How would you handle a compromised endpoint?
Anonymous
I would use the SANS Incident Handler steps I am trained in. Preparation is key. Preparation. Identification. Containment. Eradication. Recovery. Lessons Learned.
Check out your Company Bowl for anonymous work chats.