Episode 31: Jeff Lomas of BleuBloodHound, MWOsint demos the MSFT video indexer and more...




The OSINT Curious Project show

Summary: <p><br> <strong>People in this Episode:</strong></p> <ul> <li>Micah Hoffman (WebBreacher) </li> <li>Dutch_Osintguy </li> <li>Matthias Wilson (MwOsint) </li> <li>Nixintel </li> <li>Sector035 </li> <li>Special Guest: Jeff Lomas (<a href="https://twitter.com/BleuBloodHound">@BleuBloodHound</a>)  </li> </ul> <p><strong>Links to what we discussed:</strong></p> <ul> <li>Jeff Lomas talked about his blog on cell tower info, DFIR and OSINT <a href="https://osintcurio.us/2019/08/19/making-sense-of-osint-cell-tower-data-for-dfir/">https://osintcurio.us/2019/08/19/making-sense-of-osint-cell-tower-data-for-dfir/</a> </li> <li>People being monitored by the geotagged social media trough Echosec <a href="https://twitter.com/KarlSwannie/status/1233092121822978048%20">https://twitter.com/KarlSwannie/status/1233092121822978048 </a> </li> <li>An semi automated website for lookups on a domain, ip or email. Covers dns, location, whois and more. Opsec! don’t know if requests are tracked <a href="https://synapsint.com/%20">https://synapsint.com/ </a> </li> <li>OSINT CTF that gives people a chance to practice their skills. It covers a wide range of areas like government databases, social media, archived websites as well as some basic digital forensic and cyber security knowledge. <a href="https://ctf.cybersoc.wales/">https://ctf.cybersoc.wales/</a> </li> <li>Vis graphing tool for win, linux and osx in beta. Sort of Maltego alternative made with help of occrp.vis.com <a href="https://docs.alephdata.org/guide/vis-desktop">https://docs.alephdata.org/guide/vis-desktop</a> </li> <li>Guideline by US DoJ : Legal Considerations when Gathering Online Cyber Threat Intelligence and Purchasing Data from Illicit Sources <a href="https://www.justice.gov/criminal-ccips/page/file/1252341/download">https://www.justice.gov/criminal-ccips/page/file/1252341/download</a> </li> <li>Useful to manually create charts in your OSINT investigations<a href="%20https://www.draw.io/"> https://www.draw.io/</a> </li> <li>Bram (Aware Online) has been on fire this week, posting lots of quick OSINT tips. Might be worth a shout-out <a href="https://twitter.com/aware_online">https://twitter.com/aware_online</a> </li> <li>Great detailed blog on how to build your own web scraper using Python <a href="https://hackernoon.com/how-to-build-a-web-scraper-with-python-step-by-step-guide-jxkp3yum%20">https://hackernoon.com/how-to-build-a-web-scraper-with-python-step-by-step-guide-jxkp3yum </a> </li> <li>TikTok OSINT thread <a href="https://twitter.com/summer__heidi/status/1234308465662627840">https://twitter.com/summer__heidi/status/1234308465662627840</a> </li> <li>The Cyber Intelligence Analyst Cookbook has some good information about CTI and OSINT process and analysis. https://github.com/open-source-rs/The-Cyber-Intelligence-Analyst-Cookbook/ </li> <li>Scrapy: An open source and collaborative framework for extracting the data you need from websites. <a href="https://scrapy.org/%20">https://scrapy.org/ </a> </li> </ul> <p><strong>Skills Demo:</strong> </p> <p>Matthias a.k.a MWOsint – https://keyfindings.blog/2020/03/08/using-the-microsoft-video-indexer-for-osint/ demo </p> <p><strong>Self Promotion:</strong></p> <ul> <li>Dutch_OsintGuy added new events to his website for several trainings and workshops https://dutchosintguy.com/events-and-blogs/ </li> <li>Dutch_Osintguy : Workshop understanding Google’s search results and advanced searching techniques workshop (Dutch language only) together with Aware Online. March 20th in Amsterdam. https://www.aware-online.com/workshop-google-voor-gevorderden/ </li> <li>Micah (WebBreacher) has multiple SANS SEC487 live classes (https://sans.org/sec487) coming up in the coming months and is looking forward to the GIAC GOSI OSINT certification (https://giac.org/gosi) moving into beta testing in April.</li> </ul> --- Support this podcast: <a href="https://anchor.fm/osintcurious/support" rel="payment">https://anchor.fm/osintcurious/support</a>