Comprehensive List of OSINT Tools

Поделиться
HTML-код
  • Опубликовано: 16 июл 2024
  • If you are interested in sponsoring my videos, please see: forms.gle/aZm4raFyrmpmizUC7 I missed a good amount of tools that I personally like to use, and I might make this a series of itself.
    Apologies for some of the errors:
    It is Burpsuite REPEATER, not intruder to run dictionary attacks on URLs (portswigger.net/burp/document...)
    Shodan is the Search Engine for IPs, not Google (lulz)
    Great Resources/Shout outs:
    lockfale.com
    / jnordine
    osintframework.com
    www.amazon.com/Open-Source-In...
    www.sans.org/course/open-sour...
    www.tracelabs.org/
    Show notes:
    Username Finding: 1:17
    knowem.com/
    People Searching: 2:04
    thatsthem.com
    zabasearch.com
    Email: 2:42
    metricsparrow.com/toolkit/emai...
    verify-email.org/
    haveibeenpwned.com/
    ashley.cynic.al/
    DNS: 4:38
    dnsdumpster.com/
    github.com/aboul3la/Sublist3r
    github.com/s0md3v/Photon
    tools.kali.org/information-ga...
    censys.io
    github.com/elceef/dnstwist
    github.com/danielmiessler/Rob...
    Network Recon: 8:08
    www.shodan.io/
    Reverse Image Searching: 8:50
    www.google.com/imghp?hl=en
    www.tineye.com/
    Image/File Metadata: 9:06
    www.sno.phy.queensu.ca/~phil/...
    Transportation: 9:30
    flightaware.com/
    flight-data.adsbexchange.com/
    www.jetphotos.com/
    Satellite Tracking: 11:07
    www.n2yo.com/
    Geospatial Information Gathering: 11:33
    www.suncalc.org
    maps.google.com/
    yandex.com/maps/
    map.baidu.com/
    www.bing.com/maps
    / strava
    Code Searching: 12:50
    github.com/
    publicwww.com/
    en.wikipedia.org/wiki/Google_...
    Archiving: 13:31
    web.archive.org/
    archive.is/
    support.google.com/websearch/...
    File Checking: 14:35
    www.virustotal.com/
    www.nsa.gov/resources/everyon...
    Exploits: 15:23
    www.exploit-db.com/
    www.metasploit.com/
    mvfjfugdwgc5uwho.onion/
    Threat Intelligence: 15:57
    viz.greynoise.io/
    badpackets.net/
    / bad_packets
    Vulnerabilities: 16:35
    cve.mitre.org/
    nvd.nist.gov/
    Tools: 17:12
    www.hunch.ly/
    www.paterva.com/ RUclips Affiliate Links
    Camera Setup:
    Camera: Canon EOS SL2: amzn.to/39Ca5Np
    Rode VideoMic Go: amzn.to/38N2BYM
    Mics:
    Blue Snowball: amzn.to/3sxE6qy
    Blue Yeti: amzn.to/3nSrrKV
    Mic Arm: amzn.to/35J2Lyz
    Wardriving Setup:
    Raspberry Pi 4: amzn.to/38NOa6F
    USB GPS Dongle: amzn.to/2XGv1NI
    Wireless NIC: amzn.to/3iiyOKP
    Books:
    Social Engineering: The Science of Human Hacking: amzn.to/3qqDzoo
    Countdown to Zero Day: amzn.to/35HMpGs
    Sandworm: amzn.to/35LWGBf
    Open Source Intelligence Techniques: Resources for Searching and Analyzing Online Information: amzn.to/2NcJnnf

Комментарии • 90

  • @hunterg.418
    @hunterg.418 4 года назад +15

    I just wanted to tell and compliment you on such a great video with absolutely no bs. I subscribed as soon as you mentioned that's them. I had never heard of that before, and it is super awesome.

    • @0x4rk0
      @0x4rk0  4 года назад +1

      Glad to hear that! And thank you

  • @kazimafzal
    @kazimafzal 3 года назад +2

    Sub'd -- very concise to the point yet with all required info. Keep em coming!

  • @khandarwilliam5439
    @khandarwilliam5439 4 года назад +3

    The description is GOLD

  • @Cneq
    @Cneq 3 года назад +7

    "very advanced google searching"
    lmao love it

  • @ghettoflyfishing
    @ghettoflyfishing 4 года назад +14

    yea man, that OSINT Framework truly a decent compilation of information. Thanks for breaking it down. I usually hit it a couple of times a week and pick a couple of tools or sites and see how they function. Some of them I add to my tool belt. :-) Shodan and Maltego are massive and worth the time.

  • @abhidey7299
    @abhidey7299 4 года назад +2

    An excellent video sir.

  • @gabrielpotvin7334
    @gabrielpotvin7334 4 года назад +2

    Really cool video. I appreciate that you went beyond covering 1,001 different flavors of TheHarvester, or explaining the 'deep intricacies' of using quotes in your Google search queries.

  • @michah5761
    @michah5761 4 года назад +1

    Nice work dude!

    • @0x4rk0
      @0x4rk0  4 года назад

      Thank you!

  • @w0oties
    @w0oties Год назад +1

    Thanks! Very informative

  • @okwudibosea6452
    @okwudibosea6452 3 года назад

    This video is amazing, thanks.

  • @sk3ffingtonai
    @sk3ffingtonai 3 года назад

    Excellent. Thank you.

  • @jasonbond5756
    @jasonbond5756 4 года назад +1

    Awesome Content.

  • @TheJpmaster69
    @TheJpmaster69 Год назад

    Holy shit, this is the Best osint vídeo ive ever seen

  • @jeffstowe4860
    @jeffstowe4860 3 года назад +1

    Thank You!

  • @tonkjon6296
    @tonkjon6296 2 года назад +1

    Buen video, amigo.

  • @TalsonHacks
    @TalsonHacks 3 года назад

    These tools are just CRAZY cool

  • @bernardsilverman7758
    @bernardsilverman7758 2 года назад +1

    Thanks!

  • @zugoon
    @zugoon Год назад

    "this tool is pretty cool" was my favorite line

  • @omermohammed4178
    @omermohammed4178 4 года назад +2

    woooow , really i learnt a lot from this video , waiting for more about OSINT topic

    • @omermohammed4178
      @omermohammed4178 4 года назад

      hi , may you do short video about the best sources to learn hacking from the beginning

    • @0x4rk0
      @0x4rk0  4 года назад +1

      Dony Batchan I believe I made one already, if not, I will

    • @omermohammed4178
      @omermohammed4178 4 года назад

      @@0x4rk0 i am waiting for the best sources to learn ethical hacking... thanks my friend

    • @cey1
      @cey1 4 года назад

      Are there any tutorials available? Or is it too much to learn?

    • @0x4rk0
      @0x4rk0  4 года назад

      Ceyda Charming tutorials on what exactly?

  • @christianhernandez5208
    @christianhernandez5208 4 года назад

    DOPE!!!!!!

  • @arunrmyt
    @arunrmyt 4 года назад +1

    Wonderful!

  • @FurbyEire
    @FurbyEire 4 года назад +1

    Keep up the good work bro

  • @positivitychannel5551
    @positivitychannel5551 3 года назад

    I love Maltego!!!!

  • @danell12345
    @danell12345 4 года назад +34

    Who's here for Tracelabs prep ;)

    • @0x4rk0
      @0x4rk0  4 года назад +2

      Rubix me! :P

    • @JJ-vp3bd
      @JJ-vp3bd 4 года назад

      @@0x4rk0 Hey Boss. Is there anything new related to Facebook and finding out Photo likes? Or comments from users?

    • @0x4rk0
      @0x4rk0  4 года назад +1

      R J new as in a video I’ve made? Or a new Facebook feature?

    • @JJ-vp3bd
      @JJ-vp3bd 4 года назад

      @@0x4rk0 Either. I been lost since Facebook Graph went down a while back

    • @2thecurve
      @2thecurve 3 года назад

      Love tracelabs

  • @royteicher
    @royteicher 4 года назад +3

    Hey Cody, That's an amazing video!
    I wanted to ask you, could you please elaborate more in detail about the process you make after getting all of the subdomains from the DNSdumpster? You've explained a methodology of actions I am not familiar with which I believe to be very crucial.
    Thank you very much!

    • @0x4rk0
      @0x4rk0  4 года назад

      My usual process is to export the results to a CSV and scan those IPs with masscan

  • @upsty6499
    @upsty6499 3 года назад +1

    Ty for this, it will help some of our agencies and truly help them protect the public and not so much Wallstreet

  • @cyberguy9089
    @cyberguy9089 4 года назад +6

    Probably going to create a python script for OSInt because it's super needed nowadays

    • @Nick_Tag
      @Nick_Tag 4 года назад +1

      maybe you can do it as a Colab notebook and report back with the results :)

    • @cyberguy9089
      @cyberguy9089 4 года назад

      @@Nick_Tag makes even more since!

    • @r2er750
      @r2er750 4 года назад +1

      what kind of OSINT tool are you making? and can you post it on github? might aswell just send me a link to ur profile

    • @cyclonus01
      @cyclonus01 2 года назад

      Nobody cares

  • @vax_gax_lax_bax_max_vax2578
    @vax_gax_lax_bax_max_vax2578 3 года назад +1

    And here I thought you would type in your email on osinit and it will show you every place you are registered in...
    Turns out you have to go to each site separately and search there in various ways

  • @webflyer035
    @webflyer035 2 года назад

    7:38 I'm goona crawl it manually! 😂LMAO

  • @lholdsworth2474
    @lholdsworth2474 4 года назад

    +++ Thanks +++

  • @newworld2816
    @newworld2816 3 года назад +1

    HELLO, congratulations on the video and explanation,
    but I personally have 3 days dealing with the location of a photo, but unfortunately I can not find the location, although I have tried all the options explained in your video, can anyone give me any ideas please? I just want to know the location of this photo, thank you who can help me

  • @anteconfig5391
    @anteconfig5391 4 года назад +1

    I don't know what you're talking about with the bing maps but it sounds like googleMaps satellite mode.
    It's basically a picture taken from satellites

    • @0x4rk0
      @0x4rk0  4 года назад

      AnteConfig bing maps has birds eye view, which is taken from airplanes. Google maps doesn’t have that

    • @terrypen
      @terrypen 4 года назад +1

      @@0x4rk0 I'm not sure either! Bing has Aerial view but so does Google. I'm not really seeing that much of a difference between them. Google lets you zoom in more but it gets more pixelated. Two different Imaging companies.

    • @0x4rk0
      @0x4rk0  4 года назад

      Terry Pendergrass that is true, my latest video actually showcases two different satellite images of the same location. However on bing, if you right click (let’s use Seattle as an example) and click on birds eye view, you’ll get images from a plane. Better image quality and is 3D

  • @jjej1242
    @jjej1242 4 года назад +1

    Great video. How to investigate VoIP number associated with whatsapp/instagram and track the current GPS location and the person operating. Let me know if you have any ideas or suggestions.

    • @0x4rk0
      @0x4rk0  4 года назад

      jj Ej not to familiar with OSINT on WhatsApp since it’s pretty closed down (but will look into it!). Instagram is easy with geotags, tags as well as google dorking to see where a private account has commented/been mentioned

  • @LiLi-rf6rd
    @LiLi-rf6rd 4 года назад

    what would be your advice to those who just starting, where to start?

    • @0x4rk0
      @0x4rk0  3 года назад +1

      Check out Quiztime on twitter. Start there!

  • @damonrands6698
    @damonrands6698 3 года назад +1

    Shodan is the google of search engines ! Lol 😂

    • @0x4rk0
      @0x4rk0  3 года назад

      Did I say that? LOL

    • @0x4rk0
      @0x4rk0  3 года назад

      Shodan is archived vulns you dork.

  • @AlexeyShort
    @AlexeyShort 3 года назад

    Geting deep in to OSINT. Which way to go?

  • @menwithapthy
    @menwithapthy 4 года назад

    Trying Thatsthem. Why does it bring me to Spokeo after looking someone up?

    • @0x4rk0
      @0x4rk0  4 года назад

      RAHM couldn’t tell you, not familiar with what that is

    • @josefgajdos6603
      @josefgajdos6603 4 года назад

      @@0x4rk0 ThatsThem stopped working, u got any alternative for complex reverse search ? cuz other tools on OSINT framework r paid like reversegenie.com (looks good tho)

  • @xichen8358
    @xichen8358 3 года назад

    ThatsThem doesn't seem to do a great job with incomes. I have a friend that is in a senior management position with he never left the "barrio" neighbor where he grew up. So I know he makes well over $100k, ThatsThem estimates him at less than $50k/year. So it has to be basing that on the average wealth/income of the area. Other than that, ThatsThem seems to pull good data.
    BTW, great video.

  • @MikeHunt-rw4gf
    @MikeHunt-rw4gf 2 года назад

    Algorithm

  • @trollin456
    @trollin456 2 года назад

    im convinced you're partially slow. Ill pray for you.

    • @0x4rk0
      @0x4rk0  2 года назад

      lol thanks

    • @mal2029
      @mal2029 2 года назад +1

      Says the person who named their child Krew

    • @trollin456
      @trollin456 2 года назад

      @@mal2029 that made zero sense.

    • @trollin456
      @trollin456 2 года назад

      @@0x4rk0 I'm literally just trolling brother. Anyway to contact you directly?

  • @temamoller1325
    @temamoller1325 4 года назад

    Spanish..😔

  • @Augn-ff3dp
    @Augn-ff3dp 2 года назад

    Shit man take a breath lol

    • @0x4rk0
      @0x4rk0  2 года назад

      I’ll try to

  • @papediouf6495
    @papediouf6495 3 года назад

    Too bad you don't spend enough time on each tool.

  • @sam-yx8fr
    @sam-yx8fr 4 года назад +2

    some dude has been harassing someone and i know a burner email he has i want to find his phone number

  • @RicondaRacing
    @RicondaRacing 2 года назад +2

    that's a lot of shit!

  • @typicalabnormal7847
    @typicalabnormal7847 4 года назад

    You dont need a special tool to find people in scandinavian countries

  • @fuzzymoto896
    @fuzzymoto896 2 года назад

    @0x4rkØ Do you know or recommend anyone to do this type of investigation professionally? I'm familiar with this type of work and have some researching that needs to be completed. I'm at the stage now that I'd like to engage a professional that can pull in more data.

    • @0x4rk0
      @0x4rk0  2 года назад

      I do this work professionally. I would encourage you to make a Linkedin and start connecting with folks and engaging in communites (TraceLabs, Recon Village, etc)

  • @TheThingIs415
    @TheThingIs415 3 года назад

    Arr the sites you presented all on osintframework.com? Or did you add additional ones? Thanks for the reply!

    • @0x4rk0
      @0x4rk0  3 года назад +1

      A good chunk will be found on there, it’s been a while since I made this to call out what’s not on there