Hi,
For step 6 the instructions are unclear, it says to only execute the ransomware on the bastion host, but when verifying the Blackcat logs, it says:
execute the following to fetch the BlackCat logs from affected Subsidiary B hosts
Was the ransomware supposed to be executed on all digirevenge hosts with psexec, like ExMatter was?
Hi,
For step 6 the instructions are unclear, it says to only execute the ransomware on the bastion host, but when verifying the Blackcat logs, it says:
Was the ransomware supposed to be executed on all digirevenge hosts with psexec, like ExMatter was?