AnyDesk

{{Short description|Remote desktop application}}

{{Infobox software

| name = AnyDesk

| logo = AnyDesk-logo.svg

| screenshot =

| caption = Nikko

| developer = AnyDesk Software GmbH

| ver layout = stacked

| latest release date = 05.08.2023

| operating system = Windows, macOS, Linux, Android, iOS, FreeBSD, Raspberry Pi

| genre = Remote desktop software, Remote administration, Remote support

| license = Proprietary software

| website = {{URL|https://anydesk.com/}}

}}

AnyDesk is a remote desktop application distributed by AnyDesk Software GmbH. The proprietary software program provides platform-independent remote access to personal computers and other devices running the host application.{{Cite web|title=Innovative and Reliable: Our Features|url=https://anydesk.com/en/features|website=AnyDesk|language=en|access-date=2020-05-25}} It offers remote control, file transfer, and VPN functionality. AnyDesk is often used in technical support scams and other remote access scams.

Company

AnyDesk Software GmbH was founded in 2014 in Stuttgart, Germany and now has subsidiaries in the US, China, and Hong Kong, as well as an Innovation Hub in Georgia.{{cite web|title=AnyDesk verspricht PC-Fernsteuerung in Echtzeit|url=https://www.deutsche-startups.de/2014/07/16/anydesk-verspricht-pc-fernsteuerung-echtzeit|website=deutsche-startups.de|date=16 July 2014 |language=de|access-date=2018-08-21}}{{cite web|title=AnyDesk press release about innovation hub in Georgia|url=https://blog.anydesk.com/anydesk-announces-rapid-scale-up-grows-to-over-200-employees-100000-customers-and-opens-innovation-hub-in-georgia/|date=2022-04-07|website=AnyDesk|language=en-US|access-date=2022-10-12}}

In May 2018, AnyDesk secured 6.5 million euros of funding in a Series A round led by EQT Ventures.{{Cite web|url=https://techcrunch.com/2018/05/14/anydesk/|title=AnyDesk scores €6.5M for its remote desktop software – TechCrunch|website=techcrunch.com|date=15 May 2018 |language=en-US|access-date=2018-06-15}}{{Cite web|url=https://eqtventures.com/article/eqt-ventures-investment-in-anydesk/|title=EQT Ventures' investment in AnyDesk|website=eqtventures.com|language=en|access-date=2018-08-22|archive-date=2018-08-22|archive-url=https://web.archive.org/web/20180822050116/https://eqtventures.com/article/eqt-ventures-investment-in-anydesk/|url-status=dead}} Another round of investment in January 2020 brought AnyDesk to over twenty million dollars of combined funding.{{Cite web|title=Global Software Innovator, AnyDesk, Launches Expansion with Leading Growth Equity Investor, Insight Partners {{!}} News & Press|url=https://www.insightpartners.com/about-us/news-press/global-software-innovator-anydesk-launches-expansion-with-leading-growth-equity-investor-insight-partners/|date=2020-01-22|website=Insight Partners|language=en-US|access-date=2020-05-25}}

Controversy

Since the 2022 Russian invasion of Ukraine and the implementation of international sanctions, AnyDesk has maintained its operations in Russia. Some critics suggest that this decision could weaken the impact of sanctions and raises questions about the company's approach to corporate responsibility during conflicts.{{Cite web |title=Major German brands still active in Russia despite sanctions, military support for Ukraine |url=https://www.aa.com.tr/en/economy/major-german-brands-still-active-in-russia-despite-sanctions-military-support-for-ukraine/2798018 |access-date=2024-12-05 |website=www.aa.com.tr}}

Software

AnyDesk uses the proprietary video codec "DeskRT". It is designed to allow users high-quality video and sound reception, and keep the amount of data transmitted to a minimum.

AnyDesk partnered with remote monitoring and management and mobile device management services, such as Atera Networks[https://www.atera.com/ Official website of Atera] and Microsoft Intune.[https://anydesk.com/en/partners/integration Integration Partners], AnyDesk official website
[https://blog.anydesk.com/atera-and-anydesk-where-the-hassle-ends-and-simplicity-starts/ Atera and AnyDesk – Where the Hassle Ends and Simplicity Starts], AnyDesk official blog

= Features =

Availability of features is dependent upon the license of the individual user. Some main features include:{{Cite web|title=Category:Features - AnyDesk Help Center|url=https://support.anydesk.com/Category:Features|website=support.anydesk.com|access-date=2020-05-25|archive-date=2018-06-27|archive-url=https://web.archive.org/web/20180627165307/https://support.anydesk.com/Category:Features|url-status=dead}}

  • Remote access for multiple operating systems (Windows, Linux, macOS, iOS, Android, etc.)
  • File transfer and manager
  • Remote print
  • VPN
  • Unattended access
  • Whiteboard
  • Auto-discovery (automatic analysis of local network)
  • Chat function
  • REST API
  • Custom clients
  • Session protocol
  • Two-factor authentication
  • Individual host server

Security

AnyDesk uses TLS 1.2 with authenticated encryption. Every connection between AnyDesk clients is secured with AES-256. When a direct network connection can be established, the session is endpoint encrypted and its data is not routed through AnyDesk servers.{{cite web|title=Security - AnyDesk Help Center|url=https://support.anydesk.com/Security|website=support.anydesk.de|access-date=2018-08-21|language=en|archive-date=2018-08-22|archive-url=https://web.archive.org/web/20180822014848/https://support.anydesk.com/Security|url-status=dead}} Additionally, whitelisting of incoming connections is possible.{{cite web|url=https://support.anydesk.com/Access_and_Session_Requests|access-date=2018-08-22|title=Access and Session Requests - AnyDesk Help Center|website=AnyDesk Help Center|archive-date=2019-07-30|archive-url=https://web.archive.org/web/20190730180340/https://support.anydesk.com/Access_and_Session_Requests|url-status=dead}}

Abuses

AnyDesk is one of many tools used in technical support scams and other remote access scams.[https://www.zdnet.com/article/aussies-have-lost-over-au7-million-to-remote-access-scams-already-this-year/ Aussies have lost over AU$7 million to remote access scams already this year][https://www.bleepingcomputer.com/news/security/scammers-drain-bank-accounts-using-anydesk-and-sim-swapping/ Scammers drain bank accounts using AnyDesk and SIM-swapping]{{Cite news |last=Singh |first=Shelley |title=AnyDesk: Fraud is only possible if user grants access: Oldrich Müller, COO, AnyDesk |work=The Economic Times |url=https://economictimes.indiatimes.com/small-biz/startups/newsbuzz/fraud-is-only-possible-if-user-grants-access-oldrich-mller-coo-anydesk/articleshow/69036751.cms?from=mdr |access-date=2022-05-05}} It can be optionally installed on computers and smartphones with full administrative permissions, if the user chooses to do so.{{Cite web|url=https://support.anydesk.com/Administrator_Privileges_and_Elevation_(UAC)|website=support.anydesk.com|language=en|title=Administrator Privileges and Elevation (UAC) - AnyDesk Help Center|access-date=2019-07-30|archive-date=2019-07-30|archive-url=https://web.archive.org/web/20190730193217/https://support.anydesk.com/Administrator_Privileges_and_Elevation_(UAC)|url-status=dead}} This provides the host user with full access to the guest computer over the Internet, and, like all remote desktop applications, is a severe security risk if connected to an untrusted host.

= Mobile access fraud =

In February 2019, Reserve Bank of India warned of an emerging digital banking fraud, explicitly mentioning AnyDesk as the attack channel.{{Cite web|url=https://www.ibtimes.co.in/rbi-malware-warning-refrain-installing-anydesk-mobile-app-else-risk-losing-bank-balance-792170|title=RBI malware warning: Refrain from installing 'AnyDesk' mobile app or else risk losing bank balance|last=KVN|first=Rohit|date=2019-02-18|website=International Business Times, India Edition|language=en|access-date=2019-02-19}} The general scam procedure is as follows: fraudsters get victims to download AnyDesk from the Google Play Store on their mobile phone, usually by mimicking the customer service of legitimate companies. Then, the scammers convince the victim to provide the nine-digit access code and to grant certain permissions.{{Cite web|url=https://www.zeebiz.com/india/news-rbi-anydesk-app-warning-against-fraud-upi-payments-do-this-to-save-money-86274|title=RBI AnyDesk Warning: This app can steal all money from your bank account, never download|date=2019-02-17|website=Zee Business|language=en|access-date=2019-02-19}} After permissions are obtained and if no other security measures are in place, the scammers usually transfer money using the Indian Unified Payment Interface.{{Cite web|url=https://www.bloombergquint.com/business/rbi-cautions-against-fraudulent-transactions-on-upi-platform|title=RBI Cautions Against Fraudulent Transactions On UPI Platform|website=BloombergQuint|date=16 February 2019 |access-date=2019-02-19}} A similar scam took place in 2020, according to Kashmir Cyber police.{{Cite web|title=Cyber Police Kashmir unearths 'AnyDesk' online fraud|url=https://www.daijiworld.com/news/newsDisplay.aspx?newsID=734885|access-date=2021-02-25|website=www.daijiworld.com|language=en}} The same method of theft is widely used internationally on either mobile phones or computers: a phone call convinces a person to allow connection to their device, typically from a caller claiming to be a service provider to "solve problems with the computer/phone", warning that Internet service will otherwise be disconnected, or from a caller claiming to be a financial institution because "there have been suspicious withdrawal attempts from your account".

= Bundling with ransomware =

In May 2018, the Japanese cybersecurity firm Trend Micro discovered that cybercriminals bundled a new ransomware variant with AnyDesk, possibly as an evasion tactic masking the true purpose of the ransomware while it performs its encryption routine.{{Cite news|url=https://blog.trendmicro.com/trendlabs-security-intelligence/legitimate-application-anydesk-bundled-with-new-ransomware-variant/|title=Legitimate Application AnyDesk Bundled with New Ransomware Variant - TrendLabs Security Intelligence Blog|date=2018-05-01|access-date=2018-08-28|language=en-US}}{{Cite web|url=http://www.microsupportsystems.com/index.php/2017/05/15/wanacrypt-ransomware/|title=WanaCrypt Ransomware – 202 N Van Buren Rd Ste E Eden, NC 27288|website=www.microsupportsystems.com|language=en-US|access-date=2018-08-28|archive-date=2019-11-01|archive-url=https://web.archive.org/web/20191101160956/http://www.microsupportsystems.com/index.php/2017/05/15/wanacrypt-ransomware/|url-status=dead}}

= Technical support scams =

{{Main|Technical support scam}}

Scammers use AnyDesk and similar remote desktop software to obtain full access to the victims' computer by impersonating a technical support person.{{Cite web|url=http://www.verizonenterprise.com/verizon-insights-lab/VES/as-social-engineering-activities-increase-buyer-beware-of-tech-support-scams|title=As social engineering activities increase buyer beware of tech support scams|website=Verizon Enterprise Solutions|language=en-US|access-date=2018-08-28|archive-url=https://web.archive.org/web/20171201013334/http://www.verizonenterprise.com/verizon-insights-lab/VES/as-social-engineering-activities-increase-buyer-beware-of-tech-support-scams|archive-date=2017-12-01|url-status=dead}}{{Cite web|url=https://www.thinkbroadband.com/news/7647-how-to-avoid-being-a-tech-support-scam-victim|title=How to avoid being a tech support scam victim {{!}} thinkbroadband|website=www.thinkbroadband.com|access-date=2018-08-28}}{{Cite web|url=https://blog.dynamoo.com/2016/12/02085258899-tech-support-scam-using.html|title=02085258899 - tech support scam (using anydesk.com, teamviewer.com and supremofree.com)|website=blog.dynamoo.com|access-date=2018-08-28}} The victim is asked to download and install AnyDesk and provide the attackers with access. When access is obtained, the attackers can control the computer and move personal files and sensitive data.

In 2017, the UK based ISP TalkTalk banned TeamViewer and similar software from all its networks after scammers cold called victims and talked them into giving access to their computer. The software was removed from the blacklist after setting up a scam warning.{{Cite news|url=https://nakedsecurity.sophos.com/2017/03/20/isp-customer-data-breach-could-turn-into-supercharged-tech-support-scams/|title=ISP customer data breach could turn into supercharged tech support scams|date=2017-03-20|work=Naked Security|access-date=2018-08-06|language=en-US}} In September 2021, the State Bank of India warned customers not to install AnyDesk or similar apps.{{Cite web |date=2021-09-07 |title=SBI customers beware! Avoid installing these 4 apps on your phone |url=https://www.hindustantimes.com/business/sbi-customers-beware-avoid-installing-these-4-apps-on-your-phone-101630977011395.html |access-date=2022-05-07 |website=Hindustan Times |language=en}} In March 2022, the Federal Bureau of Investigation issued a cybersecurity advisory noting that AnyDesk software was used in the operations of the AvosLocker ransomware gang.{{Cite web |last=FBI |date=17 March 2022 |title=Indicators of Compromise Associated with AvosLocker Ransomeware |url=https://www.ic3.gov/Media/News/2022/220318.pdf |access-date=7 May 2022 |website=FBI Internet Crime Complaint Center}}

In 2023, AnyDesk announced the establishment of an "Anti-Fraud Task Force" in partnership with a number of prominent scam baiters in an initiative to combat technical support scams and abuse of remote-access software. The task force included Jim Browning, Kitboga and Scammer Payback.{{Cite web |last=AnyDesk |date=2023-05-16 |title=AnyDesk Fights Back Against Fraud |url=https://blog.anydesk.com/anydesk-fights-back-against-fraud/ |access-date=2023-05-31 |website=AnyDesk Blog |language=en-US}}

See also

References

{{Reflist}}