PALANTIR COBRA A LOS GOBIERNOS MILLONES AL AÑO POR SU SALA DE GUERRA.
un tipo la recontruyó y la regaló en github. gratis.
se llama Elie. clonó lo que palantir vende a gobiernos y ejércitos, lo empaquetó en un solo repo y lo dejó abierto para cualquiera.
se llama World Monitor.
globo terráqueo 3D en vivo con más de 500 fuentes de noticias
15 categorías, todas resumidas por ia en cuanto llegan
56 capas de mapa que puedes superponer unas sobre otras
app de escritorio nativa para windows, macos y linux
puntúa a 31 países en un índice de estrés y lo actualiza en tiempo real.
→ movimientos militares
→ choques económicos
→ desastres naturales
→ incidentes cibernéticos
→ rutas de vuelo y marítimas
vigila 29 bolsas de valores, materias primas y cripto en un solo panel.
ejecuta ia local con ollama sin una sola clave api.
25 idiomas. 73,000 estrellas en github. funciona de inmediato después de un solo clon.
os dejo el repo abajo para que lo podáis probar.
🔎 21 EMAIL ADDRESS TOOLS FOR OSINT INVESTIGATIONS
An email address can be one of the strongest pivot points in an investigation.
From a single address, investigators may be able to uncover linked accounts, breach exposure, domain relationships, professional identities, reputation signals, and other infrastructure clues.
Useful tools include:
* GHunt — Google-account OSINT
* Castrick — reverse email lookup
* EmailRep — email reputation
* BreachDirectory — public breach search
* LeakCheck — leak exposure search
* https://t.co/qB9qF32x09 — professional email finder
* SimpleLogin — email alias privacy
* Epieos — email reverse lookup
* Holehe — linked-account discovery
* Have I Been Pwned — breach lookup
* Whoxy — WHOIS / reverse WHOIS
* theHarvester — email & domain discovery
* That’s Them — people-search pivot
* Proton Mail — secure email service
* OSINT Industries — real-time email lookup
* Mailcat — email by username
* DeHashed — credential & breach search
* XposedOrNot — exposure check
* SignalHire — business email finder
* Skymem — company email finder
* Intelligence X — email data search
The important part is not using all 21 tools.
It is knowing which pivot to use next.
A practical workflow may look like:
* Start with reputation and breach exposure
* Look for linked accounts and usernames
* Pivot into domains, WHOIS, and infrastructure
* Enrich professional or organizational context
* Correlate results across independent sources
* Preserve URLs, timestamps, and evidence
* Separate confirmed facts from assumptions
Analyst Note:
No single OSINT platform should be treated as definitive.
The strongest findings come from correlation: multiple independent sources pointing to the same identity, relationship, or infrastructure.
Use these tools legally, ethically, and with appropriate authorization.
#DDW #OSINT #CyberSecurity #ThreatIntelligence #DigitalInvestigation #EmailOSINT #OpenSourceIntelligence
Awesome OSINT Arsenal provides a one-command installation for over 750 open-source intelligence tools across 50 security categories.
https://t.co/svB2CzyjB9
‼️ Attackers can weaponize Defender’s own signed driver to delete security software at boot.
BTR.sys runs from Ring 0 before Defender’s user-mode services start. Check Point showed it deleting the full Defender stack on Windows 11 25H2 with Tamper Protection enabled.
See how it works: https://t.co/yGscUq6xQH
🛑 Attackers took over N-central servers.
N-able says they reached customer endpoints through Take Control and left Cloudflare tunnels for persistent access. The first fix missed an alternate exploit path.
What MSPs need to check: https://t.co/EJUrm26KN3
👁️ How I Track Telegram Users With This Tool
Most OSINT investigations stop at the Telegram handle.
I don’t stop there. A Telegram account can still give you useful pivots, even if the username changes later:
🆔 Telegram ID
📅 Account creation date
🖼️ Current and previous profile pictures
🔁 Previously used usernames
📝 Previously used display names
One tool I use for this is UserSearch.
UserSearch can help you:
- Pull user information
- Pull a user’s old profile pictures
- Extract members from a Telegram channel
- Collect Telegram channel information
- Search public Telegram groups and channels
Once you have the current and previous usernames, run them through UserSearch, WhatsMyName or Sherlock.
This shows you every platform where those usernames appear.
Old profiles = old personal information.
🔗 Tool link: https://t.co/ZpZdrbtJlG
__________
P.S. ♻️ Repost if you found this helpful.
🚨 Hugging Face Diffusers can run code it was told not to trust.
Three high-severity flaws let crafted model repositories bypass trust_remote_code during custom pipeline loading.
How FaceHugger gets past the check: https://t.co/HcArZI53kw
🚨 La empresa más grande de Colombia fue hackeada.
Los atacantes no solo lograron infiltrarse en los sistemas de Ecopetrol. También robaron información sensible que hoy podría estar circulando entre otros ciberdelincuentes.
¿Quiénes son "Los Caballeros" y cómo operan?
🧵👇