HECAVEX / EN
Deividas Lis — researcher and editor of HECAVEX
Deividas Lis is an independent cyber threat intelligence researcher, former cybercrime investigator, threat hunter, public speaker and media commentator behind HECAVEX.
- Role
- Independent CTI researcher and HECAVEX editor
- Background
- Cybercrime investigations · financial-sector security
- Base and languages
- Vilnius · English · Lithuanian
On this pageContents5 sections
HECAVEX is the independent cyber threat intelligence and digital investigations publication created and edited by researcher Deividas Lis.
HECAVEX is the publication and research identity; Deividas is its author and editor. Articles, Signal Briefs and the connected APT Notes knowledge base are different formats within the same body of independent work.
The publication examines cybercrime infrastructure, malware, espionage, fraud, information operations and the people behind digital threats. Its scope is international. Its work separates verified evidence from reporting, inference and assessment, and states uncertainty where it exists.
HECAVEX is independent. It is not presented as a registered company, managed security provider or news aggregator.
About the researcher
Deividas has worked across law enforcement, financial-sector security and private-sector threat research. He is also a public cybersecurity speaker and media commentator, presenting and joining industry discussions on cyber threat intelligence, intelligence sharing, fraud and collaborative defence. His work combines tactical and technical CTI, infrastructure analysis, OSINT, threat hunting, Python-based automation and security detection content.
Professional profiles: GitHub and LinkedIn.
The current research focus describes the subjects receiving attention now and how the different HECAVEX formats are used.
For conference talks, panels, podcasts and expert media commentary, see speaking and media.
Areas of expertise
- Tactical and technical cyber threat intelligence
- OSINT and infrastructure analysis
- Fraud, social engineering and cybercrime investigations
- Python automation and detection engineering
- Information operations and digital influence infrastructure
Selected media and appearances
- Delfi — 1.2 billion Facebook users’ data exposed. Expert commentary on the risks faced by Facebook account holders following a large-scale data leak. Read the article.
- Žinių radijas — “Why do scammers call at lunchtime or in the evening?” A conversation about how fraudsters select, approach and manipulate their victims. Watch the interview.
- Pociūnas Podcast — “EX-KRIMINALISTAS”. A conversation about cybercrime investigations, including an operation involving 112 searches targeting fraudsters in a single night. Watch on YouTube.
- Tapk Geresniu Podcast 022 — “EX-KRIMINALISTAS”. A discussion about the recruitment of children, investment scams and the reality of the dark web. Watch on YouTube.
- TV3 — a rapidly spreading fraud scheme. Expert commentary on how scammers identify potential victims and why modern fraud campaigns are becoming harder to distinguish. Read and watch.
- NordStellar — “How to master threat intelligence?” A webinar on building and applying effective threat-intelligence capabilities. Watch on YouTube.
Editorial principles
- Evidence before narrative.
- Clear confidence and limitations.
- Corrections documented transparently.
- No fear-based marketing or fabricated certainty.
The complete approach to sourcing, confidence, corrections, conflicts and AI-assisted work is documented in the HECAVEX editorial standards.