Resourceslist
Resourceslist
OSINT VM (tracelabs.org) - The Trace Labs team created a specialized OSINT VM specifically to bring
together the most effective OSINT tools and customized scripts. access to the most popular OSINT tools
and scripts all neatly packaged under one roof.
Currently supported more than 2000 sites (full list), search is launched against 500 popular sites in
descending order of popularity by default. Also supported checking of Tor sites, I2P sites, and domains
(via DNS resolving).
https://github.com/evilsocket/xray - XRay is a tool for network OSINT gathering, its goal is to make some
of the initial tasks of information gathering and network mapping automatic.
https://github.com/darryllane/Bluto - DNS Recon | Brute Forcer | DNS Zone Transfer | DNS Wild Card
Checks | DNS Wild Card Brute Forcer | Email Enumeration | Staff Enumeration | Compromised Account
Enumeration | MetaData Harvesting
http://www.edge-security.com/theharvester.php - The objective of this program is to gather emails,
subdomains, hosts, employee names, open ports and banners from different public sources like search
engines, PGP key servers and SHODAN computer database.
https://github.com/hrbrmstr/gdns - Tools to work with the Google DNS over HTTPS (DoH) API
https://github.com/infosec-au/altdns - Altdns is a DNS recon tool that allows for the discovery of
subdomains that conform to patterns. Altdns takes in words that could be present in subdomains under
a domain (such as test, dev, staging) as well as takes in a list of subdomains that you know of. From
these two lists that are provided as input to altdns, the tool then generates a massive output of
"altered" or "mutated" potential subdomains that could be present. It saves this output so that it can
then be used by your favourite DNS bruteforcing tool. Alternatively, the -r flag can be passed to altdns
so that once this output is generated, the tool can then resolve these subdomains (multi-threaded) and
save the results to a file. Altdns works best with large datasets. Having an initial dataset of 200 or more
subdomains should churn out some valid subdomains via the alterations generated
https://github.com/dxa4481/Snapper - A security tool for grabbing screenshots of many web hosts. This
tool is useful after DNS enumeration or after enumerating web hosts via nmap or nessus. A sample
output can be seen here: https://security.love/Snapper/output
https://github.com/misterch0c/twitterBFTD - Twitter back from the death looks in a user tweets history
for domain names that are available for registration.
------------------------------------------------------------------------------------------
Username Lookup
https://whatsmyname.app/ - This tool allows you to enumerate usernames across many websites
https://keybase.io/ - Keybase is an open source app. Keybase comes with everything you need to
manage your identity, create secure chats, and share files privately. It's free. Over 100,000 people have
joined Keybase so far to prove their identities, and it's growing rapidly. **NEEDS VALIDATION OF
AUTHENTICITY**
------------------------------------------------------------------------------------------
PEOPLE SEARCH
https://infotracer.com/ - Name, Email, phone, username, address, plate, vin, IP. NEEDS PAYMENT, 7-
DAY TRIAL FOR $3.95 THEN RECURRING MONTHLY $19.05. VALIDATED ACCURATE/LEGIT/NON-SCAM BY
VP
https://radaris.com/ - Mostly US. Good Social Media and video & images sresults for Canada
https://infotracer.com/ - A+ BB rep and significant online reputation. Mostly US but gives local results as
well (deep web search). Premium/Subscription service $3.95 7d Trial then $19.05USD/mo after if not
cancelled
https://webmii.com/ - US but web results returned for local/global
https://www.ancestry.ca/ - $14.99-$129.99
------------------------------------------------------------------------------------------
EMAIL ADDRESSES
https://hunter.io/ - Finds emails attached to a domain. Such as Calgary.ca would return city of Calgary
employee emails. 10 free per search, or $50/mo for 500 searches/mo up to $399/mo for 30k searches
Emails
https://www.readnotify.com/ - tells if someone reads an email. Uses MITM method of send to them
they send to recipient
------------------------------------------------------------------------------------------
PHONE NUMBERS
https://www.slydial.com/ - Slydial is a free voice messaging service that connects you directly to
someone's mobile voicemail. Slydial is a service of MobileSphere
https://calleridtest.com/ - Fast and accurate Caller ID (CNAM) as well as location, line type and more.
Our direct access to telecom data ensures accuracy.
https://thatsthem.com/reverse-phone-lookup
------------------------------------------------------------------------------------------
BUSINESSES/CORPORATE
https://corporateinformation.com/Country-Industry-Research-Links.aspx?c=124&i=General – Various
useful links about Canadian Corporations and businesses.
https://www.dnb.com/ - Utilize AI-driven ESG intelligence built from deep coverage of private and public
company data to manage risk. (Registration Lookup)
https://corp.owler.com/ - Hard-to-find company data, and strategic news alerts for savvy executives,
marketers and sales professionals NOT TESTED
https://ca.kompass.com/ - Business search by sector. Global B2B portal to find & contact products or
services suppliers
------------------------------------------------------------------------------------------
Password/Breaches
Haveibeenpwned
Dehashed
------------------------------------------------------------------------------------------
COMBO SERVICES
https://pentest-tools.com/alltools - As an anonymous user, you can do 2 Free Scans every 24 hours. This
allows you to test the Light version of our tools. $110 /month +
https://le-tools.com/ - Le-Tools.com provides open source softwares that have been created for
investigators, IT analysts and researchers
------------------------------------------------------------------------------------------
Domain Tools
WHOIS:
https://spyse.com/ whois + digital fingerprinter
https://centralops.net/co/DomainDossier.aspx
https://www.domainiq.com/
DISCOVERY:
Shodan
https://urlscan.io/about/ - urlscan.io is a free service to scan and analyse websites. When a URL is
submitted to urlscan.io, an automated process will browse to the URL like a regular user and record the
activity that this page navigation creates. This includes the domains and IPs contacted, the resources
(JavaScript, CSS, etc) requested from those domains, as well as additional information about the page
itself. urlscan.io will take a screenshot of the page, record the DOM content, JavaScript global variables,
cookies created by the page, and a myriad of other observations. If the site is targeting the users one of
the more than 400 brands tracked by urlscan.io, it will be highlighted as potentially malicious in the scan
results.
https://redirectdetective.com - Redirect Detective is free tool that allows you to do a full trace of a URL
Redirect. It will show you the complete path a redirect takes to get to the end point.
https://analyzeid.com/ - Find Other Websites Owned By The Same Person. Type the address of your
target website and see if the owner operates other sites.
http://letmecheck.it/ - Misc network tools. TCP ping, tcp/icmp traceroute, port scan, http header, DIG,
MTU Test
------------------------------------------------------------------------------------------
Lists
https://github.com/danielmiessler/SecLists/tree/master/Discovery/DNS 12 lists
HOW TO’s
http://www.catb.org/esr/faqs/smart-questions.html - How to ask questions the smart way
https://register.automatingosint.com/ - This is the only course, literally - you can’t get it anywhere else,
that teaches you how to write code to automatically extract and analyze data from the web and social
media. Join students from around the world from law enforcement, journalism, information security and
more.
------------------------------------------------------------------------------------------
AMERICA ONLY
https://www.zabasearch.com/ - Free* People Search and Public Information Search Engine! NOT TESTED
------------------------------------------------------------------------------------------
DOCUMENTATION
https://www.hunch.ly/ - The Web Capture Tool Designed For Online Investigations. Never forget to
screenshot again. Hunchly automatically collects, documents, and annotates every web page you visit.
https://archive.is/ - Archive.today is a time capsule for web pages!. It takes a 'snapshot' of a webpage
that will always be online even if the original page disappears.. It saves a text and a graphical copy of the
page for better accuracy and provides a short and reliable link to an unalterable record of any web page
https://fraps.com/ - Fraps is a universal Windows application that can be used with games using DirectX
or OpenGL graphic technology. In its current form Fraps performs many tasks and can best be described
as:
Benchmarking Software - Show how many Frames Per Second (FPS) you are getting in a corner of your
screen. Perform custom benchmarks and measure the frame rate between any two points. Save the
statistics out to disk and use them for your own reviews and applications.
Screen Capture Software - Take a screenshot with the press of a key! There's no need to paste into a
paint program every time you want a new shot. Your screen captures are automatically named and
timestamped.
Realtime Video Capture Software - Have you ever wanted to record video while playing your favourite
game? Come join the Machinima revolution! Throw away the VCR, forget about using a DV cam, game
recording has never been this easy! Fraps can capture audio and video up to 7680x4800 with custom
frame rates from 1 to 120 frames per second!
https://pastebin.com/
------------------------------------------------------------------------------------------
MAPS
https://www.zeemaps.com/ - Create and publish interactive maps. Use maps for analysis and
presentations. Unlimited markers per map.3-level access control for each map: Viewer, Member and
Admin. Input from: Location(Search), Crowd Source, Google Spreadsheets, Microsoft Excel, CSV, KML,
GeoRSS feed or Copy-and Paste.
http://brianfolts.com/driver/ - The google maps streetview player will take in either a starting point and
end point, or a provided file of a route and provide a playthrough of the google streetview images that
are available. MAPS API KEY REQUIRED
------------------------------------------------------------------------------------------
OPSEC
https://randomuser.me/ - A free, open-source API for generating random user data. Like Lorem Ipsum,
but for people.
https://cdn.jsdelivr.net/gh/Marak/faker.js@master/examples/browser/ - JS ID Generator
https://www.torproject.org/download/download-easy.html.en - TOR
https://geti2p.net/en/ - I2P
http://browserspy.dk/ - BrowserSpy.dk is the place where you can see just how much information your
browser reveals about you and your system.
https://coveryourtracks.eff.org/ - Test your browser to see how well you are protected from tracking
and fingerprinting
------------------------------------------------------------------------------------------
DNS LEAK
https://ipleak.net/
https://dnsleak.com/
https://www.dnsleaktest.com/
http://ip-check.info/?lang=en
https://chrome.google.com/webstore/detail/webrtc-network-limiter/
npeicpdbkakmehahjeeohfdhnlpdklia - WebRTC Network Limiter
https://browserleaks.com/ - BrowserLeaks is all about browsing privacy and web browser fingerprinting.
Here you will find a gallery of web technologies security testing tools that will show you what kind of
personal identity data can be leaked, and how to protect yourself from this.
------------------------------------------------------------------------------------------
IMAGES/VIDEOS/DOCS
https://chrome.google.com/webstore/detail/reveye-reverse-image-sear/
keaaclcjhehbbapnphnmpiklalfhelgf?hl=en - Perform a search by image. Choose between the image
search engines Google, Bing, Yandex, and TinEye. This extension allows to perform an inverse image
search by right-clicking onto any image in a web site.
https://www.pexels.com/ - The best free stock photos, royalty free images & videos shared by
creators/Search
https://www.imageidentify.com/ - Identifies ojects by canning a picture of them. Hit and miss results.
Browser-based
https://www.webfx.com/tools/idgettr/ - Use the URL of your photostream to find the Flickr ID number
(also works for groups).
EXIF:
http://imgops.com/ - ImgOps is a meta-tool: 1.) Enter an image. 2.) Choose an online image utility. It
works best with our bookmarklet (ImgOps), or you can enter a URL above. what is a bookmarklet. You
can also insert http://imgops.com/ in front of any image URL.
https://www.i2ocr.com/ - i2OCR is a free online Optical Character Recognition (OCR) that extracts text
from images and scanned documents so that it can be edited, formatted, indexed, searched, or
translated.
http://deturl.com/ - View a video on YouTube. In the URL location box, select https://www. and replace
with pwn Get links to download the video ( no software, no copy/paste! )
https://docjax.com/ - Search over 320,577 documents from 3,296 websites. With the world's largest
document search engine, DocJax is the place to find the documents you need.
------------------------------------------------------------------------------------------
SOCIAL MEDIA
http://www.geochirp.com/main.php - GeoChirp helps you search for people Twittering for specific
things in a specific area.
https://www.hootsuite.com/ - Easily manage all your social media and get results with Hootsuite.
https://tweetdeck.twitter.com/ - The most powerful Twitter tool for real-time tracking, organizing, and
engagement. Reach your audiences and discover the best of Twitter.
https://twicsy.com/ - Get Hundreds of Followers and Likes on your Instagram page delivered quickly and
safely!
https://onemilliontweetmap.com/ - This page displays last 24h geolocalized tweets delivered by public
twitter stream API. Each second, about fifty new tweets are added (and oldest tweets are removed to
keep only 24 hours on the map).
https://socialblade.com/ - Social Blade tracks user statistics for YouTube, Twitch, Instagram, and Twitter!
Get a deeper understanding of user growth and trends by utilizing Social Blade
https://del.icio.us/
https://blackplanet.com/
https://www.tumblr.com/tagged/search?sort=top
https://myspace.com/
https://www.periscope.tv/
------------------------------------------------------------------------------------------
BITCOIN/BLOCKCHAIN/CRYPTOCURRENCY
Google – https://www.google.ca
inurl:ftp -inurl:http -inurl:https ftpsearchterm
Bing – https://www.bing.com
DuckDuckGo - https://www.duckduckgo.com
StartPage - https://www.StartPage.com
Yandex - https://www.yandex.com
iBoogie - https://www.iboogie.com
iZito - https://www.izito.com
Ixquick - https://www.ixquick.com
Advangle - https://www.advangle.com
Instya - http://www.instya.com/#/web/
Hulbee - https://hulbee.com/
META SEARCH
http://iseek.com/iseek/home.page
http://biznar.com/biznar/desktop/en/search.html
http://search.carrot2.org/stable/search
http://yippy.com/
https://www.etools.ch/
https://searx.me/
http://addictomatic.com/
http://www.whostalkin.com/
http://www.dmoz.org/
http://answerthepublic.com/
CODE SEARCH
https://publicwww.com/
https://searchcode.com/
https://nerdydata.com/search
https://github.com/techgaun/github-dorks
https://gitleaks.com/
------------------------------------------------------------------------------------------
NEEDS TO BE LOOKED INTO:
https://www.melissa.com/service/listware_online/uploadws.aspx
https://assetnote.io/continuous-security/index.html
https://censys.io/
https://app.buzzsumo.com/home - Generate ideas from our index of 8 billion pieces of content (BETA)
NEWS
You Got The News | YouGotTheNews | Sam Richter - Important: Do not use Internet Explorer. The
Engine will only work in Edge, Safari, or Chrome.
OTHER/NOT LISTED