K2SOsint

K2SOsint

@k2sosint.bsky.social

Lead Intel Analyst & #OSINT Trainer @ DataExpert | Skeets are informative or personal opinions.

2,901 Followers 167 Following 45 Posts Joined Jul 2023
5 months ago
Post image

I am now working over 6 months in a CTI-role and have noticed that some things do not change. Keeping up with #OSINT and #CTI resources is always a challenge.

👇🏼👇🏼👇🏼
That’s how Legendary_OSINT started:
🔗 github.com/k2sosint/leg...

An accessible overview of OSINT tools & methods. Updated regularly.

2 0 0 0
8 months ago
Preview
OSINT or Community-generated Intelligence: A Thought Experiment Picture this: you grab your dashcam, deliberately drive through specific neighborhoods, and upload everything to Mapillary with the explicit intention that OSINT researchers will use it later. Are you...

🔍 OSINT is changing, and not just because of new tools or the rise of AI.

👉🏻Increasingly, there are shifts from passive collection to active creation of open source data. What does this mean for how we define our work?

You can find my article here: shorturl.at/t2ZdW

#OSINT #intelligence

3 0 0 0
9 months ago
Preview
Maltego welcomes Hunchly to expand OSINT capabilities Together, Maltego and Hunchly bring investigators a stronger, more complete workflow by combining forensic evidence collection with advanced data analysis, enrichment, and monitoring.

#Maltego Technologies will be adding #Hunchly to their #OSINT ecosystem.

Maltego and Hunchly will work closely in the coming months, to ensure a smooth integration. Would this mean we will get a Maltego Capture or Maltego Collection? 🙂

More information: www.maltego.com/blog/maltego...

1 0 0 0
10 months ago
Preview
EUVD European Vulnerability Database

ENISA just dropped the EU Vulnerability Database (EUVD), a central hub for vuln data, mandated by NIS2. Open access, actionable info, and support for open-source tools like Vulnerability-Lookup. Big move for EU cyber resilience.

Check it here: euvd.enisa.europa.eu

#CyberThreatIntel #EUVD #VulnMgmt

6 3 0 0
10 months ago
Update to How CISA Shares Cyber-Related Alerts and Notifications | CISA CISA is changing how we announce cybersecurity updates and the release of new guidance.

CISA just changed how it shares cyber alerts:

🚨 Only urgent threats on their Alerts page
📬 Routine stuff? Email & socials
🛠️ KEV? Use GovDelivery

Link: www.cisa.gov/news-events/...

Now’s a good time to check how you’re getting CISA alerts. Don’t miss the signal. #CyberThreatIntel #CISA #Infosec

1 1 0 0
10 months ago
Preview
Russian threat group COLDRIVER expands its targeting of Western officials to include the use of malware Threat Analysis Group sheds light on Russian threat COLDRIVER’s use of malware.

COLDRIVER just leveled up.

Google TAG says the Russian APT is now dropping Rust-based malware (SPICA) via fake PDFs + malicious LNK files in ZIPs. From phishing creds to custom malware—this is a serious pivot.

Article: blog.google/threat-analy...

#CyberThreatIntel #APT #COLDRIVER #Malware

1 0 0 0
1 year ago

Except for @proton.me calendar, all other services are up and running again. #protonmail #protonvpn #osint

1 0 0 0
1 year ago
Preview
a computer screen displays a message that says system failure ALT: a computer screen displays a message that says system failure

Proton services are currently down due to network issues...

status.proton.me

#protonvpn #protonmail #osint

2 1 1 1
1 year ago
Bluesky Video Downloader

And @lautie.bsky.social mentioned bsvdl.fly.dev for downloading videos as well!

5 1 0 0
1 year ago

True, but tools come and go. It's good to know how it is done manually as well 😉

1 0 0 0
1 year ago
Post image

More #OSINT tips for #BlueSky

- Clearsky.app let's you search accounts and shows top listed/blocked accounts last 24h.

- Deck.blue is a third party site for monitoring BlueSky (like Tweetdeck).

[2/2]

#socmint

13 6 3 0
1 year ago
Post image

A few quick #OSINT tips on the #BlueSky platform.

Find the ID-number in the source code when you search for did:plc:

Using Dev Mode in browser, you can find the profilepic link for a larger version.

Hope this helps, happy OSINTing!

[1/2]

#socmint

22 3 1 0
1 year ago
Preview
OSINT Quick Tips: That CashApp QR Code on The Web Might Actually Be Hiding a Profile Photo! If you do a lot of web-based OSINT research like I do, you’ve most likely conducted username searches using a powerful tool like that scurry out onto hundreds of websites in search of profile…

Been a while since I wrote an #OSINT blog, this one is a quick read on something I noticed recently while reviewing a CashApp profile on the web. Turned out there was more than meets the eye!
hatless1der.com/osint-quick-...

2 4 1 0
1 year ago
Post image

Representing DataExpert at InCyber Forum Europe in Lille these next few days.

Looking forward to the talks on #osint and #cybersecurity as well as meeting up with the community.

If you are there and want to grab une bière, send me a dm!

#dataexpert #incyber

2 0 0 0
2 years ago

As mentioned on X, was great to see the #osint community working together on alternatives. This week is a nice hook from your side on the alternatives!

2 0 0 0
2 years ago
Post image

Google has fixed the broken filetype: and ext: operators.

#OSINT #google #booleansearch

1 0 0 0
2 years ago
Post image

Just tried it with the same site as you and I am getting no results. Tried some other sites like cnn.com with the site operator and filetype and it works.

Maybe it's still a bit buggy?

0 0 1 0
2 years ago
Post image

For me it works with the site: operator too. See example with cnn.com

0 0 0 0
2 years ago

I can confirm it is working again!

1 0 0 0
2 years ago

filetype:pdf is working again today

5 1 1 0
2 years ago
Post image

Google reached out to me and it appears to be a bug!

2 0 0 0
2 years ago

Update: filetype:txt and filetype:py seem to be unaffected for now.

0 0 0 0
2 years ago

See webbreacher's comment. I agree that prompts will be probably the new way to search in the future.

1 0 0 0
2 years ago

Just tested this one: "Show me all pdf files from domain "https://xxxx.xxxx" It gives some results at first, but then ends up giving results from different sites.

0 0 0 0
2 years ago

Prompt style seems to be working for the moment: "show me all pdf files with OSINT in them". H/t @webbreacher.com

2 0 1 0
2 years ago

Ur welcome! Love your 21day guides 👍🏻

0 0 0 0
2 years ago
Post image

ICYMI, nitter.net is 'dead'.

According to Zedeus, the cert has expired and he will not renew it. Source: tinyurl.com/5yja5t43

Alternative is Twiiit.com, a proxied Nitter instance.

Be mindful though of possible OPSEC risks when using a third-party website.

#osint #twitter #nitter #osint4good

0 0 0 0
2 years ago

www.wired.com/story/how-to...

1 0 1 0
2 years ago
Post image

A big thank you to all of the students, OSINT- and other professionals, suppliers and all other wonderful people I have met, talked too, had fun with, or trained this past year!

Looking forward to what 2024 will bring.

(and yes, this is my happiest face)

#osint #starwars #dorkside

2 0 0 0
2 years ago

And some more:

🧑‍🎄 If a user linked their Threads to an Instagram profile, the user id will be the same.
🏷️When logged in, you can search for users and also for tags. Threads currently has a single tag limit, according to: www.theverge.com/2023/12/7/23...

Happy hunting!

#osint #threads

0 0 0 0