For the complete documentation index, see llms.txt. This page is also available as Markdown.

OSINT

Open Source Intelligence

Open-source intelligence (OSINT) is the disciplined collection and analysis of publicly available information. This section focuses on passive investigation: search engines, public records, domains, IP addresses, usernames, social media, files, breach data, dark web sources, geolocation, and other public data pivots.

This section intentionally avoids most active scanning and exploitation tooling. Those resources belong in Red Offensive. Reputation and enrichment platforms belong in Threat Data.

Threat DataReconnaissance and Scanning

OSINT Guides and Methodology

Training, CTFs, TryHackMe rooms, and OSINT practice labs are kept in Training.

Training and Resources

OSINT Communities and Resources

OSINT Blogs and Media

YouTube and webcast resources:

Forums and Chat

Volunteer OSINT

These projects use OSINT skills for public-interest investigations. Review each group's mission, legal boundaries, and evidence-handling expectations before joining.

OSINT Tool and Resource Collections

OSINT Virtual Machines and Frameworks

Recon-ng, SpiderFoot, Sn1per, and similar broad recon frameworks are maintained with Red Offensive recon tooling.

Recon Frameworks

Scrummage is better treated as a threat-hunting/OSINT framework and is cross-referenced from Threat Hunting.

Threat Hunting

Tools by Category

Search EnginesCyber Search EnginesDark-Web SearchIP AddressDomainUsername/EmailName, Phone, Gov RecordSOCMINT - Social MediaFiles/Media/Breach/Paste/CodeMisc OSINT

Last updated