OS Int Tools

A list of useful Open-Source Intelligence Tools

OS Int Tools
Photo by Max Langelott / Unsplash

Useful tools for performing Open-Source Intelligence investigations.

  1. Bellingcat's Online Investigation Toolkit - https://bellingcat.gitbook.io/toolkit/more/all-tools
  2. Finding devices - network-side
    1. Shodan - https://www.shodan.io/
    2. Censys - https://censys.io/
    3. FOFA - https://en.fofa.info/
  3. Visualise results
    1. Maltego - https://www.maltego.com/
  4. Finding touch-points from other resources (DNS, social media, etc)
    1. The Harvester - https://github.com/laramies/theHarvester
    2. Recon-NG - https://bitbucket.org/LaNMaSteR53/recon-ng
    3. SpiderFoot - https://github.com/smicallef/spiderfoot
    4. DNS Dumpster - https://dnsdumpster.com/
    5. Subdomain Finder - https://subdomainfinder.c99.nl/
    6. Certificate Search - https://crt.sh/
  5. Collections harvesters
    1. OSINT Framework - https://osintframework.com/
    2. OSINT Combine - https://osintcombine.com/
  6. Social Media
    1. Namechk - https://github.com/GONZOsint/Namechk
    2. Sherlock - https://github.com/sherlock-project/sherlock
  7. Threat Intel
    1. FBI Watchdog - seized domains - https://github.com/DarkWebInformer/FBI_Watchdog
  8. Data Breaches
    1. Have I Been Pwned – https://haveibeenpwned.com/
  9. Abuse IP DB – https://www.abuseipdb.com/ 
  10. urlscan.io – https://urlscan.io/ 
  11. CentralOps Network Tools – https://centralops.net/co/ 
  12. VirusTotal – https://www.virustotal.com/ 
  13. Hybrid Analysis – https://www.hybrid-analysis.com/ 
  14. MXToolbox – https://mxtoolbox.com/ 
  15. SSL Labs’ SSL Test – https://www.ssllabs.com/ssltest/ 
  16. CIRCL’s Lookyloo – https://lookyloo.circl.lu/ 
  17. ARIN Whois – https://www.arin.net/ 
  18. CVE List – https://cve.mitre.org/cve/ 
  19. AlienVault Open Threat Exchange (OTX) – https://otx.alienvault.com/
  20. ThreatYeti - https://www.threatyeti.com/
  21. IP API - https://ipapi.is/
  22. Typo-Squatted domains - https://haveibeensquatted.com/
  23. IP and Domain info - https://ipinfo.io/ and https://host.io/
  24. WiFi mapping - https://wigle.net/

Credits

Subscribe to Deuxieme RE Banque News

Sign up now to get access to the library of members-only issues.
Jamie Larson
Subscribe