Training 2017 - SensePost OSINT: Stalk like a boss
From BruCON 2017
SensePost OSINT: Stalk like a boss
A course which needs no introduction (and yet we bothered to write one). This course, by SensePost COO Daniel Cuthbert and Jonathan Hargreaves teaches you how to harness information online to build up a solid dossier of intel and gives you the confidence, as an investigator, to research individuals, companies, organisations and internet traffic.
Open-Source Intelligence (OSINT) is publicly available information including radio, television, newspapers, journals, the Internet, commercial databases, videos, graphics, and drawings. We can mine and correlate this information to profile a person or company in order to find or track an individual, look for affiliations or look for relationships between people or companies.
This course teaches you how to harness information online to build up a solid dossier of intel and gives you the confidence, as an investigator, to research individuals, companies, organisations and internet traffic.
The course is oriented around Maltego. A powerful data mining and analysis platform, Maltego allows the collection of relevant data from diverse sources, organise it, map it and present it for human analysis
The ability to extract large volumes of data from diverse sources and then analyse it to understand the patterns and relationships it reveals can be immensely powerful when used correctly, and there are endless situations where this kind of analysis can be useful.
- Understanding our digital footprint - what sites like Google and Facebook know about us.
- Fundamentals of SOCMINT in investigations.
- Theory of OSINT and adopting a methodology.
- Understanding OSINT "boundaries" - limits of OSINT Exploitation.
- Creating and protecting online personas for investigations.
- Filtering known good/bad from results.
- Understanding "relationships".
- Geolocation techniques.
- Geospatial Correlations.
- Pattern of Life.
- Sentiment Analysis.
- Not getting owned (Digital Self Defence).
- Building believable personas.
The aim of this training is to help teams in searching, analyzing and performing various kinds of investigations by combining Open Source Intelligence data via the Internet with Social Media Intelligence (SOCMINT) and existing internal data sources.
Daniel Cuthbert is the Chief Operating Officer at SensePost. With a career spanning 20+ years in penetration testing, red teaming and secure software design. He is the original co-author of the OWASP Testing Guide, released in 2003 and now the co-author of the OWASP Application Security Verification Standard (ASVS).
Jonathan Hargreaves comes from the North of England. A subtle accent with soothing tones and joined SensePost as an intern. In the process, he woo’d us with his skills and was quickly promoted to the main assessments team. He loves long walks on the beach, stalking many a person and helping write Maltego transforms for friends and family.
Mon. 2 - 3 October 2017 (09:00 - 17:00) (2-day) - NH Gent Belfort