“Maltego stood out to us as the all-round solution we were looking for. It https://osint-software.com/ brought together different capabilities in a way that worked neatly for our investigative needs.” Empower your investigative team with custom training sessions for investigators and developers Custom engineering for specialized Maltego deployment and integrations to suit your organization’s investigative and compliance needs Conduct deep investigations into complex OSINT cases and cyber threats with access to all external and internal data Quickly uncover new leads by identifying and tracking the activities of suspects and potential threats Discover open ports, running services and vulnerabilities of an IP or domain via Shodan and InternetDB.
Its real-time intelligence is used by major networks and service providers to filter out unwanted traffic and block dangerous content before it reaches end users. VirusTotal also offers behavioral sandbox analysis, domain reputation checks, and a collaborative space where researchers contribute comments and context. The EO Browser interface allows you to search a specific geographic area and date range, which is the core workflow for verifying or contradicting AIS claims.
The goal is to show the full investigative chain rather than a single stage. Investigators start with a question, collect identifiers, and pivot through public sources to build a defensible narrative. Free tools like Sherlock, theHarvester, and Google Dorks stay powerful for focused tasks. For comprehensive people investigations combining email, phone, username, and domain data, 200+ correlated sources provide strong coverage. Maltego and SpiderFoot are frameworks because they integrate dozens of data sources with visual link analysis.
Unify social, editorial, earned media, broadcast, and LLM signals into one shared view—so global teams can compare markets, track change, and act faster. Our comprehensive guide highlighting every major new addition in iOS 26, plus how-tos that walk you through using the new features. 2026 may be an inflection point in which Apple’s cautious strategy could appear prescient if enthusiasm for large-scale AI spending continues to cool and the company finally delivers a more capable version of Siri.
Bubblemaps is built around visualization, wallet clustering, and token flow analysis, with support across multiple chains including Ethereum, Solana, BNB Chain, and Base. Arkham Intelligence provides substantial on-chain intelligence via a free tier with paid premium features. It supports cross-chain tracing across major ecosystems and offers products tailored for both investigations and compliance screening.
ShadowDragon Horizon
- Adversaries are advancing their implementation of AI-enabled tooling, moving beyond content generation and tool development and into more sophisticated autonomous attack orchestration for malware commands.
- More advanced OSINT software will help you combine multiple data points in order to cross-reference information and gain a source of truth.
- Launched in 2024, 1 TRACE has quickly become a standout platform by combining a vast array of intelligence disciplines, including social media, geospatial, cyber, and financial OSINT, into a secure, integrated system.
- You can start with a single piece of information—such as a name, email, or domain—and expand it using built-in transforms.
- From experience, it’s always better to cross-check information using multiple sources before drawing conclusions.
Map cross-domain privilege escalation to sever breach routes at key choke points. Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts “This experience points to a gap worth planning for,” the New York-headquartered company said. “We identified unauthorized access to a limited set of internal datasets and to several credentials used by our services,” the company said in a statement.
However, it’s possible to click through those results to find deeper information or matching problems if needed. Serious users can buy a Corporate license, which provides unlimited results and scanning of up to 300,000 IPs monthly. Some other OSINT tools like theHarvester use it as a data source, though deep interaction with Shodan requires a paid account. Shodan is a dedicated search engine used to find intelligence about devices like the billions that make up the internet of things (IoT) that are not often searchable, but happen to be everywhere these days.
It originally started as a script, but it has since evolved into a full framework, and it continues to grow thanks to the developers that contribute to its capabilities. With Spokeo, users can look up information about people using their email, phone number or postal address, granting them access to billions of public records including property deeds, court records and social networks. That information can then be organized in a variety of ways, including tables, maps, graphs or all three of them together. Users can start with just a single data point (such as a person’s full name, or a phone number), and Lampyre will sift through more than 100 regularly updated data resources to extract interesting information about that data point.
The SHA-256 integrity hash is computed from the investigative data payload and printed on every page, allowing independent verification that report contents have not been altered. Reports include a branded cover page, structured chapters (Case Overview, Entity Analysis, Evidence Findings, Task Progress, and Appendices), and — when Chain of Custody is enabled — a comprehensive forensic appendix with hash chain verification tables. The WHOIS history feature detects suspicious changes in domain registration over time—useful for identifying domain hijacking, ownership changes, or fraudulent transfers.
ShadowDragon® Horizon® acts as both an OSINT people finder and an OSINT search engine, allowing investigators to search and correlate information for many pieces of data from hundreds of sources, all from a single tool. With an OSINT search engine, you can search through indexed data sets and archived snapshots of the internet, going through large volumes of data at lightning-fast speeds. Different investigators have different workflows, and you want a tool that you can customize to meet your specific needs. A real-time monitoring tool will provide you with the latest information, allowing you to make decisions quickly and get ahead of emerging situations. A quality OSINT tool should be able to provide insights you can actually use. You want an OSINT tool that can go deep, scale as you require, and transform massive amounts of raw data into actionable intelligence.
