Cyber Detective
16.8K subscribers
2.35K photos
3 videos
12 files
2.41K links
Every day I write about #osint (Open Source Intelligence) tools and techniques. Also little bit about forensics and cybersecurity in general. Work in https://t.me/netlas
Download Telegram
XGS

A tool that allows you to search for links to onion sites using #Google Dorks (site:http://onion.cab, site:http://onion.city etc)

It also allows you to automate work with other dorks.

https://lnkd.in/ehG_5HbX

#python #opensource #deepweb
LFITester

Tool which tests if a server is vulnerable to Local File Inclusion (LFI) attack:

include crawler to test all the endpoints;
can work with the list of URLs
support proxies

https://lnkd.in/e8XHzWP6

#python #pentest #CyberSecurity
In 2022, many people are thinking about investing in #NFT (non-fungible tokens).

http://nonfungible.com will help to analyze the market, find out which tokens were sold most actively (week, month, year, all time).

There is alstrend analysis, but it does not work at the moment
Cyber Detective
https://telegra.ph/create-sock-puppet-fake-account-for-making-contact-with-the-target-and-collecting-information-through-dialogue-12-09
Another way to get unique images for fake accounts is to generate them from text with #AI. Sometimes it's very accurate, sometimes not so accurate, and sometimes it's completely weird.

https://deepai.org/machine-learning-model/text2img

twitter.com/Deep__AI
YouTube Timestamp Comments

The GooogleChrome extension finds all the timestamps in YouTube video comments and arranges them in chronological order.

The #YouTube API Key is required, but you can get it quickly and for free.

https://chrome.google.com/webstore/detail/youtube-timestamp-comment/khngjoedfeicfbjlcfmiigbokbnlibei/related
Google Docs Voice Comments

A simple trick to save time. Voice comments in #GoogleDocs, Sheets, Slides, and Forms.

(there are also solutions for #Gmail and Google Classroom on the developer's site)

https://chrome.google.com/webstore/detail/record-voice-comments-in/lbfofpndjldbnhnhibhmggblcbpoomon
Youtube Actual Top Comments

GoogleChrome extension

Fetch all comments to #youtube video (without answers)
Sort them by likes and filter by keywords

(doesn't handle videos with more than 10,000 comments well.)

https://chrome.google.com/webstore/detail/youtube-actual-top-commen/hbdmelobmfcompinikjdaiphhonbgfpn/related
Crab

Well done and well designed port scanner, host info gatherer (include whois).

https://github.com/N0tA1dan/Crab

Creator
twitter.com/N0tA1dan


#python #opensource #osint
SecurityTools

Collection of 80+ #commandline tools for #cybersecurity:

Categories:

scanners
activedirectory
authentication
websites
reconnaisance
email
osint
forensics

and more,

https://github.com/thetanz/securitytools

Creator
@thetanet
https://generated.photos/anonymizer

Upload a face photo and get set of similar #AI generated faces.

#sockpuppets #StyleGAN
Text to ASCII Art Generator (TAAG)

This site will help you make atmospheric lettering for your #commandline tool or README.

It differs from analogues with a huge number of fonts to choose from and flexible settings.

http://patorjk.com/software/taag/

#dev #coding
Active member of the #osint community twitter.com/SEINT_pl
has had a Github profile and is actively creating new repositories:

Camera filename patterns
Short links verification cheatsheet
Ytxtractor (extract images from a Youtube video)

https://github.com/seintpl
https://seintpl.github.io
Last spring I already wrote about how http://search4faces.com can search by identikits taken at http://facemaker.uvrg.org

Today I discovered that it can search for pages in social networks even by avatars created in online generators (http://face.co)

#osint #socmint
Missed an important update to http://search4faces.com. Now the service searches not only by #VK, #Odnoklassniki, #ClubHouse and #TikTok avatars, but also Instagram avatars (!).

So far there are few faces in the database, but I want to watch its further development.
Hacking Tools

Collection of tools for hackers, pentesters & security researchers. Not much, but the most important.

https://github.com/juliocarneiro/hacking-tools
Contributor twitter.com/jcarneirodev


#recon #SocialEngineering #cybersecurity
Awesome Security Api

Collection of API Security tools and resources:
Enumeration, Scanning
Fuzzing, SecLists
Firewalls
Design, Architecture, Development
and much more

https://github.com/arainho/awesome-api-security

#api #infosec #cybersecurity
DuckDuckGo !bangs

Googlechrome extension that add DuckDuckGo bang buttons to search results and search links in the context menu.

(bang - shortcut that quickly take search results on other sites like Wikipedia(!w), Amazon(!a), YouTube(!ytd) etc)

https://chrome.google.com/webstore/detail/duckduckgo-bangs/hdjfebkndhmegijlghjcdghdbealibeb/related
SEARCH Investigative and Forensic Toolbar

#GoogleChrome extension with quick access to dozens of online tools for #osint, #forensics and othef #investigations goals.

https://chrome.google.com/webstore/detail/search-investigative-and/idgjbdfnngdcenpahfalcamfmcjdfbcj/related

Creator twitter.com/TLott_SEARCH
vstat.info

Getting detailed info about website traffic (sources, keywords, linked sites etc)
A month later, I finally noticed that on #Github now it's possible to collect starred repositories into lists to make them faster to navigate

2 oddities:

For some reason can't create more than 16 lists

If to rename a list, the link also changes and the old one becomes invalid