Combatting a BlackCat Ransomware Active Directory Attack
semperis.com | incident | #incident-response | #active-directory | #ransomware | #alphv | #fbi | #blackcat
Summary
After FBI Flash CU-000167-MW warned BlackCat/ALPHV had hit 60+ entities, this post explains why the group's end game is an AD attack and lists FBI-recommended mitigations: hunt rogue accounts, audit permissions, plan AD recovery.
- Published
- Collected
Skip to content