Skip to content

Latest commit

 

History

History
125 lines (64 loc) · 8.27 KB

File metadata and controls

125 lines (64 loc) · 8.27 KB

alt text

The ceiling of the lower world is almost always the bottom of the upper.


OSINT Repos List, Repository with gathered from GitHub utilities for OSINT, Development and DevOps. The number of artifacts in the repository exceeded 2100: https://github.com/bormaxi8080/osint-repos-list


A Beginner’s Guide to Identifying Explosive Ordnance in Social Media Imagery from Bellingcat: https://www.bellingcat.com/resources/how-tos/2024/07/31/a-beginners-guide-to-identifying-explosive-ordnance-in-social-media-imagery/


Obsidian OSINT Templates

by SystemSculpt: https://github.com/SystemSculpt/obsidian_templates

by WebBreacher: https://github.com/WebBreacher/obsidian-osint-templates

by oryon-osint: https://github.com/oryon-osint/investigation-templates


The draft UN Cybercrime Agreement Agreement opens the way to total surveillance. International human rights organizations expressed serious concerns about the current version of the UN Cybercrime draft draft version. At the upcoming negotiations, it is planned to approve a document that, according to activists, will strengthen the surveillance and criminalization of journalists, human rights activists, children and representatives of civil society around the world: https://roskomsvoboda.org/ru/post/dogovor-oon-o-kiberprestup-vvodit-slezhku/


Awesome Crawler. A collection of awesome web crawlers, spiders in different languages: https://github.com/BruceDone/awesome-crawler

Meta OSINT. A tool to quickly identify relevant, publicly-available open source intelligence ("OSINT") tools and resources, saving valuable time during investigations, research, and analysis: https://metaosint.github.io/table


OSINT Tools, Services and Investigations:

Discover the latest posts from Instagram, Facebook, or TikTok using hashtags, including author details. Geolocate photo with help of AI or run face recognition to collect even more information and get complete situational awareness. Try on https://os-surveillance.io

Overture Maps Explorer (Beta). Large database of building information: category, name, website, social media, phone, etc. You can view on the map or download data of objects in a certain area in GeoJSON format: https://explore.overturemaps.org

Apple Maps Online. Now it's not just the app, but the website as well. In general, far behind Google Maps, but can be used to gather additional information about a place (clicking on an object displays images from Getty Images and data from Wikipedia): http://beta.maps.apple.com

Splash is a javascript rendering service with an HTTP API. It's a lightweight browser with an HTTP API, implemented in Python 3 using Twisted and QT5: https://github.com/scrapinghub/splash

Luigi is a Python module that helps you build complex pipelines of batch jobs. It handles dependency resolution, workflow management, visualization etc. It also comes with Hadoop support built in: https://github.com/spotify/luigi

SwaggerSpy is a tool designed for automated Open Source Intelligence (OSINT) on SwaggerHub. This project aims to streamline the process of gathering intelligence from APIs documented on SwaggerHub, providing valuable insights for security researchers, developers, and IT professionals: https://github.com/UndeadSec/SwaggerSpy

Varanus. A command line spider monitoring tool. This tool wraps an API POST request to scrapinghub's job and other data storage API: https://github.com/scrapinghub/varanus

Skinfer is a tool for inferring and merging JSON schemas: https://github.com/scrapinghub/skinfer

SquatSquasher. A tool to find domains (by primary domain name) that can be used for type squatting and other phishing attacks: https://github.com/Stuub/SquatSquasher

Discover more subdomains during your recon by extracting subdomains from TLS certificates. Integrate Cero into your recon automation for better results: https://github.com/glebarez/cero


AI:

Formasaurus tells you the type of an HTML form and its fields using machine learning: https://github.com/scrapinghub/Formasaurus


Software Development:

Autologin is a library that makes it easier for web spiders to crawl websites that require login. Provide it with credentials and a URL or the html source of a page (normally the homepage), and it will attempt to login for you. Cookies are returned to be used by your spider: https://github.com/scrapinghub/autologin

XAdmin. Drop-in replacement of Django admin comes with lots of goodies, fully extensible with plugin support, pretty UI based on Twitter Bootstrap: https://github.com/sshwsfc/xadmin

Woodpecker is a simple yet powerful CI/CD engine with great extensibility: https://github.com/woodpecker-ci/woodpecker

Apache Fury (incubating) is a blazingly-fast multi-language serialization framework powered by JIT (just-in-time compilation) and zero-copy, providing up to 170x performance and ultimate ease of use: https://github.com/apache/fury

Botkit is an open source developer tool for building chat bots, apps and custom integrations for major messaging platforms: https://github.com/howdyai/botkit#

Onefetch is a command-line Git information tool written in Rust that displays project information and code statistics for a local Git repository directly to your terminal. The tool is completely offline - no network access is required: https://github.com/o2sh/onefetch/

Gitness is an Open Source developer platform with Source Control management, Continuous Integration and Continuous Delivery: https://github.com/harness/gitness#


Linux & DevOps:

Pi.Alert. Scan the devices connected to your WIFI / LAN and alert you the connection of unknown devices. It also warns if a "always connected" device disconnects. In addition, it is possible to check web services for availability. For this purpose HTTP status codes and the response time of the service are evaluated: https://github.com/leiweibau/Pi.Alert

Kapitan aims to be your one-stop tool to help you manage the ever growing complexity of your configurations.: https://github.com/kapicorp/kapitan


Flipper Zero:

A collection of awesome resources for the Flipper Zero device with repository stars and forks: https://github.com/Correia-jpv/fucking-awesome-flipperzero


New from CyberDetective:

How to use robots.txt for OSINT: What is a robots.txt File, Importance of robots.txt for OSINT & Cybersecurity Professionals, How to find a Robot.txt file on a website, How to Find Hidden Information in robots.txt: https://osintteam.blog/robots-txt-a-file-we-all-better-know-a-bit-about-218794b6c1c7

Bitcoin Tracking for Law Enforcement. A Guide to Crypto Investigations by twitter.com/ervin_zubic. Bitcoin Addresses Explained, How Bitcoin Transactions Work, Following Bitcoin on the Blockchain, Identifying Change Addresses, Visualization Tools and more: https://www.acfcs.org/acfcs-contributor-report-bitcoin-tracking-for-law-enforcement

Awesome Dutch OSINT. Companies, People, Laws, Geo-information, Airspace, Cars and more: https://github.com/wvanderp/awesome-dutch-osint

Browser Autofill Phishing. A very, very old trick, but still relevant. Live demo https://anttiviljami.github.io/browser-autofill-phishing/ See the data you can pass to sites during form autocompletion via the developer console. Github repo https://github.com/anttiviljami/browser-autofill-phishing


New from GitHub Community:

Saladict. All-in-one professional pop-up dictionary and page translator which supports multiple search modes, page translations, new word notebook and PDF selection searching: https://github.com/crimx/ext-saladict#?tab=readme-ov-file


OSINTech's Timeline

LinkedIn: OSINTech's Featured Timeline

SubStack: OSINTech's Substack


WARNING! All tools, programs and techniques published in this article and repository are used for informational, educational purposes or for information security purposes. The authors are not responsible for the activities that users of these tools and techniques may carry out, and urge them not to use them to carry out harmful or destructive activities directed against other users or groups on the Internet.