Q4
Single choice
A threat actor used a phishing email to deliver a file with an embedded macro. The file was opened, and a remote code execution attack occurred in a company's infrastructure.
Which steps should an engineer take at the recovery stage?