OSINT Tools … Recommendations List Free OSINT Tools.

With the New Year fast approaching I thought now would be a great time to post the first draft of some recommended Open Source Intelligence (OSINT) gathering tools and resources. I will look to maintain this list overtime and have it grow, so if you come across something you think should be on the list, drop me an email or leave a comment for consideration.

The reconnaissance phase of any engagement is very important and can often save you alot of time and of course money. If you are really lucky you may even find the information you are looking for freely available posted online. Either way the information you find will only be as good as the tools you use, so with this in mind here is the list based on tools I have come across over the years or have been recommended by other InfoSec peeps.

* Please note even though the aim is to provide information for free OSINT Tools, some may require a subscription or commercial fee.
  • Spokeo - People search engine and free white pages finds phone, address, email, and photos. Find people by name, email, address, and phone for free.
  • theHarvester - This tool is intended to help Penetration testers in the early stages of the penetration test in order to understand the customer footprint on the Internet. It is also useful for anyone that wants to know what an attacker can see about their organization.
  • Foca - FOCA 3.2 Free is a fingerprinrint and information gathering tool for pentesters. It searchs for servers, domains, URLS and public documents and print out discoverd information in a network tree. It also searches for data leaks such as metadata, directory listing, unsecure HTTP methods, .listing or .DS_Store files, actived cache in DNS Serves, etc…
  • Shodan - Search for computers based on software, geography, operating system, IP address and more
  • Maltego - Maltego is a unique platform developed to deliver a clear threat picture to the environment that an organization owns and operates. Maltego’s unique advantage is to demonstrate the complexity and severity of single points of failure as well as trust relationships that exist currently within the scope of your infrastructure.
  • Deep Magic - Search for DNS records and other fun stuff
  • Jigsaw - Jigsaw is a prospecting tool used by sales professionals, marketers and recruiters to get fresh and accurate sales leads and business contact information.
  • Hoovers - Search over 85 million companies within 900 industry segments; Hoover’s Reports Easy-to-read reports on key competitors, financials, and executives
  • Market Visual - Search Professionals by Name, Company or Title
  • FoxOne Scanner - Non- Invasive and Non-Detectable WebServer Reconnaissance Scanner
  • Creepy - creepy is an application that allows you to gather geolocation related information about users from social networking platforms and image hosting services.
  • Recorded Future - Recorded Future intelligence analysis tools help analysts understand trends in big data, and foresee what may happen in the future. Groundbreaking algorithms extract temporal and predictive signals from unstructured text. Recorded Future organizes this information, delineates results over interactive timelines, visualizes past trends, and maps future events– all while providing traceability back to sources. From OSINT to classified data, Recorded Future offers innovative, massively scalable solutions.
  • MobiStealth - Mobistealth Cell Phone Spy Software empowers you to get the answers you truly want and deserve. Including a host of advanced surveillance features, our Cell Phone Spy Software secretly monitors all cell phone activities and sends the information back to your Mobistealth user account.
  • Snoopy - Snoopy is a distributed tracking and profiling framework
  • Stalker - STALKER is a tool to reconstruct all captured traffic (wired or wireless alike) and parse out all of the “interesting” information disclosures.  It goes beyond just grabbing passwords and emails out of the air as it attempts to build a complete profile of your target(s).  You would be amazed at how much data you can collect in 15 minutes.
  • LinkedIn Maps - Your professional world. Visualized. Map your professional network to understand the relationships between you and your connections
  • LittleSis - LittleSis is a free database of who-knows-who at the heights of business and government.
  • Entity Cube - EntityCube is a research prototype for exploring object-level search technologies, which automatically summarizes the Web for entities (such as people, locations and organizations) with a modest web presence.
  • TinEye - TinEye is a reverse image search engine built by Idée currently in beta. Give it an image and it will tell you where the image appears on the web.
  • Google Hacking DB - Google Search Query Fu to find the secret sauce
  • ServerSniff - ServerSniff.net – Your free “Swiss Army Knife” for networking, serverchecks and routing with many many little toys and tools for administrators, webmasters, developers, powerusers und security-aware users.
  • MyIPNeighbours - My IP Neighbors lets you find out if any other web sites (“virtual hosts”) are hosted on a given web server.
  • Social Mention - Social Mention is a social media search engine that searches user-generated content such as blogs, comments, bookmarks, events, news, videos, and more
  • Glass Door - Search jobs then look inside. Company salaries, reviews, interview questions, and more – all posted anonymously by employees and job seekers.
  • NameCHK - Check to see if your desired username or vanity url is still available at dozens of popular Social Networking and Social Bookmarking websites.
  • Scythe - The ability to test a range of email addresses (or account names) across a range of websites (e.g. social media, blogging platforms, etc…) to find where those “targets” have active accounts.
  • Recon-NG – A nice Python Script that automates recon on LinkedIn, Jigsaw, Shodan and some search engine fu.
  • Pushpin – Awesome little Python script that will identify every tweet, flicker pic and Youtube video within an area of a specific Geo address.
  • Silobreaker – Enterprise Semantic Search Engine, allows virtualisation of data, analytics and exploration of key data.
  • Google Trends – See what are the popular related topics people are searching for. This will help widen your search scope.
  • Google Alerts - Google Alerts are email updates of the latest relevant Google results (web, news, etc.) based on your queries.
  • Addict-o-matic – Nice little search aggregator. Allows you to enter a search term and build a page from search and social networking sites.
  • PasteLert - PasteLert is a simple system to search pastebin.com and set up alerts (like google alerts) for pastebin.com entries. This means you will automatically recieve email whenever your term(s) is/are found in new pastebin entries!
  • Kurrently – Real Time Search Engine for Social Media.
  • CheckUsernames - Check for usernames across 160 Social Networking Sites.
  • Whos Talkin - social media search tool that allows users to search for conversations surrounding the topics that they care about most.
  • 192 - Search for People, Businesses and Places in the UK.
  • Esearchy - Esearchy is a small library capable of searching the internet for email addresses. It can also search for emails within supported documents.
  • TouchGraph SEO – Java based tool for importing and visualising various data types.
  • TalkBack - Talkback is a web-based system to view trending vulnerability and security research data mined from social-media.
  • Tweet Archivist - Tweets are ephemeral. Tweets disappear. Why? That’s the way Twitter is designed. Tweet Archivist can save those tweets before they’re gone. Now, to be clear, Tweet Archivist is not an archive of every tweet ever tweeted. It doesn’t have a database of all tweets.

Its not listed above, but of course popular Social Networks such as Facebook, Twitter, LinkedIn and alike have a wealth of information. Of course also consider older sources that are now less popular, its amazing what people leave behind on stuff like MySpace. Also remember that search engines show you stuff thats popular, not perhaps the obscure stuff you are searching for, so get creative with your search queries and use the various tools at your disposal.

Lastly I will add alot of Social Engineers dont have alot of global exposure, so do your homework of where you are targeting. If you are targeting Japan for example their number 1 Social Network is not Facebook, so you need to do recon in the right places, and put in the extra legwork to gain the relevant access.

  • 0
  • 0
    觉得还不错? 一键收藏
  • 0
智慧校园整体解决方案是响应国家教育信息化政策,结合教育改革和技术创新的产物。该方案以物联网、大数据、人工智能和移动互联技术为基础,旨在打造一个安全、高效、互动且环保的教育环境。方案强调从数字化校园向智慧校园的转变,通过自动数据采集、智能分析和按需服务,实现校园业务的智能化管理。 方案的总体设计原则包括应用至上、分层设计和互联互通,确保系统能够满足不同用户角色的需求,并实现数据和资源的整合与共享。框架设计涵盖了校园安全、管理、教学、环境等多个方面,构建了一个全面的校园应用生态系统。这包括智慧安全系统、校园身份识别、智能排课及选课系统、智慧学习系统、精品录播教室方案等,以支持个性化学习和教学评估。 建设内容突出了智慧安全和智慧管理的重要性。智慧安全管理通过分布式录播系统和紧急预案一键启动功能,增强校园安全预警和事件响应能力。智慧管理系统则利用物联网技术,实现人员和设备的智能管理,提高校园运营效率。 智慧教学部分,方案提供了智慧学习系统和精品录播教室方案,支持专业级学习硬件和智能化网络管理,促进个性化学习和教学资源的高效利用。同时,教学质量评估中心和资源应用平台的建设,旨在提升教学评估的科学性和教育资源的共享性。 智慧环境建设则侧重于基于物联网的设备管理,通过智慧教室管理系统实现教室环境的智能控制和能效管理,打造绿色、节能的校园环境。电子班牌和校园信息发布系统的建设,将作为智慧校园的核心和入口,提供教务、一卡通、图书馆等系统的集成信息。 总体而言,智慧校园整体解决方案通过集成先进技术,不仅提升了校园的信息化水平,而且优化了教学和管理流程,为学生、教师和家长提供了更加便捷、个性化的教育体验。
如何寻找bot / osint工具: 寻找bot工具通常需要采取以下步骤: 1. 搜索引擎:使用搜索引擎,如Google,Bing或百度,搜索关键词“bot工具”。您将会找到与您的搜索相关的许多网页、博客和论坛帖子,这些资源可能会详细介绍不同类型的bot工具。 2. 社交媒体渠道:关注安全专家、黑客或开发者社交媒体账户,他们经常发布有关bot工具的文章、推文或GitHub链接。您可以在Twitter、LinkedIn和专业的安全讨论组中发现这些信息。 3. 开源社区:访问像GitHub这样的开源代码托管平台,动态搜索“bot”或与bot相关的关键词。很多开源bot项目会将代码公开并为用户提供下载和使用。 寻找OSINT(开放源情报)工具的步骤有些类似: 1. 开源情报社区:加入与开源情报相关的讨论组和社区,例如OSINT分析师、研究者和爱好者的专业论坛。这些社区成员经常分享他们使用和推荐的工具。 2. OSINT工具列表:访问网站和博客,因为它们常常提供有关当前流行的OSINT工具的详细信息和列表。搜索“OSINT工具列表”可以帮助您找到相关资源。 3. 开源情报工具库:一些社区维护并分享开源情报工具的集合。您可以在这些库中找到各种类型的OSINT工具,并从中选择适合您需求的。 4. 搜索引擎扩展程序:搜索浏览器的扩展程序商店,例如Chrome Web Store或Firefox扩展程序市场,寻找与OSINT相关的插件。这些插件可以帮助您提取数据、搜索社交媒体信息或进行数字痕迹分析等。 总结起来,寻找bot和OSINT工具需要积极搜索在线资源,参与专业社区讨论,访问开源代码托管平台,并利用浏览器扩展程序来发现和使用相关工具。




当前余额3.43前往充值 >
领取后你会自动成为博主和红包主的粉丝 规则
钱包余额 0


