The National Information Technology Development Agency (NITDA) has issued a cybersecurity alert over multiple critical vulnerabilities affecting Microsoft Windows Remote Desktop Protocol (RDP), urging users and system administrators to take immediate steps to secure vulnerable systems.

According to the agency, the identified flaws affect components associated with Remote Desktop and could expose affected systems to a range of cyber threats if successfully exploited. Attackers could potentially use the vulnerabilities to gain unauthorised access to sensitive information, bypass existing security protections, escalate their privileges or execute malicious code on compromised devices.

The warning highlights the importance of maintaining updated operating systems, particularly as Remote Desktop services are commonly used by organisations and individuals to access computers remotely. Systems that are left unpatched could present opportunities for attackers to gain a foothold and potentially compromise other resources connected to the network.

NITDA advised users and system administrators to install available Microsoft security updates and ensure that Windows systems are regularly updated with the latest patches.

The agency also encouraged organisations to strengthen their overall cybersecurity posture by following recommended security practices, including monitoring remote-access services, limiting unnecessary exposure and maintaining appropriate security controls.

The advisory underscores the need for users to treat software updates as an important part of routine cybersecurity maintenance. Promptly applying security patches can help reduce the window of opportunity for attackers seeking to exploit known vulnerabilities.

NITDA urged affected users and administrators to take the necessary precautions and keep their systems up to date to minimise the risk of exploitation and protect sensitive data and digital resources.