OSINT Reconnaissance
Open Source Intelligence gathering techniques and tools. Master passive reconnaissance to gather information without direct target interaction.
OSINT Ethics
What You'll Learn
- Domain and DNS intelligence
- Email harvesting and verification
- Social media reconnaissance
- Google dorking techniques
Methodology Overview
Guide Sections
Domain Intelligence
WHOIS, DNS records, subdomain enumeration, and certificate transparency.
Email Intelligence
Email harvesting, format discovery, and breach data verification.
People Intelligence
Social media reconnaissance, username tracking, and employee enumeration.
Infrastructure
Shodan, Censys, IP ranges, and technology stack detection.
Google Dorking
Advanced search operators for finding sensitive information and exposed files.
Tools
Essential tools and frameworks for OSINT investigations.
Ready to Begin?
Start with Domain Intelligence to map the target's external footprint.
Start the Guide⚠️ Legal Disclaimer
OSINT techniques should only be used within the scope of authorized engagements. Be aware of privacy laws and avoid accessing private data without authorization.