OsintFlow ✙
30.1K subscribers
12.1K photos
2.21K videos
92 files
5.27K links
@osintkit_check_bot - пошук росіян 🎯
@osintflow_connect - зв'язок з адміном🙍‍♂️

1️⃣OSINT-розслідування та документування воєнних злочинів рф
2️⃣OSINT-методологія та інструментарій по фактчекінгу
3️⃣Інструкції з кіберрозвідки
Download Telegram
Forwarded from APT
🔥 MS-MSDT Office RCE

MS Office docx files may contain external OLE Object references as HTML files. There is an HTML sceme "ms-msdt:" which invokes the msdt diagnostic tool, what is capable of executing arbitrary code (specified in parameters). The result is a terrifying attack vector for getting RCE through opening malicious docx files (without using macros).

Research:
https://doublepulsar.com/follina-a-microsoft-office-code-execution-vulnerability-1a47fce5629e

PoC:
https://github.com/JohnHammond/msdt-follina
https://github.com/chvancooten/follina.py
https://gist.github.com/tothi/66290a42896a97920055e50128c9f040

Demo Follina with Cobalt Strike:
https://www.youtube.com/watch?v=oM4GHtVvv1c

For BlueTeam:
https://gist.github.com/kevthehermit/5c8d52af388989cfa0ea38feace977f2

Everything new is well-forgotten old:
Research from August 2020. And a few other payloads.

#office #rce #msmsdt #nomacro
Signal/skype/tg
https://epieos.com/
Forwarded from Cyber Detective
RUBY

Simple tool for searching videos by keyword in Rumble, BitChute, YouTube and saving results (author, title, link) to CSV file.

https://github.com/jakecreps/ruby

Creator twitter.com/jakecreps


#python #opensource #osint
Forwarded from PulSe
Текстовая версия здесь - https://hacker-basement.ru/2022/06/02/osint-po-kartam-osnovnie-instrymenti/

Ссылки на карты из видео:
http://data.mashedworld.com/dualmaps/map.htm - карта на три окна
https://demo.f4map.com/ - карта с 3D проекцией
http://wikimapia.org/
https://2gis.ua/
https://cipher387.github.io/osintmap/ - реестры стран на карте
https://www.suncalc.org/ - карта положения солнца
https://www.openstreetmap.org/ - подробная и информативная карта
https://gridreferencefinder.com/ - инструменты для визуализации и расчётов
https://www.freemaptools.com/ - инструменты для визуализации и расчётов
https://www.oldmapsonline.org/ - сборник старых карт
https://www.earthcam.com/mapsearch/ - камеры на карте
https://esri2.maps.arcgis.com/apps/mapviewer/index.html - комплексный инструмент для визуализации и расчётов, а также кучей разных слоёв
nDorker

Enter the domain name and get quick links to Google Dorks, Github dorks, Shodan dorks and quick links to get info about domain in Codepad, Codepen, Codeshare and other sites ("vendor dorking")

https://github.com/nerrorsec/nDorker

#python #opensource
Forwarded from Rose
OSCP.rar
1.9 GB
FULL COURSE
👍1
The full list of 4,000+ resources and their associated citation counts, which contribute to the interactive MO chart, are provided below. More background details about this dataset can be found in the FAQ.
Sources List
MO draws from the following list of OSINT tools & resources lists (meta, right?). Sources are listed in alphabetical order by domain name.
https://metaosint.github.io/table/
👍1
Forwarded from Cyber Detective
All about dating investigation

Websites, tools, articles, guides, ratings.

Tinder
Grindr
OK CUPID
POF
HAPPN
Hinger

https://start.me/p/VRxaj5/dating-apps-and-hook-up-sites-for-investigators
Global Biodiversity Information Facility

Enter the name of an animal, bird or plant to see a map of where it has been spotted.

Useful for fact-checking (e.g., verifying geographical coordinates in the metadata of photos with animals).

https://gbif.org/occurrence/map?q=cobra

#osint #geoint
Since the OSINT world evolves fastly, its tools and methods must be updated often.

The original project, osintframework.com, have not really been updated for a while now, so we decided to make our own version.
https://map.malfrats.industries/
Maltego Handbook for Social Media Investigations.pdf
3.7 MB
Maltego Handbook for Social Media Investigations...
🔥3
Let's continue talking about advertising identifiers. They can also be found manually in the web page code (in Chrome - Ctrl + U), then we search for the following words:

AdSense: Pub- или ca-pub
Analytics: UA-
Amazon: &tag=
AddThis: #pubid / pubid
Metrika: mc.yandex / ym
Rambler: top100
Mail.ru: Top.Mail.Ru

As a rule, the metric on the site is indicated with a unique ID, which we can use to open the site's public statistics. For example, like this:

▫️ https://metrika.yandex.ru/dashboard?id=ADD_ID
▫️ https://top100.rambler.ru/search?query=ADD_ID
▫️ https://top.mail.ru/visits?id=ADD_ID
Let's say that we found a public Yandex Metrika https://metrika.yandex.ru/dashboard?id=55694881. Let's try to find information about the website administrator on it. Let's open Yandex Metrica on the date of its registration on 10/09/2019. The only visitor is the one who put Yandex Metrica on the website. We find out that our admin is a man, 25-34 years old. Lives in Kazan.
Everyone knows the WHOIS services. They store registration data about a domain name (date and period of registration, owner's name, etc.). Here are some popular WHOIS services:

▫️ https://whois.domaintools.com/
▫️ https://whoer.net/ru/checkwhois
▫️ https://www.iana.org/whois
▫️ https://lookup.icann.org/

It is much more interesting to get archived data from WHOIS, which is not limited by the GDPR and stores contacts and specific names of domain name owners. I know several such archives:

▫️ http://whoishistory.ru/
▫️ https://drs.whoisxmlapi.com/whois-history
Undoubtedly useful collections of additional services for studying websites:

▫️ https://osint.sh/
▫️ https://suip.biz/
▫️ https://hackertarget.com/ip-tools/
▫️ https://abhijithb200.github.io/investigator/