Guess Who: The Adversary Edition | Intel 471 Skip to content

Guess Who: The Adversary Edition

[LIVE] Out of the Woods: The Threat Hunting Podcast

May 8, 2025 | 12:00 - 1:30 PM EDT

Hero background fallback

Clue by Clue: Can You Name the Threat Actor?

Out of the Woods: The Threat Hunting Podcast returns with a special edition live episode built to sharpen how threat hunters think about adversary behavior. Our hosts will walk through a real-world threat actor’s activity one phase at a time, revealing tradecraft clues as the investigation unfolds. Listeners will have the chance to analyze the behavior and submit their best guess before the final reveal.

This live, interactive session is grounded in real tradecraft and practical threat hunting techniques. You’ll see how MITRE ATT&CK techniques map to observed activity, how vertical-specific targeting shapes decisions, and how behavioral patterns can point to attribution faster.

Whether you're building detections, leading investigations, or leveling up your hunting instincts, this episode puts your knowledge to the test.

What We’ll Cover:

  • Real adversary behavior – A phase-by-phase walkthrough of a known threat actor’s campaign
  • MITRE ATT&CK in context – How techniques are applied in real incidents
  • Recognizing tradecraft patterns – What links certain behaviors across threat actors
  • Sector-specific targeting – How industry focus shapes attacker decisions
  • Interactive analysis – Submit your guess before the threat actor is revealed live

Engage with the Community!

Join our Discord server during the episode to follow the clues, connect with other hunters, and share your thoughts in real time.

Don't miss this chance to train your instincts and challenge your threat hunting perspective. Join the discussion here: https://discord.gg/DR4mcW4zBr

May 8, 2025 | 12:00 - 1:30 PM EDT

Guess Who: The Adversary Edition

CTA Background 2
Featured Resource
Intel 471 Logo 2024

AresLoader is a new loader malware-as-a-service (MaaS) offered by threat actors with links to Russian hacktivism that was spotted recently in the wild.