traps. Setup takes 5 minutes. Developed by InfoTipp Rendszerház Kft. since 2002. Key facts: Windows Server 2016+ / Windows 10/11 Pro, commercial license with 7-day free trial, no telemetry, GDPR-friendly, EV code-signed installer (Certum CA, valid until Feb 2027), current version 3.2.7 (2026-06-14). ## Documentation - [Homepage](https://brutefence.com/en): Product overview, features, and free trial download - [About](https://brutefence.com/en/about): InfoTipp Rendszerház Kft., company background since 2002 - [Security](https://brutefence.com/en/security): Local logging, no telemetry, IP hashing, DPAPI encryption, SHA256 verification - [Changelog](https://brutefence.com/en/changelog): Full version history with release notes - [Privacy Policy](https://brutefence.com/en/privacy): Data handling and GDPR posture - [Terms of Service](https://brutefence.com/en/terms): License terms and warranty disclaimer - [Contact](https://brutefence.com/en/contact): Support email and business contact ## Blog (English) - [What Is an RDP Brute Force Attack? A Plain-English Guide](https://brutefence.com/en/blog/what-is-rdp-brute-force-attack): How RDP brute force attacks work, why small businesses are targeted, real damage stats from Sophos/Verizon/CrowdStrike, common myths, and practical protection steps - [Is It Safe to Expose RDP to the Internet?](https://brutefence.com/en/blog/is-it-safe-to-expose-rdp-to-the-internet): Sophos honeypot data (2M+ attacks in 15 days), CISA/Microsoft guidance, 8-step hardening checklist, and VPN/gateway alternatives - [Event ID 4625: What It Means and What to Do About It](https://brutefence.com/en/blog/event-id-4625-what-it-means): Distinguishing normal failures from brute force, Logon Type and Status code reference, PowerShell diagnostics, response playbook - [Windows Server Security Checklist for 2026: 10 Essential Steps](https://brutefence.com/en/blog/windows-server-security-checklist-2026): Practical hardening checklist covering patching, RDP, NIST 800-63B Rev 4 passwords, firewall, SMB signing, Event IDs to monitor, 3-2-1-1-0 backup - [Why a Strong Password Is Not Enough to Protect Your Server](https://brutefence.com/en/blog/why-strong-password-is-not-enough): Why leaked password lists, credential stuffing, and attack volume make automatic IP blocking essential — includes free BruteFence Checker tool - [How Do You Know If Your Server Is Under Attack Right Now?](https://brutefence.com/en/blog/is-your-server-under-attack): 2-minute method using Windows Event Viewer (Event ID 4625) to detect ongoing intrusion attempts - [How Much CPU Does a Brute Force Attack Consume?](https://brutefence.com/en/blog/brute-force-cpu-impact): Why password guessing slows down servers and how protection restores performance - [Why Protect Remote Desktop, and Why Use BruteFence?](https://brutefence.com/en/blog/why-protect-remote-desktop): Why Remote Desktop is a prime brute force target and why automatic protection matters - [How Long Does It Take to Crack a Weak Password on RDP?](https://brutefence.com/en/blog/how-long-to-crack-weak-password-rdp): Real RDP cracking math, credential stuffing vs offline hashing, Specops top 10 RDP passwords, why complexity rules fail - [Windows RDP Brute Force Protection in 2026: How It Works](https://brutefence.com/en/blog/rdp-brute-force-protection-2026): Category guide to RDP defense — event log monitoring, honeypot, VPN/zero-trust, MFA, lockout, IP allowlist, with environment-by-environment recommendations - [5 Signs Your Windows Server Is Under an RDP Brute Force Attack](https://brutefence.com/en/blog/5-signs-rdp-brute-force-attack): Symptom-aware diagnostic checklist — Event 4625 floods, LSASS CPU spike, lockouts, new admins, off-hours sessions, with PowerShell verification and tiered action plan - [RDP Security Without a VPN: 5 Situations It's the Only Option](https://brutefence.com/en/blog/rdp-security-without-vpn): Practical playbook for hosting providers, MSPs, contractors, legacy Windows Server, and break-glass access — what works when VPN enforcement isn't possible - [How to Check RDP Brute Force Attacks on Your Server (Free Tool)](https://brutefence.com/en/blog/how-to-check-rdp-brute-force-attacks): Step-by-step tutorial for the free BruteFence Checker — 30-second audit of Windows Event ID 4625 with attacker IPs, top sources, daily breakdown, and how to interpret the volume - [How to Install BruteFence: RDP Protection in 5 Minutes](https://brutefence.com/en/blog/how-to-install-brutefence): Full setup walkthrough — download, install, configure blocking threshold by environment, whitelist your IP, verify in dashboard/firewall/logs, and silent install for multi-server fleet deployment - [NIS2 Remote Access Security: What IT Admins Need to Know](https://brutefence.com/en/blog/nis2-remote-access-security): NIS2 Article 21 MFA and access control requirements for RDP, penalties up to €10M + management liability, transposition status, and a Windows Server compliance checklist - [Windows Firewall RDP Protection: What It Can't Do](https://brutefence.com/en/blog/does-windows-firewall-protect-against-rdp-brute-force): Why the built-in firewall sees packets but not authentication failures, why account lockout is a DoS gift to attackers, and the layered defense (firewall + NLA + lockout + dedicated tool) that closes the gap ## Blog (Hungarian) - [Mi az az RDP brute force támadás?](https://brutefence.com/hu/blog/mi-az-rdp-brute-force-tamadas): RDP brute force támadások működése magyar nyelven - [Biztonságos-e az RDP-t kitenni az internetre?](https://brutefence.com/hu/blog/biztonsagos-e-az-rdp-kitenni-az-internetre): Internet-elérhető RDP kockázatai és védelmi lépések - [Event ID 4625: mit jelent és mit kezdjünk vele](https://brutefence.com/hu/blog/event-id-4625-mit-jelent): Sikertelen bejelentkezések elemzése és válaszlépések - [Windows Server biztonsági checklist 2026](https://brutefence.com/hu/blog/windows-server-biztonsagi-checklist-2026): 10 lépéses hardening checklist Windows Server 2026-ra - [Miért nem elég az erős jelszó a szerver védelméhez](https://brutefence.com/hu/blog/miert-nem-eleg-az-eros-jelszo): Miért szükséges automatikus IP blokkolás az erős jelszó mellé - [Támadnak-e most is a szerveredet?](https://brutefence.com/hu/blog/tamadnak-e-most-is): 2 perces ellenőrzés Windows Eseménynaplóval - [Brute force támadás CPU terhelése](https://brutefence.com/hu/blog/brute-force-cpu-terheles): Hogyan lassítja a szervert a jelszó-próbálkozási támadás - [Miért kell védeni a távoli asztalt?](https://brutefence.com/hu/blog/miert-kell-vedeni-a-tavoli-asztalt): Miért célpont a Remote Desktop és miért fontos az automatikus védelem - [Mennyi ideig tart feltörni egy gyenge jelszót RDP-n?](https://brutefence.com/hu/blog/mennyi-ideig-tart-feltorni-egy-gyenge-jelszot-rdp): RDP jelszó feltörési valóság, credential stuffing, Specops top 10, bonyolultsági szabályok kudarca - [RDP brute force védelem 2026: hogyan működnek az eszközök](https://brutefence.com/hu/blog/rdp-brute-force-vedelem-2026): Kategóriaalapú útmutató az RDP védelemhez — event log, honeypot, VPN, MFA, lockout, IP allowlist, környezet szerinti ajánlások - [5 jel hogy a Windows szervered RDP brute force támadás alatt áll](https://brutefence.com/hu/blog/5-jel-rdp-brute-force-tamadas): Tünet-alapú diagnosztikai checklist — Event 4625 áradat, LSASS CPU csúcs, fiókzárolások, új adminok, éjszakai bejelentkezések, PowerShell ellenőrzéssel és sürgősség szerinti tervvel - [RDP védelem VPN nélkül: 5 helyzet, amikor ez az egyetlen út](https://brutefence.com/hu/blog/rdp-vedelem-vpn-nelkul): Gyakorlati playbook hosting szolgáltatóknak, MSP-knek, szerződéses partnereknek, legacy Windows Servernek, vésztartalék-hozzáféréshez — mi működik, ha VPN-előírás nem opció - [Hogyan ellenőrizd, hogy támadják-e az RDP szervered (ingyenes)](https://brutefence.com/hu/blog/hogyan-ellenorizd-rdp-brute-force-tamadasokat): Lépésről lépésre útmutató az ingyenes BruteFence Checker-hez — 30 másodperces audit a Windows Event ID 4625-höz, támadó IP-kkel, top forrásokkal, napi bontással és értelmezéssel - [Hogyan telepítsd a BruteFence-t: RDP védelem 5 perc alatt](https://brutefence.com/hu/blog/hogyan-telepitsd-a-brutefence-t): Teljes telepítési útmutató — letöltés, telepítés, küszöb-konfiguráció környezet szerint, whitelist, ellenőrzés (műszerfal/tűzfal/naplók) és csendes tömeges telepítés - [NIS2 és távoli hozzáférés: mit kell tudnod IT adminként 2026-ban](https://brutefence.com/hu/blog/nis2-tavoli-hozzaferes-biztonsag): A NIS2 21. cikk MFA és hozzáférés-vezérlési követelményei RDP-re, max. 10M€ bírság + személyes vezetői felelősség, átültetési státusz és gyakorlati Windows Server checklist - [Véd-e a Windows tűzfal az RDP brute force ellen?](https://brutefence.com/hu/blog/vedi-e-a-windows-tuzfal-az-rdp-brute-force-ellen): Miért lát csomagokat a tűzfal, de nem hitelesítési hibákat, miért DoS-eszközt ad a fiókzárolás, és a rétegelt védelem (tűzfal + NLA + lockout + dedikált eszköz), ami a rést betölti ## Blog (German) - [Was ist ein RDP-Brute-Force-Angriff?](https://brutefence.com/de/blog/was-ist-ein-rdp-brute-force-angriff): Funktionsweise von RDP-Brute-Force-Angriffen auf Deutsch - [Ist es sicher, RDP dem Internet auszusetzen?](https://brutefence.com/de/blog/ist-es-sicher-rdp-dem-internet-auszusetzen): Risiken eines im Internet erreichbaren RDP und Schutzmaßnahmen - [Event ID 4625: Was es bedeutet und was zu tun ist](https://brutefence.com/de/blog/event-id-4625-was-bedeutet-es): Analyse fehlgeschlagener Anmeldungen und Reaktionsschritte - [Windows Server Sicherheits-Checkliste 2026](https://brutefence.com/de/blog/windows-server-sicherheits-checkliste-2026): 10-stufige Härtungs-Checkliste für Windows Server 2026 - [Warum ein starkes Passwort nicht reicht](https://brutefence.com/de/blog/warum-ein-starkes-passwort-nicht-reicht): Warum automatisches IP-Blocking neben starken Passwörtern nötig ist - [Wird Ihr Server gerade angegriffen?](https://brutefence.com/de/blog/wird-ihr-server-angegriffen): 2-Minuten-Methode mit Windows-Ereignisanzeige - [Brute-Force-Angriff CPU-Belastung](https://brutefence.com/de/blog/brute-force-cpu-belastung): Wie Passwortraten die Server-Performance beeinträchtigt - [Warum Remote Desktop schützen?](https://brutefence.com/de/blog/warum-remote-desktop-schuetzen): Warum Remote Desktop ein Hauptziel ist und automatischer Schutz wichtig ist - [Wie lange dauert es, ein schwaches Passwort per RDP zu knacken?](https://brutefence.com/de/blog/wie-lange-passwort-knacken-rdp): RDP-Passwort-Knack-Realität, Credential Stuffing, Specops Top 10, warum Komplexitätsregeln versagen - [RDP Brute Force Schutz 2026: Wie diese Tools funktionieren](https://brutefence.com/de/blog/rdp-brute-force-schutz-2026): Kategorie-Leitfaden zum RDP-Schutz — Event-Log-Monitoring, Honeypot, VPN, MFA, Lockout, IP-Allowlist, mit Umgebungsempfehlungen - [5 Anzeichen dass Ihr Windows Server unter RDP-Brute-Force steht](https://brutefence.com/de/blog/5-anzeichen-rdp-brute-force-angriff): Symptom-basierte Diagnose-Checkliste — Event-4625-Flut, LSASS-CPU-Spitze, Sperren, neue Admins, Off-Hours-Sitzungen, mit PowerShell-Verifikation und gestaffeltem Aktionsplan - [RDP-Schutz ohne VPN: 5 Situationen, in denen es alternativlos ist](https://brutefence.com/de/blog/rdp-schutz-ohne-vpn): Praktischer Playbook für Hoster, MSPs, Freelancer, Legacy-Windows-Server, Break-Glass-Zugang — was funktioniert, wenn VPN-Pflicht nicht möglich ist - [Wird Ihr RDP-Server angegriffen? Kostenloses Audit-Tool](https://brutefence.com/de/blog/wie-rdp-brute-force-angriffe-pruefen): Schritt-für-Schritt-Anleitung zum kostenlosen BruteFence Checker — 30-Sekunden-Audit für Windows Event ID 4625 mit Angreifer-IPs, Top-Quellen, Tagesaufschlüsselung und Interpretation - [BruteFence installieren: RDP-Schutz in 5 Minuten einrichten](https://brutefence.com/de/blog/brutefence-installieren-anleitung): Vollständige Setup-Anleitung — Download, Installation, Schwellenwert-Konfiguration nach Umgebung, Whitelist, Verifizierung (Dashboard/Firewall/Logs) und stille Mehrserver-Bereitstellung - [NIS2 und Fernzugriff: Was IT-Administratoren 2026 wissen müssen](https://brutefence.com/de/blog/nis2-fernzugriff-sicherheit): NIS2 Artikel 21 MFA- und Zugangskontrollpflichten für RDP, Bußgelder bis 10 Mio. € plus persönliche Managerhaftung, Umsetzungsstatus und Windows-Server-Compliance-Checkliste - [Schützt Windows Firewall vor RDP-Brute-Force?](https://brutefence.com/de/blog/schuetzt-windows-firewall-vor-rdp-brute-force): Warum die integrierte Firewall Pakete sieht, aber keine Authentifizierungsfehler, warum Kontosperre Angreifern ein DoS-Werkzeug schenkt, und die gestaffelte Verteidigung (Firewall + NLA + Sperre + dediziertes Tool), die die Lücke schließt ## Resources - [Full documentation (llms-full.txt)](https://brutefence.com/llms-full.txt): Comprehensive AI/LLM-optimized documentation including features, technical details, FAQ, and release history - [Sitemap](https://brutefence.com/sitemap.xml): Complete URL index for all locales - [RSS Feed](https://brutefence.com/rss.xml): Latest blog articles ## Optional - [BruteFence Checker (GitHub)](https://github.com/bohemtucsok/brutefence-checker): Free open-source PowerShell tool to scan your own RDP exposure - [Support](mailto:support@brutefence.com): Email support, 24-48h response, EN/HU/DE