I suppose that's one of the many possibilities that are implied, but its not even close to the most likely.
I think its more likely that some of the attackers' systems or accounts were compromised (AKA hacked).
Does it not sound weird that a cybercrime gang would leave a hot wallet on some random VPS? That seems incredibly unlikely.
It doesn’t take a _ton_ of technical proficiency to get ransomware someone else made and target a company with it.
I suppose that's one of the many possibilities that are implied, but its not even close to the most likely.
I think its more likely that some of the attackers' systems or accounts were compromised (AKA hacked).