Todos los tutoriales

How to Secure Remote Access with Iperius One and Prevent Scams


To protect remote control of your PC with Iperius One , configure Iperius Remote security options on managed devices: enable 2FA, require confirmation before attended connections, use unique passwords, limit mouse, keyboard, clipboard and file transfer and apply IP or ID filters to the most critical computers.

From the Iperius One dashboard, you can check if a device is available for remote access, initiate a connection, and monitor existing or active sessions. Actual remote desktop protection is configured on the device through the Iperius Remote settings.

Why should remote PC control be protected?

 

Remote desktop allows you to view and control a computer from another device. It’s a useful feature for technical support, maintenance, remote working, and server administration, but it can also become a privileged access point for cybercriminals.

During a remote control session, the connecter may be able to:

  • view confidential documents and information
  • control mouse and keyboard
  • copy texts via the clipboard
  • transfer files in both directions
  • change system settings
  • install or remove programs
  • access already open applications
  • reach other resources on the company network

For this reason, simply installing the software and setting a password isn’t enough. You need to protect each device and carefully monitor every connection request.

How do remote desktop scams work?

 

In fake tech support scams, the criminal doesn’t necessarily attempt to hack the computer with sophisticated tools. Instead, they try to convince the victim to personally authorize the connection.

Contact can be made via:

  • unexpected phone call
  • email di phishing
  • SMS or instant message
  • false warning displayed in browser
  • unsolicited assistance request
  • fake message from the bank or a known supplier

The scammer may pose as an IT technician, bank employee, online service operator, or government representative. They then ask the victim to open the remote control software and provide their ID, password, or connection code.

The most common false motivations

The criminal may argue that:

  • The computer contains a virus
  • the account has been compromised
  • an urgent update needs to be installed
  • a suspicious payment has been detected
  • a refund must be processed
  • the service will be blocked within a few minutes
  • You need to verify your bank account

The goal is to create fear and urgency, preventing the victim from calmly verifying the identity of the interlocutor.

How to recognize a suspicious remote access request

 

Do not accept the connection when:

  • you did not request assistance
  • the call or message arrives unexpectedly
  • the interlocutor forces you to act immediately
  • you receive a link or code from an unknown contact
  • you are asked to disable antivirus or firewall
  • the alleged technician wants to open the bank’s website
  • you are asked for your password, PIN or OTP codes
  • you are asked for payment in cryptocurrencies or gift cards
  • the caller does not want to be called back via an official number
  • urges you not to inform colleagues, family members, or IT managers

Rule of thumb: Only accept a remote control session if you’ve personally requested assistance and can verify the technician’s identity through an official channel.

What protections does Iperius Remote offer?

Iperius Remote integrates different levels of security to protect the desktop, the commands sent and the data transferred during the session.

Protection Function Reduced risk
Crittografia end-to-end Protects video, audio, chat and files transmitted during the session. Interception of data in transit.
Device 2FA It requires an OTP code in addition to the normal password. Access with stolen or guessed password.
Confirm connection Requires acceptance by the user present in front of the PC. Silent connections on manned workstations.
IP and ID Filter Allow only certain connection sources. Attempts from unknown networks or computers.
Granular permissions Restrict mouse, keyboard, clipboard, and file transfer. Unnecessary operations during service.
Random password Generate a new password when the client is reopened or reconnected. Reusing an old password occasionally.
Scam Alert Warn the user of risks before an unknown connection. Scams based on fake technical support.

How to set up secure remote control

 

1. Download the software only from the official website

Use only the official Iperius Remote download or the package generated by your Iperius One platform.

Avoid files received via email, chat, compressed archives, or unverified websites. Before running, you can also check the application’s digital signature to ensure the file hasn’t been replaced or modified.

2. Enable 2FA on the remote computer

2FA protects a single device by requiring a temporary code in addition to the connection password.

To configure it:

  1. open Iperius Remote on the PC to be protected;
  2. access security settings;
  3. select the option to enable 2FA;
  4. scan the QR code with a compatible OTP app;
  5. enter the required temporary code;
  6. save configuration;
  7. run a test connection.

Recommended configuration: Enable 2FA especially on servers, administrative computers, workstations with sensitive data, and devices configured for unattended access.

3. Choose between attended and unattended access

The security configuration depends on how the computer is to be used.

Mode Recommended configuration
Mandated device Mandatory confirmation, random password, and
user-chosen permissions for each session.
Unattended device One-time fixed password, 2FA, IP/ID filters, automatic
screen lock, and frequent session monitoring.

4. Request confirmation on manned stations

On computers used by a person on a daily basis, enable the confirmation dialog for incoming connections.

Before accepting, the user can review the request and decide which functions to allow:

  • screen display;
  • mouse and keyboard control;
  • using the clipboard;
  • copy and paste;
  • file transfer.

When confirmation is mandatory, the connection cannot be initiated if no one is physically present to authorize it.

5. Set up different passwords

Iperius Remote can use different passwords to protect different functions and contexts.

For correct configuration:

  • use random password for occasional sessions;
  • set a fixed password for unattended access only;
  • do not use the same password on multiple computers;
  • do not reuse your email or Windows password;
  • protect client settings separately;
  • keep fixed passwords in a password manager;
  • Immediately change a password given to the wrong person.

6. Restrict access with IP and ID filters

On critical servers and computers you can create a whitelist of authorized IP addresses or Iperius IDs.

The device will then be able to accept connections only:

  • from the office’s public IP address;
  • from the network used for assistance;
  • from a specific technical computer;
  • from one or more known Iperius IDs;
  • from a pre-authorized range of addresses.

A request from a source not included in the whitelist is blocked even if the connecting user knows the password.

Warning: Before activating very restrictive filters, check the IPs and IDs entered. Incorrect configuration could prevent even legitimate connections.

7. Grant only necessary permissions

Not all sessions require full control of your PC.

For a simple check, you can only allow viewing of the screen and block:

  • input da mouse
  • keyboard input
  • clipboard
  • copy and paste
  • file transfer

File transfer should only be enabled when you need to send or retrieve documents for the procedure.

8. Protect the unattended session

Unattended access allows you to connect without local confirmation and is useful for servers, nightly maintenance, and computers located in remote locations.

Precisely because it does not require the presence of a person, it must use more rigorous protections:

  • unique and long password
  • 2FA on the device
  • IP or ID filter
  • automatic screen lock at the end of the session
  • regular client updates
  • remote session control
  • Check the status of your antivirus and firewall

9. Use Privacy Mode when necessary

Privacy Mode allows you to black out the remote computer’s screen during certain unattended sessions. Blocking local inputs also prevents anyone physically present from interfering with the activity.

This mode can be useful when:

  • confidential information is displayed
  • maintenance is performed at a publicly accessible workstation
  • it is necessary to avoid local interventions during the operation
  • we work on a shared system

Use it only when it is consistent with company procedures and the information provided to data subjects.

10. Check sessions from Iperius One

Iperius One allows you to start remote control from the device list and consult the activities in the Remote Access section .

From the dashboard you can check:

  • if the device is online
  • if Iperius Remote is available
  • if the computer is ready to connect
  • date and time of sessions
  • local computer and remote computer
  • duration of completed connections
  • sessions still active
  • IP addresses and IDs associated with the connection

Instantly audit a session when the device, time, or connection source does not match an expected action.

Learn more:
see the guide
How to manage remote access with Iperius One

to start a connection and view sessions and statistics.

11. Keep your software and operating system up to date

 

Use updated versions of Iperius Remote, the Iperius One Agent, and the operating system.

Also check that:

  • security patches are installed
  • your antivirus is active and up-to-date
  • the firewall is enabled
  • there are no unknown programs
  • remote access settings have not been changed
  • the device does not show any suspicious events or processes

What to do if a session seems suspicious

 

1. Stop remote control immediately

Close the client session. If you can’t do this, temporarily disconnect your computer from Ethernet or Wi-Fi.

2. Don’t open sensitive applications

Do not access:

  • home banking
  • company email
  • password managers
  • administrative portals
  • payment services
  • confidential documents

3. Change passwords from a secure device

Change the password used for remote control and any credentials that may have been displayed or entered during the session.

It also enables 2FA when it wasn’t already active.

4. Check the Iperius Remote configuration

Verify that the following have not been modified:

  • unattended access password
  • 2FA settings
  • IP or ID filter
  • mouse, keyboard, and file transfer permissions
  • automatic service startup
  • client security settings

5. Check your computer

Monitor installed programs, running processes, startup items, antivirus, firewall, local accounts, and system events.

When it is not possible to determine what was done during the session, isolate the device and request a thorough technical inspection.

6. Check recorded sessions

Consult the Remote Access section of Iperius One and keep track of the available information, such as:

  • connection date and time
  • duration
  • source and destination computers
  • Remote ID
  • available IP addresses
  • any notes or references

7. Contact your bank when financial data is involved

If you entered bank credentials, card numbers, or payment codes during the session, contact your bank immediately through official channels.

8. Keep evidence of the accident

Do not delete:

  • emails and messages received
  • telephone numbers
  • links and connection codes
  • screenshot
  • session logs
  • names of downloaded files
  • communication times

Conclusion

Protecting remote PC control requires multiple layers of security. The password must be accompanied by 2FA, connection confirmation, IP or ID filters, and limitations on the functions available during the session.

Iperius Remote protects communications with end-to-end encryption and allows you to configure each computer separately. Iperius One lets you check device status, initiate remote access, and control sessions from a centralized dashboard.

Technical protections must be accompanied by a simple rule: never accept remote control from an unknown person or from unsolicited assistance.

Secure remote control of your devices

Access computers from Iperius One and configure 2FA, connection confirmation, and security filters with Iperius Remote.

Open Iperius One

Discover the security of Iperius Remote

Frequently Asked Questions about Remote Control Security

How can I secure my PC remote control?

Enable 2FA, use unique passwords, require confirmation
at attended workstations, configure IP or ID filters, and limit
mouse, keyboard, clipboard, and file transfers.

What is 2FA on the remote device for?

2FA requires a temporary code in addition to the password.
Knowing or stealing the password is therefore not enough
to complete the connection.

How can I prevent silent connections?

Enable confirmation prompts on the remote computer.
The user in front of the device must accept
the connection before control can begin.

What are IP and ID filters?

These are whitelists that allow the remote computer to accept connections only from previously authorized
IP addresses or Iperius IDs .

Can I prevent file transfers?

Yes. Granular permissions allow you to separately block
file transfer, the clipboard, copy and paste
, and mouse and keyboard input.

How do you protect unattended access?

Use a unique password, enable 2FA, set up
IP or ID filters, enable screen lock, and
regularly review your sessions.

How do I recognize a remote desktop scam?

Be wary of unsolicited assistance, urgent requests, unexpected links,
requests to disable protections, provide OTP codes
, or open the bank’s website during your session.

What should I do during a suspicious session?

Disconnect, temporarily unplug the network
if necessary, change passwords from a secure device
, and review your configuration and logged sessions.

Where can I monitor remote sessions?

Open the Remote Access section of Iperius One to view
the connections made and those still active, along with
the main technical information of the session.

Do you need assistance?

Contact Iperius for support in securely configuring remote control.

Contact Iperius