Top of my free OSINT tools in 2023
Datashare and Pinpoint
Datashare and Pinpoint are for eDiscovery… The term is unfamiliar for Russia, so I’ll explain it. eDiscovery is the process of identifying, collecting, validating, and analyzing digital evidence. If it is quite simple — the electronic material of the investigation. Compare, 10 volumes of a criminal case or a link to a similar case that can be shared online with external users, and it also has the ability to end-to-end analytics and search through materials. In other words, a must have for the execution of investigations.
Archivarius 3000 and DtSearch
Archivarius 3000 and DtSearch are designed to work with arrays of textual information. They are omnivorous, can read most types of files, and also extract entities from them (nicknames, email addresses, phone numbers, hyperlinks). Allows you to search for information in large amounts of information, including using extended search operators. They also have the functionality to search for information on partial data (for example, by email address or phone number, partially hidden by privacy settings). These two tools can also serve as a means to quickly create a non-relational database.
Venator
Spreadsheets
Breadcrumbs and Shard
Breadcrumbs is an analytical platform that allows you to explore the blockchain of individual cryptocurrencies, including functionality for conducting investigations, monitoring, tracking and sharing up-to-date information about blockchain transactions, as well as identifying individual crypto wallets. Closer to the middle of last year, a Russian analogue appeared on the market — the Shard service, which could be connected to at no extra charge.
Start
Maltego and SpiderFoot
Maltego and SpiderFoot are entire software systems for OSINT, which may include other services (by API), as well as databases. Allow connection of own services and data. Despite some antediluvian interfaces (lack of file forensics, timelines and cartographic presentation of data), they allow you to build an investigation graph, as well as transfer it to other users. Depending on the filling of programs with external modules, they can conduct any kind of investigation.
Dork Search, Advangle and DorkGenius
Dork Search
Dork Search is a tool for automating and suggesting advanced search operators (Google Dorks). It is useful not to delve into long manuals and select dorks by the “scientific poke method”. In 2023, I found an alternative service, Advangle, which turned out to be at least as good. Well, besides him, I advise you to try the DorkGenius service, which uses AI to create advanced search queries for Google, Bing and DuckDuckGo. Now I use all three products in my work.
CanaryTokens and IP Logger
CanaryTokens and IP Logger are popular loggers, that is, services that allow you to get information about the connection and devices of Internet users. They are the basis for creating the simplest honeypots in the form of a hyperlink, an image, an email, a document, an invisible pixel, and even a credit card. Over the past year, both services have significantly added functionality. Now they allow the collection of a complete digital fingerprint of users, which increases the effectiveness of their use for the investigation of crimes, as well as in active OSINT events.
Universal Search and Yandex.Audience
Universal Search
And finally, I also cannot fail to mention these tools in the selection. Universal Search collects and automates various OSINT methods. And it does it so well that young professionals using it in their work give the impression of experienced gurus. Yandex.Audience is a promising domestic tool for ADINT (advertising identifier intelligence). ADINT allows you to get a social graph and track movements by email address, phone number, MAC address, and identifiers of iOS and Android operating systems.
Igor S. Bederov
Comments
Post a Comment