“Nothing has such power to broaden the mind as the ability to investigate systematically and truly all that comes under thy observation in life.” - Marcus Aurelius
Open Source Intelligence tools can be used to find information of all types. This can be useful in furthering your understanding of both offensive and defensive practices by finding information for anything and everything. OSINT is the direct inverse of open source privacy tools. OSINT can be used for nefarious purposes in some cases, but OSINT itself does not directly include the concept of hacking. OSINT only aims to find legally available public information. OSINT has tremendous use in regards to education and finding information about corporations, politicians and good journalism. These tools can also be used to help you understand your own privacy exposure as well. Please use these tools responsibly.
AI (Artificial Intelligence) Tools #
Art Generators #
-
Albus.org - Chat GPT App. Comes up with several different responses to your written prompt usually broken up into different aspects or steps of the prompt.
-
Animate Anyone - App that allows you to take a static image or photo and create videos of movement based on the people or characters in those photos.
-
Dall E - DALL·E 2 is an AI system that can create realistic images and art from a description in natural language. Made by Open Ai. Closed source.
-
Dreamstudio.ai - AI Art Generation.
-
Etched.ai - Etched is building the hardware for superintelligence.
-
Gemini - Formerly known as Bard. Google’s AI alternative to Chat GPT. Google is known to have a strong left wing bias, including filtering your text prompts through a DEI and social justice lens.
-
Lumiere - A Space-Time Diffusion Model for Video Generation. Made by Google, closed source. Create video from word prompts or pictures. Google is known to have a strong left wing bias.
-
Magic Animate - Magic Animate is an open source project that allows you to produces an animated video from a single image and a motion video.
-
Mid Journey - Mid Journey is an independent research lab exploring new mediums of thought and expanding the imaginative powers of the human species. Requires the unencrypted messaging app Discord for image generation.
-
Open AI Sora - Sora can generate videos up to a minute long while maintaining visual quality and adherence to the user’s prompt. Closed source.
Freedom and Privacy AI Tools #
-
AI Unchained - Podcast by freedom advocate and bitcoin educator Guy Swann. Follow the newest updates in the AI industry to become more sovereign and efficient by utilizing cutting edge tools.
-
Alex AI - Energy and Climate Chatbot. Built by Alex Epstein, an advocate of Freedom and Fossil Fuels. Iphone Only.
-
Gab AI - Chat GPT alternative and image generator by conservative Social Media company GAB.
-
GATgpt - A LLM model like Chat GPT but specifically for gun printing and all things gun related. Built by Cody Wilson.
-
LibertAI - Decentralized privacy focused AI.
-
Unleashed Chat - AI chatbot service designed with real privacy in mind. It stands out with its live Nostr data querying and advanced context embedding capabilities. It allows for Bitcoin payments via the Lightning Network, for privacy and speed. The platform employs the latest Open Source models, prioritizing uncensored options.
-
Venice - Venice is an open source alternative to Chat GPT. With built in features for code prompts and Stable Diffusion, Venice does not censor or spy on you. Launched by freedom advocate and crypto pioneer Erik Voorhees.
General AI Tools #
-
AI or Not - Need to verify if images are AI generated? Here’s a project that can identify images from Stable Diffusion, Midjourney, Dall-E, GAN and more.
-
AIXploira - Access the largest list of top-quality AI tools available on the web.
-
Albus.org - Chat GPT App. Comes up with several different responses to your written prompt usually broken up into different aspects or steps of the prompt.
-
Awesome GPT - List of dozens of GPT style LLMs.
-
Esperanto.ai - Esperanto delivers high-performance, energy-efficient computing solutions that are the compelling choice for the most demanding AI and non-AI applications.
-
Etched.ai - Etched is building the hardware for superintelligence.
-
GPT4all - Self Hosted GPT Alternative.
-
Huggingface.co - Open Source CHAT GPT Alternative.
-
LM Studio - LM Studio lets you discover, download, and run local LLMs entirely offline.
-
MaxAI.me - Chrome extension that lets you utilize AI on different sites.
-
Parse Prompt - Convert and summarize podcast episodes, audio clips, web-pages, and YouTube into AI-generated content.
Attack Surface #
-
BynaryEdge - We scan the web and gather data for you.
-
Censys - Attack Surface Management Solutions.
-
Criminalip.io - Cyber Threat Intelligence Search Engine and Attack Surface Management (ASM) platform.
-
RedHunt Labs - Discover your Attack Surface, Continuously.
-
SecurityTrails - The Total Internet Inventory.
Bug Hunting #
-
Bug Bounty writeups - Detailed breakdowns of all sorts of different types of attacks.
-
Bughunter-handbook - A list of resources that will help bug bounty hunters with resources that are useful during their bug bounty journey.
Certificates #
-
CertSpotter - Monitors your domains for expiring, unauthorized, and invalid SSL certificates.
-
Censys - Certificates - Certificates Search.
-
Crt.sh - Certificate Search.
-
CTSearch - Certificate Transparency Search Tool.
-
PassiveTotal - Security intelligence that scales security operations and response.
-
SynapsInt - The unified OSINT research tool.
-
TLS.BufferOver.run - Quickly find certificates in IPv4 space.
Credentials #
Check your email accounts to find associated accounts with breached companies.
-
Breachdirectory.org - Check if your information was exposed in a data breach.
-
Crackstation.net - Massive pre-computed lookup (Rainbow) tables to crack password hashes.
-
Dehashed - Free deep-web scans and protection against credential leaks, Takes Monero for Premium accounts.
-
Hackcheck - Hackcheck is a data breach search engine that makes checking the integrity of your data easy and flexible cheap! They currently offer several lightning fast queries to search through our billions of records with. The queries they offer are email, password, username, name, IP address, phone number, and domain name.
-
Have I Been Pwned - Check if your email or phone is in a data breach.
-
Haveibeensold.app - App that checks who is selling your data. Currently down.
-
Intelx - Needs an account for most dumps, but shows accounts and password associated with on different sites.
-
Leak-Lookup - Search across thousands of data breaches to find you compromised data - Requires an account for full results. Cheap prices and accepts Monero.
-
LeakCheck.io - Make sure your credentials haven’t been compromised.
-
Leakix - Identify public data leaks.
-
Mozilla Monitor - Stay safe with privacy tools from the makers of Firefox that protect you from hackers and companies that publish and sell your personal information. We’ll alert you of any known data breaches, find and remove your exposed info and continually watch for new exposures.
-
Snusbase - Stay on top of the latest database breaches.
-
Spycloud.com - More in Depth than haveIbeenpwned. Requires an account.
Code Search Engines #
-
GitHub Code Search - A search engine for searching projects on GitHub.
-
Grep.app - Search across a half million git repos.
-
MoonSearch - Backlinks checker & SEO Report.
-
NerdyData - Find companies based on their website’s tech stack or code.
-
Publicwww.com - Source Code Search Engine. Find any alphanumeric snippet, signature or keyword in the web pages HTML, JS and CSS code.
-
RepoSearch - Source code search engine that helps you find implementation details, example usages or just analyze code.
-
SearchCode - Search 75 billion lines of code from 40 million projects.
-
SourceGraph - Understand and search across your entire codebase.
Data Retention #
-
Archive.org - The biggest site for internet website archives.
-
Dessant - A web extension for pulling data from archived sites.
-
Inteltechniques - A guide to manually remove your data from archive sites.
-
Memento Time Travel - Memento TimeTravel is built using the archive.today API, and can thus be utilized as an upgraded internet archive product. It offers web users with an easy-to-use design.
-
Pagefreezer.com - PageFreezer is an alternative to the Wayback machine which utilizes Google-like crawling technology. The screenshots are taken using a fully automated operation.
-
TubeRipper - An app that lets you rip or download videos from most platforms.
-
Webcite - WebCite differs from the Wayback Machine by providing the sort of detailed snapshots of author-cited references requested by publishers, editors, and readers.
Device Information #
-
Macaddress.io - MAC address vendor lookup.
-
Maclookup.app - Find the vendor name of a device by entering an OUI or a MAC address.
-
Macvendors.com - Find MAC Address Vendors. Now.
-
MAC Vendor Lookup - Look up the vendor for a specific MAC Address.
DNS #
-
Chaos - Enhance research and analyse changes around DNS for better insights.
-
C99.nl - Over 57 quality API’s and growing.
-
DNSDumpster - DNS recon & research, find & lookup DNS records.
-
DNShistory.org - Domain Name System Historical Record Archive.
-
DNSdb - Passive DNS historical database.
-
DNSviz - Tool for visualizing the status of a DNS zone.
-
DNSTwister - The anti-phishing domain name search engine and DNS monitoring service.
-
Dnslytics - The ultimate online investigation tool for DNS and other internet data.
-
HackerTarget - Collect information about IP Addresses, Networks, Web Pages and DNS records.
-
Passivedns.mnemonic.no - Web interface for querying passive DNS data collected in our malware lab.
-
PassiveTotal - Security intelligence that scales security operations and response.
-
RapidDNS - DNS query tool which make querying - subdomains or sites of a same IP easy.
Domains #
-
Buckets.grayhatwarfare.com - Public buckets.
-
BuiltWith - Find out what websites are Built With.
-
CentralOps - DomainDossier - Investigate domains and IP addresses.
-
C99.nl - Over 57 quality API’s and growing!
-
DomainIQ - Comprehensive Domain Intelligence.
-
Grayhatwarfare.com - domains - How to search URLs exposed by Shortener services.
-
IPInfo - Provides your WAN or Public IP address.
-
MoonSearch - Backlinks checker & SEO Report.
-
PhoneBook - Lists all domains, email addresses, or URLs for the given input domain.
-
Pentest-tools.com - Discover subdomains and determine the attack surface of an organization.
-
Riddler - Allows you to search in a high quality dataset.
-
RobTex - Various kinds of research of IP numbers, Domain names, etc.
-
Securityheaders.com - Scan your site now.
-
Similarweb.com - The easiest and fastest tool to find out what’s really going on online.
-
Sitereport.netcraft.com - Find out the infrastructure and technologies used by any site.
-
Spyonweb.com - Find out related websites.
-
Statscrop.com - Millions of amazing websites across the web are being analyzed with StatsCrop.
-
SynapsInt - The unified OSINT research tool.
-
Visualsitemapper.com - Create a visual map of your site.
-
Who.is - WHOIS Search, Domain Name, Website, and IP Tools.
-
Whois.domaintools.com - Industry’s fastest domain discovery engine and broadest, most accurate data.
-
Whoisology.com - Deep Connections Between Domain Names & Their Owners.
Exploits #
-
0day.today - The ultimate database of exploits and vulnerabilities.
-
Exploit-DB - An Exploit Database.
-
packetstormsecurity.com - Information Security Services, News, Files, Tools, Exploits, Advisories and Whitepapers.
-
Rapid7 - DB - A vulnerability & Exploit Database.
-
Sploitus - A convenient central place for identifying the newest exploits.
-
Vulmon - A vulnerability and exploit search engine.
Facial Recognition #
- Pimeyes - The gold Standard in facial recognition search, while prioritizing privacy.
Focused Search Engines #
-
All Area Codes - Tracks area codes for the US and Canada.
-
Acrevalue - Find Land by acreage, and gives land breakdowns.
-
EarthCam - Earth Cam is the gold standard when it comes to aggregating the world’s public live streaming webcams and surveillance cameras in a way that makes sense.
-
Emporis Buildings Database - A database of buildings.
-
Flags of the World - The Internet’s largest site devoted to vexillology (the study of flags).
-
Geoguesser - Geo Game/training. Gives you random locations so you can test your OSINT skills.
-
Geolocating photo’s with OSM overpass API - Find a specific location somewhere in the world using the overpass API from OpenStreetMap.
-
Google Correlate – Google Trends Correlate can help you identify search patterns that correlate with real-world trends. It can be used to identify search patterns that are similar to one another. For example, you could use the tool to find out if there is a link between new legislation and gun sales (at least in terms of the search volume related to the two topics).
-
Google Maps and Streetview - The ultimate selection of maps.
-
Google Streetview Coverage - Wiki that tracks street coverage.
-
Grabify - Grabify is a free web-based IP grabbing/URL shortening tool. (IP grabbing just as it implies simply means getting/grabbing peoples IP addresses.) This can be used to get location/IP data from potential attackers.
-
IEC World Electrical Plugs - Site that tracks electrical socket plug types.
-
Insecam - Insecam aggregate access to hundreds of surveillance cameras and public web cameras around the world. The cams are not “hacked” and do not include cams on to computers, laptops, tablets, etc. The site has cams organized by a variety of categories, but it is tedious to find exactly the area you’re looking for.
-
IPGeo - IpGeo is a python tool to extract IP addresses from captured network traffic file (pcap/pcapng) and generate csv report containing details about the geolocation of each ip in the packets.
-
Left vs Right Driving Countries - Tracks which countries drive in the left or the right lane.
-
Million Short – Million Short has an interesting approach to searching for information online. The interface is generally similar to a typical search engine. However, you can sort and filter the results in a number of ways. Examples include popularity, eCommerce, live chat, date, location, and others. Also, it automatically pulls out the top sites that usually occupy the top spots in any search result (e.g. Amazon.com, eBay, YouTube, etc.)
-
MoonCalc - Tracks moon shadows, eclipses etc.
-
Mention - A service that lets you track any code words across social media platforms. Paid service.
-
N2YO Satellite Tracker - Tracks satellites in space.
-
Open Street Map Search Engines - Street map tracking.
-
OSSDatabase - OSS DATABASE is a crowdsourced database of Open Source software. Their goal is to make it easy to look for open source alternatives and compare them with their proprietary peers.
-
Overpass Turbo - Tracks roads and overpasses.
-
Pulsedive - A search engine for devices connected to the internet.
-
Public API’s - A list of several different API’s that are free to use for data pulling.
-
PublicData.com - PublicData.com is the number one resource for public records from local, state, and federal agencies.
-
Prowl - A free IP search & identifications of IoC and IoA.
-
Redfin - Housing sales data.
-
Search by Image - Tool to reverse image search docs, only works in Chromium based browsers.
-
Shadow Calculator - A website that tracks sun and shadow patterns.
-
Shodan – A search engine and network security tool for the internet of things. It finds devices on the internet like web servers, webcams, appliances, traffic lights, and even power plants.
-
SunCalc - A website that tracks sun patterns.
-
TalkWalkerAlerts – TalkWalkerAlerts is a great alternative to Google Alerts because, in addition to monitoring the web for certain keywords, it monitors social media, blogs, and forums as well. This can be helpful if you need to find mentions of someone’s name or business across the web. Free and paid options.
-
TorSearch - A TOR search engine for websites hosted on TOR (The Darknet).
-
Trulia - Housing sales data.
-
TinyEye - A reverse image search.
-
Wikimapia - A community sourced map.
-
WorldCam - Access public security cameras.
-
Zillow - Housing sales data.
Geolocation #
-
All Area Codes - Tracks area codes for the US and Canada.
-
Acrevalue - Find Land by acreage, and gives land breakdowns.
-
EarthCam - Earth Cam is the gold standard when it comes to aggregating the world’s public live streaming webcams and surveillance cameras in a way that makes sense.
-
Emporis Buildings Database - A database of buildings.
-
Flags of the World - The Internet’s largest site devoted to vexillology (the study of flags).
-
Find A Spring - A map that lists the best natural water springs across the world. Spring water is some of the highest quality water in the world, as it contains many natural vitamins and minerals, is naturally filtered and is structured thanks to being water constantly in motion.
-
GeoEngineering Monitor - Interactive map that tracks Geoengineering experiments across the world.
-
Geoguesser - Geo Game/training. Gives you random locations so you can test your OSINT skills.
-
Geolocating photo’s with OSM overpass API - Find a specific location somewhere in the world using the overpass API from OpenStreetMap.
-
Google Maps and Streetview - The ultimate selection of maps.
-
Google Streetview Coverage - Wiki that tracks street coverage.
-
IEC World Electrical Plugs - Site that tracks electrical socket plug types.
-
Insecam - Insecam aggregate access to hundreds of surveillance cameras and public web cameras around the world. The cams are not “hacked” and do not include cams on to computers, laptops, tablets, etc. The site has cams organized by a variety of categories, but it is tedious to find exactly the area you’re looking for.
-
Left vs Right Driving Countries - Tracks which countries drive in the left or the right lane.
-
MoonCalc - Tracks moon shadows, eclipses etc.
-
N2YO Satellite Tracker - Tracks satellites in space.
-
Open Street Map Search Engines - Street map tracking.
-
Overpass Turbo - Tracks roads and overpasses.
-
PlasticList - A large database of plastic toxicity amongst many various products.
-
Redfin - Housing sales data.
-
Shadow Calculator - A website that tracks sun and shadow patterns.
-
SunCalc - A website that tracks sun patterns.
-
Trulia - Housing sales data.
-
Wikimapia - A community sourced map.
-
WorldCam - Access public security cameras.
-
Zillow - Housing sales data.
Mail Addresses #
-
Centralops - Email, Whois, DNS search info.
-
EmailHippo - Email address verification technology.
-
Email-format.com - Find the email address formats in use at thousands of companies.
-
Hunter.io - Find professional email addresses in seconds.
-
IntelligenceX - Search engine and data archive. Finds public personal information from data brokers.
-
Melissa - Emailcheck - Check email addresses and verify they are live.
-
MXToolbox - Check your email headers.
-
PhoneBook - Lists all domains, email addresses, or URLs for the given input domain.
-
Reacher.email - Open-Source Email Verification.
-
RocketReach - Your first-degree connection to any professional.
-
skymem.info - Find email addresses of companies and people.
-
SynapsInt - The unified OSINT research tool.
-
ThatsThem - Reverse email lookup.
-
verify-email.org - Checks whether the mailbox exists or not.
-
VoilaNorbert - I can find anyone’s email address.
OSINT Lists #
-
About.start.me - OSINT Dashboard to combine different OSINT tools.
-
Awesome-Osint - A curated list of amazingly awesome open source intelligence tools and resources.
-
Facebook Email Search - A simple URL that lets search for any Facebook profile by using an email address.
-
Facebook Search Tools – A collection of helpful links to Facebook online help resources and various open-source search forms. Learn how to run searches and queries that go far deeper than the standard website or app search.
-
Freedomlab.io - FreedomLab is a virtual gathering place for human rights defenders. Here you will find a repository of training materials, tutorials, and digital tools, all tailored to your needs and requirements. We hope you will learn about tools, experiences, advocacy and fundraising strategies, as well as knowledge and skills related to security. Through support and collaboration, human rights defenders increase their capacity to monitor and report, seek redress, and advocate for the promotion of human rights.
-
Full OSINT - Full OSINT focused on the most popular web-based Open Source Intelligence and Cybersecurity Tools.
-
Hacker Search Engines - Long list of OSINT Tools.
-
Inteltechniques Tools - Dozens of tools available from Michael Bazzels website.
-
OstintFramework - Terrific list. Layout is a bit strange can be annoying to navigate.
-
Osint-jobs.com - Job board and education research.
-
Osintcurio.us - The OSINT Curious Project was a source of quality, actionable, Open Source Intelligence news, original blogs, instructional videos, and live streams. We tried to keep people curious about exploring web applications for bits of information or trying out new techniques to access important OSINT data.
-
Osintool.com - List of multiple tools with install instructions.
-
Osintdojo.com - A giant list of OSINT resources.
-
Search is Back - Is a similar tool to NetBootCamp, as it allows you to search for people and events on Facebook — but it also lets you search by location, relationships, gender, job title, language spoken, and other details.
-
Sociallinks.io - Everything you need to navigate the OSINT world, gain deeper insights, and enhance investigations.
-
Social-Analyzer - API, CLI & Web App for analyzing & finding a person’s profile across social media websites. It includes different string analysis and detection modules, you can choose which combination of modules to use during the investigation process.
-
SpiderFoot - SpiderFoot is an open-source OSINT tool with 200+ modules for gathering information on target organizations, domains and IP addresses, networks, emails, and usernames. It offers automation capabilities for routine OSINT tasks like DNS queries, threat intelligence checks, breach detection, WHOIS lookups, and more.
-
start.me - Another Giant list of all sorts of tools.
-
TCM-Open-Source-Intellingence-Resources - Compilation of Resources from TCM’s OSINT Course.
-
X-osint - An Open source intelligent framework ie an osint tool which gathers valid information about a phone number, user’s email address, perform VIN Osint, and reverse, perform subdomain enumeration, able to find email from a name, and so much more.
Security Focused Tools #
-
2fA.Directory - List of companies that use 2FA in America. 2FA is highly recommended to further secure online systems.
-
2fA.Directory.International - List of companies that use 2FA Internationally. 2FA is highly recommended to further secure online systems.
-
Atlas of Law Enforcement Surveillance - The EFF tracks surveillance apps used by Law enforcement across the country.
-
Best Randoms - Random information generator for huge amount of categories.
-
Dmarc and SPF Checkers - A site Dmarc, SPF and DKIM are Email security settings that protect your email account from being spoofed or faked. This tool scores your domain to see how difficult it would be to spoof. ^1^
-
DNS checker and port scanner - A site to check open ports, DNS SPF records and much more on your own internal server.
-
Efani - Test your Phone number public connections to see your total phone exposure.
-
Email Rep - App that lets you check the known reputability of any email address and domain.
-
End Of Life - Tracks closely software updates, and EOL status for a massive list of software. Need to figure out how long your new phone will be supported? They have you covered.
-
Exiftool - A tool let’s you pull metadata info from a wide range of file types.
-
Hudson Rock - Free tools to check for compromised corporate accounts.
-
Howsecureismypassword - A site to test the security and the Bruce Force difficulty of your password.
-
Immuniweb - A site to check the security of your own self-hosted server or servers. Checks SSL status of multiple different types of applications. Also checks compliance with frameworks such as PCI, HIPAA and NIST.
-
Ip Quality Score - An app to check your IP, Email and Fraud prevention. Also allows for verifying Tor and VPN connectivity and much more.
-
Polisis - Polisis gives you a glimpse of what websites actually say in their privacy policies.
-
Privacy Parrot - A search engine that helps determine if a website can sell your personal information.
-
ScamDoctor - Project that tracks known scam websites and use an algorithm to determine likelihood of other scams.
-
Security Headers - A site to check the security headers of your own self-hosted server to check your exposure to attacks like XSS, Clickjacking and more.
-
Shieldsup - A site to check the security of your own self-hosted server. Run by Steve Gibson of the SecurityNow Podcast and Spinrite data recovery application.
-
SSL LABS - A site to check the security of your own self-hosted server. Specifically looks at TLS config and hash algorithm of your website.
-
Tiny-check - A piece of software that scans your phone to check for unauthorized monitoring apps unknowingly installed.
-
TOSBack (Terms of Service) - A website that reads back other website terms of service and puts it into a simple and easy to read summary.
-
TraceLabs - An OSINT service that helps find missing people.
-
Virus Total - Scan files, hashes and URLs to run them against a database of known compromised software. Extremely useful when evaluating new suspicious files or programs.
-
W3Techs - Large list that tracks software utilization across industries. Find metrics based around software markets share.
Servers #
-
FOFA - Cyberspace mapping.
-
GreyNoise - The source for understanding internet noise.
-
Natlas - Scaling Network Scanning.
-
Netlas.io - Discover, Research and Monitor any Assets Available Online.
-
Onyphe.io - Cyber Defense Search Engine for open-source and cyber threat intelligence data.
-
ZoomEye - Global cyberspace mapping.
Social Media Tools #
Discord #
-
Discord OSINT Attack Surface - Description of Discord’s attack surface.
-
Discord Snowflake to Timestamp Converter - Pulls Discord message timestamps.
-
DiscordBee - Tracks and finds different Discord servers/chatrooms.
-
DiscordServers Search - Tracks and finds different Discord servers/chatrooms.
-
Dutch OSINT Guy Discord Resources - OSINT Discord resources that may be useful for searching or pivoting on Discord.
Facebook #
-
Einvestigator.com - Facebook Search Tools and Resources.
-
Facebook Email Search - Is a simple URL that lets search for any Facebook profile by using an email address.
-
Facebook Search Tools – A collection of helpful links to Facebook online help resources and various open-source search forms. Learn how to run searches and queries that go far deeper than the standard website or app search.
-
FB People Directory - Is a native tool built by Facebook so you can, as its name suggests, search their people directory. It’s super useful and one of the easiest tools to use when you’re looking for someone.
-
Passive DNS - Technology allows you to investigate everything you can imagine about any organization or company in the world, way beyond a simple citizen profile. Let’s see it in action for facebook.com.
-
Search is Back - Is a similar tool to NetBootCamp, as it allows you to search for people and events on Facebook — but it also lets you search by location, relationships, gender, job title, language spoken, and other details.
-
Toolzu.com - A platform for Facebook video downloading.
Gab #
-
Gab OSINT Attack Surface - Describes full attack surface for Gab.
-
Gab OSINT Bookmarklet Tools - Tool for creating Bookmarklet.
-
Gab OSINT Techniques - List of Tactics and tools for Osint on GAB ^1^
General Social Media Tools #
-
Sherlock - Finds all usernames across 300 different social media platforms.
-
SocialBlade - Real Time follower/subscriber counter for Youtube, Twitch, Instagram and Twitter.
-
Stories Down - Guide for several different platforms.
Gettr #
-
Gettr OSINT Attack Surface - Describes full attack surface for Gab.
-
Gettr OSINT Investigations Tips & Techniques - List of Tactics and tools for Osint on GAB.
Instagram #
-
Gramho - Identifying Followers of a Private Instagram Profile.
-
Instahunt - Used for tracing physical locations of Instagram posts.
-
Instagram OSINT Attack Surface - Describes full attack surface for Instagram.
-
Picuki - View, edit and share your publicly available Instagram content.
LinkedIn #
-
Epieos LinkedIn Tool - Retrieve information linked to an email address.
-
How to conduct OSINT on Linkedin - List of tactics and strategies.
-
LinkedIn OSINT Attack Surface - Description of the LinkedIn attack surface.
-
LinkedIn OSINT Bookmarket Tools - Tools to create bookmarklets.
-
LinkedIn OSINT Techniques: Part I - Guide on LinkedIn Osint.
-
LinkedIn OSINT Techniques: Part II - Guide on LinkedIn Osint.
-
New LinkedIn Search Features - Guide on search functions in LinkedIn.
Pinterest #
-
Aware Online - List of tactics and strategies.
-
Pinterest OSINT Attack Surface - Description of the Pinterest attack surface.
Reddit #
-
Rdddeck - Creates Reddit decks.
-
Reddit OSINT Attack Surface - Description of the Reddit attack surface.
-
Reddit OSINT Bookmarklet Tools - Tools to create bookmarklets.
-
Reddit OSINT Techniques - List of Osint tools and tactics for Reddit.
-
Unddit - App that lets you display removed (by mods) and deleted (by users) comments/posts for Reddit.
Skype #
-
Skype OSINT Attack Surface - Description of the Skype attack surface.
-
Skypli - Skype search engine.
Snapchat #
-
Snapchat OSINT Attack Surface - Description of the Snapchat attack surface.
-
Snap Map - Watch Snaps submitted by Snapchatters around the world.
Telegram #
-
Awesome Telegram OSINT - Massive list of Telegram Tools.
-
Telegram Analytics - Telegram channels and groups catalog in addition chat monitoring.
-
Telegram Database - Telegram Search Engine.
TikTok #
-
TikTok OSINT Attack Surface - Description of the TikTok attack surface.
-
TikTok OSINT Bookmarklet Tools - App that creates bookmarklets which will facilitate TikTok investigations.
-
Vidnice - TikTok search engine.
Tumblr #
-
Tumblr OSINT Attack Surface - Description of the Tumbler attack surface.
-
Tumblr OSINT Bookmarklet Tools - App that creates bookmarklets which will facilitate Tumblr investigations.
-
Tumblr OSINT Techniques - Breakdown of many tactics and techniques for OSINT on Tumblr.
Twitter/X.com #
-
Birdhunt - Used for tracing physical locations of Twitter posts.
-
Bot Sentinel - Helps you find and block trolls and fake Twitter accounts.
-
Foller.me - Free people search engine finds social media profiles, public records, and more!
-
Nitter - Access Twitter through a privacy front end without an account.
-
Tinfoleak - Search for Twitter users leaks.
-
Tweet Beaver - If you’re doing research that involves a Twitter user, TweetBeaver is a great resource. Use it for things like downloading a user’s friends list, downloading a user’s followers list, checking to see if two accounts follow one another, and much more.
-
Tweetdeck - TweetDeck offers a more convenient Twitter experience by letting you view multiple timelines in one easy interface. It includes a host of advanced features to help get the most of Twitter: Manage multiple Twitter accounts, schedule Tweets for posting in the future, build Tweet collections, and more.
-
Twitter OSINT Attack Surface - Description of the Twitter attack surface.
-
Spoonbill - Spoonbill lets you see profile changes from the people you follow on Twitter or other social networks.
-
Trendsmap - Tracks hashtag trends by location.
-
TweeterID - Pull your Twitter user ID.
-
Getvidfy.com - Download videos from Twitter.
-
Savetweetvid.com - Download videos from Twitter.
URLs #
-
HackerTarget - Collect information about IP Addresses, Networks, Web Pages and DNS records.
-
MOZ Link Explorer - The world’s best backlink checker with over 40 trillion links.
-
PhoneBook - Lists all domains, email addresses, or URLs for the given input domain.
-
Shorteners.grayhatwarfare.com - Search URLs exposed by Shortener services.
-
URLScan - A sandbox for the web.
Vehicles #
-
Autocheck - Search by Vin or License Plate. Costs money for in-depth searches.
-
Faxvin - Search by Vin. Costs money for in-depth searches.
-
Licensesearch.org - Can be used to search License plates and Drivers licenses for a fee.
-
SkipTracer - Python-based search engine program, that searches lots of different categories, Name, email, phone etc. In particular you can search License Plate info which is the most unique feature of this app.
-
Vehicle-OSINT-Collection - A comprehensive list of websites, add-ons, repositories, and other tools useful for finding information on a target vehicle ^2^
Vulnerabilities #
-
Aqua Vulnerability Database - Vulnerabilities and weaknesses in open source applications and cloud native infrastructure.
-
Capec.Mitre.org - A site that tracks common attack patterns.
-
Cloudvulndb.org - The Open Cloud Vulnerability & Security Issue Database.
-
CVEDetails - The ultimate security vulnerability datasource.
-
CVE.org - Another site that tracks identifies defines, and catalogs publicly disclosed cybersecurity vulnerabilities.
-
GitHub Advisory Database - Security vulnerability database inclusive of CVEs and GitHub originated security advisories.
-
Libraries.io - Open source package tracker.
-
MITRE CVE - Another site that identifies, defines, and catalogs publicly disclosed cybersecurity vulnerabilities.
-
Mitre.org - A site that tracks common weaknesses across all software.
-
NIST NVD - The National Vulnerability Database, that lists known threats and vulnerabilities.
-
Ossindex.sonatype.org - A free catalogue of open source components and scanning tools to help developers identify vulnerabilities, understand risk, and keep their software safe.
-
Opencve.io - Easiest way to track CVE updates and be alerted about new vulnerabilities.
-
Osv.dev - Open Source Vulnerability tracker.
-
Rapid7 - DB - Vulnerability & Exploit Database.
-
Security.snyk.io - Open Source Vulnerability Database.
-
SynapsInt - The unified OSINT research tool.
-
VulDB - Number one vulnerability database.
-
Vulmon - Vulnerability and exploit search engine.
-
Vulners.com - Your Search Engine for Security Intelligence.
-
VulnIQ - Vulnerability intelligence and management solution.
Wifi Discovery and Scanning #
-
Acrylic WiFi - WiFi analysis, site survey & troubleshooting.
-
Avast Wi-Fi Finder - Avast Wi-Fi Finder is an app to help you find free WiFi networks around you. Just check the map and take a look at the different points that show up. Tapping one of them gives you more information: the name of the network, whether it requires a password, etc.
-
Free WiFi Finder - Get WiFi Finder to find Fast WiFi wherever you go.
-
Network Tools - Phone App for tracking all sorts of network metrics.
-
Open WiFi Finder - Get WiFi Finder to find Fast WiFi wherever you go.
-
WiFinder -