Want to know more about Perspective Intelligence, ThreatLens and how we operationalise OSINT to protect organisations from the baddies? Let me know!
@aaroncti
Founder @perspectiveintel.bsky.social. Author of Cyber Threat Intelligence: The No-Nonsense Guide for CISOs & Security Managers. Training at Kase Scenarios! Exec/Webinars @osint-community.bsky.social and creator of osintportal.com
Want to know more about Perspective Intelligence, ThreatLens and how we operationalise OSINT to protect organisations from the baddies? Let me know!
Workflow of the Week - Build a Geopolitical Risk Monitoring workflow using some of the tools mentioned this week.
Social-ID is a tool for enabling easier collation of user IDs from usernames to help maintain persistent knowledge of an account should it change vanity name.
OSINTer is an AI agent specifically for doing OSINT on the current situation in the Middle East. Could be useful to avoid vicarious trauma potentially.
EU Parliament Monitor is a tool for monitoring political activity and transparency data to help inform risk monitoring.
J.A.R.V.I.S is a scraping tool levergaging local AI models through Ollama to create intel reports. You probably need a beefy machine to run this at a scale you'd like the end result though.
OSINT-SIEM is another aggregator tool but for public safety and cyber bulletins.
First up is Magen-Yehuda-Bot, an aggregator and monitor for the ongoing tensions between Iran and Israel.
It's time for OSINT Tool Thursday! This week there's a hefty focus on geopolitics for the shock of absolutely everyone I'm sure, but also a couple of cool things using local AI models and agentic workflows.
Small update to ThreatLens for domain and brand monitoring:
- Brand imagery searches for logos and favicons for potentially fraudulent usage
- Exposed files/storage buckets across major providers
- Email notifications and daily/weekly digest now live
Only 300 ideas to go!!
For now just analysing how we could potentially use them for threat-informed defence but always open to ideas!
Enjoy our ruffling around the OSINT tools we noticed this week? We do this every week, but more importantly - We help organisations identify, understand and reduce their risk from their external attack surface. Want to know more about our ThreatLens platform? DM me, I don't bite
Workflow of the week - Set up Telespotter and do some OSINT!
HaGeZi DNS Blocklists - One for the CTI and SOC analysts or those more privacy conscious individuals.
ReconSpider - A classic? Either way recently updated and a great swiss army knife of an OSINT toolkit.
reconftw - Brings together a bunch of quality tools into one useful interface - Handy for website and infrastructure recon!
Telegram-OSINT - You'll never guess what platform this focuses on... You'll be utterly shocked!
Tookie - Look up social media accounts with this CLI-based tool. A nice addition to things like WhatsMyName or OSINT Industries.
This week first up is Telespotter, a Rust-based phone lookup tool. Worth adding to your arsenal if you do POI investigations!
It's that time of the week. OSINT Tool Thursday!!
We're today officially announcing the beta launch of ThreatLens! Our attack surface intelligence solution to help you cut through the noise and focus on the thing that actually matters. Your business.
OSINT-led, analyst-verified & human-written intelligence in plain English.
DM for more info!
At @perspectiveintel.bsky.social, we do this every day to track baddies, keep companies safe. We do this by leveraging ThreatLens, our frankly incredible OSINT-led attack surface intelligence capabilty. To quote Starship Troopers: Would you like to know more? Hit me up below!
Workflow of the week - Integrate active ransomware monitoring with RansomLook!
Metabigor - Quickly query websites without API credits you can pipe into tooling. Useful for analysts with limited tooling or API access.
deepdarkCTI - This incredible tool by @fastfire.bsky.social is an incredibly wonderful resource for all things cybercrime and dark web tracking.
Mitaka - Access over 50 different services to support an OSINT investigation with just one click. Yeah, me too bro.
RansomLook - Track ransomware activity with a locally hosted dashboard. Another useful one for CTI and SOC teams.
Redamon - More of a pentesting tool, but AI-enabled recon and exploitation - Useful for blue teams focusing on CTI and vulnerability management
First this week, WorldMonitor - News aggregation, monitoring and more in one dashboard.
It's time for OSINT Tool Thursday! What's been cooking this week? Let's take a look shall we? ๐