The OSINT Newsletter - Issue #44
Pivot from a Twitter profile to Medium, Product Hunt, Mastodon, and more with high confidence
👋 Welcome to the 44th issue of The OSINT Newsletter. This issue contains OSINT news, community posts, tactics, techniques, and tools to help you become a better investigator. My goal with this newsletter is to help promote the OSINT industry, develop better investigators, and raise awareness of ethical use cases for open source intelligence.
🚨 I’ve shipped out about 150 The OSINT Newsletter print issues so far. For those who have reached out asking about it, yours are on the way! I’ll continue shipping books out this week. I might reach out to a few people to correct shipping addresses.
🧰 The OSINT Newsletter launched a toolbox on GitHub. This will be a continuous collection of free tools to enhance your OSINT investigations.
🪃 If you missed the last newsletter, here’s a link to catch up.
⚡ Create a bookmarklet to extract a Facebook, Instagram, Twitter (X), or TikTok user ID in one click
For those of you who missed it, I published the bookmarklet discussed in last week’s issue to GitHub. If you’d like to easily download and use the tool, visit this link.
Let’s get started. ⬇️
OSINT News
📰 GeoSpy adds real estate listings to its geolocation tool
GeoSpy is already a very useful tool for expediting geolocation tasks. They’ve now added real estate listings as potential identifiers for an image, making precise geolocation even more likely.
🎩 H/T: Daniel Heinen
📰 OpenAI announces Sora - text to video
OpenAI announced Sora, a text-to-video product they’re launching soon. This is going to be very significant for OSINT researchers. The fake conflict videos, in particular, are going to be hard to handle. Furthermore, third-party (not OpenAI) lookalikes will appear with nearly the same capabilities with none of the oversight.
📰 Navigate OSINT Investigations Like a Pro with CSI Linux
CSI Linux is a digital forensics-focused Linux distribution. It also has a ton of tools and features built-in that can assist with OSINT investigations. Sigmund gives a detailed review and how you can use it for your investigations.
🎩 H/T: Sigmund Brandstaetter
OSINT Community
🐦 Find historic domain information for free
While following up on a backlog of OSINT reports, I noticed a tweet reply from OSINT_CYN mentioning host.io, a source for finding (mostly) free information about a domain. This includes historic Google Analytics tags and other valuable information.
🎩 H/T: OSINT_CYN
🐦 OSINT Industries adds a Microsoft module
OSINT Industries is always adding new modules. Each module gives you another potential opportunity at identity resolution for an email or phone number. Not since GHunt have I been so excited for a new module.
This time it’s Microsoft. I’m excited about this module because of the business OSINT implications. Since nearly all businesses use Outlook (US) or Google, and using tools like o365chk can determine if a company is using o365, this can be an excellent pivot point for your investigation
🎩 H/T: OSINT Industries (probably mxrch)
OSINT Tools
🌟 Sponsor: Predicta Lab
Predicta Search: Reverse email & phone lookup tool
Discover all the data attached to an email address or phone number on over 30 networks, leaks, and stealer logs. You can even check your own digital footprint for free with a verified email!
🔎 Dorky
PayloadArtist updated its tool, Dorky, which helps people investigate domains. Although this tool has a pen-testing lens, it can be used for a variety of applications depending on the scope of the investigation.
🎩 H/T: PayloadArtist
🔎 Exposed.lol
Similar to search.0t.rocks, Exposed.lol is another tool to check for free data about an email address by leveraging leaked data. It’s not quite as data-rich as other tools; however, since a lot of these tools come and go over time, it’s good to have a collection of resources in the event one goes down.
🔎 Analyst Research Tools
Analyst Research Tools is a collection of tools you can use for several sources. It’s similar to the IntelTechniques toolset but with more options. If you’re looking to consolidate a few Google Dorks and free lookups, give this tool a try.
🎩 H/T: Collintex
✅ That’s it for the free version of The OSINT Newsletter. Consider upgrading to a paid subscription to support this publication and independent research.
By upgrading to paid, you’ll get access to the following:
⚡ Pivot from a Twitter (X) profile to Medium, Product Hunt, Mastodon, and more with high confidence
Since Twitter (X) paywalled their API, many websites have abandoned the “Sign in with Twitter” option. For those who still have it, there’s a significant opportunity to find separate accounts connected using the same information (email address or phone number).
Follow along as I make a new tool, Excalibur, to pivot from Twitter to other accounts with more information.
👀 All paid posts in the archive. Go back and see what you’ve missed!
🚀 If you don’t have a paid subscription already, don’t worry there’s a 7-day free trial. If you like what you’re reading, upgrade your subscription. If you can’t, I totally understand. Be on the lookout for promotions throughout the year.
Keep reading with a 7-day free trial
Subscribe to The OSINT Newsletter to keep reading this post and get 7 days of free access to the full post archives.