Hi All,

this is my first question in the forum..
In my company quite few servers with Windows Server 2008 (yes, I know!) have been infected with an ransomware. We have 'cleaned' them up, but we have not patched neither hardenized them yet. However, we have been asked to open connectivity from another server to those servers to monitor them. The connectivity will go through a FW (port 135) and the idea is to open the inbound connectivity. Is there any risk in doing so?

Thanks