Lee Archinal

2.7K posts

Lee Archinal banner
Lee Archinal

Lee Archinal

@ArchinalLee

Log junkie trying to share what I know through training and posts. Privileged to be a #BlackHatUSA trainer!

Some SIEM/EDR/XDR Katılım Haziran 2019
807 Takip Edilen602 Takipçiler
Lee Archinal retweetledi
Pittsburgh Pirates
Pittsburgh Pirates@Pirates·
Happy Skenes Day! REPOST THIS for a chance to win this autographed baseball by Paul Skenes. Presented by @sheetz
Pittsburgh Pirates tweet media
English
142
6.5K
3.3K
199.1K
Lee Archinal retweetledi
Lee Archinal retweetledi
Pittsburgh Pirates
Pittsburgh Pirates@Pirates·
REPOST THIS for a chance to win a @NewEraCap Players' Weekend 59FIFTY Cap!
Pittsburgh Pirates tweet mediaPittsburgh Pirates tweet media
English
49
1.8K
1.1K
69.4K
Lee Archinal retweetledi
Analyst1
Analyst1@Analyst1·
🚨 New Threat Actor Profile by @intel_anastasia From the shadows of Conti, Black Basta emerged as one of the most prolific ransomware gangs in recent years—until a massive internal leak exposed everything. 🔍 In our latest profile, we trace the group’s Conti lineage, breakdown their TTPs, and analyze the leaked chats that ultimately led to their demise. 💥 578 victims. Triple extortion tactics. Political undertones. Was it just about money, or something more? Swipe through the key takeaways, then dive into the full report. 👉 analyst1.com/threat-actors/… #ThreatIntel #Cybercrime #BlackBasta #Ransomware #A1ThreatProfiles #CyberSecurity #Analyst1
Analyst1 tweet media
English
0
13
30
2.9K
Lee Archinal retweetledi
Intel 471
Intel 471@Intel471Inc·
CTI teams are under pressure to mature fast. In this #SANS webcast, Intel 471’s Ashley Jess shares insights on integrating #geopolitics and measuring CTI value using frameworks like CTI-CMM & CU-GIRH. Watch the full discussion: hubs.la/Q03tbg-t0 #CTI #cybersecurity
English
0
6
26
1.3K
Lee Archinal retweetledi
Intel 471
Intel 471@Intel471Inc·
Join Intel 471's Level 2 Threat Hunting Workshop on Execution tomorrow, May 14 from 12 - 1 PM EDT. Investigate PowerShell abuse, LOLBins, macro payloads, and more using real-world data. Finish the challenge, earn your #threathunting badge. Register now: hubs.la/Q03m5Z1H0
Intel 471 tweet media
English
0
1
5
624
Lee Archinal retweetledi
The DFIR Report
The DFIR Report@TheDFIRReport·
📉DFIR Labs Weekend Discount📉 Use this discount code to receive 10% off all DFIR Labs cases! Discount expires May 5th 04:00 UTC ⏲️Buy now, use anytime over the next 3 months. ➡️Discount code: WeekendDiscount20250502 Access DFIR Labs: store.thedfirreport.com/collections/df…
English
0
12
37
6.4K
Lee Archinal retweetledi
The DFIR Report
The DFIR Report@TheDFIRReport·
“For this case we observed TXT records being utilized for C2 communication rather than MX records. This can be identified by the "type: 16" in the Sysmon logs seen above. Below is a sample list that, while not exhaustive, provides a clear example of the traffic patterns:” 1/2
The DFIR Report tweet media
English
2
28
133
10.3K
Lee Archinal retweetledi
Intel 471
Intel 471@Intel471Inc·
Threat hunting is about focus. Knowing where to spend your time is what sets tactical hunters apart. Join Out of the Woods live tomorrow for an interactive discussion on what drives real results. Our hosts will be engaging in real time on Discord. 🔗 hubs.la/Q03bpV4F0
Intel 471 tweet media
English
0
2
3
635