SEARCH
TOOLBOX
LANGUAGES
Difference between revisions of "Training 2017 - SensePost OSINT: Stalk like a boss"

Difference between revisions of "Training 2017 - SensePost OSINT: Stalk like a boss"

From BruCON 2017

Jump to: navigation, search
(Trainer Biography)
Line 3: Line 3:
  
 
===Course Description===
 
===Course Description===
 +
Open-Source Intelligence (OSINT) is publicly available information including radio, television, newspapers, journals, the Internet, commercial databases, videos, graphics, and drawings. We can mine and correlate this information to profile a person or company in order to find or track an individual, look for affiliations or look for relationships between people or companies.
 +
 +
This course teaches you how to harness information online to build up a solid dossier of intel and gives you the confidence, as an investigator, to research individuals, companies, organisations and internet traffic.
  
 
= Course Contents =
 
= Course Contents =
 +
Maltego - OSINT & Forensics Platform
  
 +
The course is oriented around Maltego. A powerful data mining and analysis platform, Maltego allows the collection of relevant data from diverse sources, organise it, map it and present it for human analysis
 +
 +
The ability to extract large volumes of data from diverse sources and then analyse it to understand the patterns and relationships it reveals can be immensely powerful when used correctly, and there are endless situations where this kind of analysis can be useful.
 +
 +
* Understanding our digital footprint - what sites like Google and Facebook know about us.
 +
* Fundamentals of SOCMINT in investigations.
 +
* Theory of OSINT and adopting a methodology.
 +
* Understanding OSINT "boundaries" - limits of OSINT Exploitation.
 +
* Creating and protecting online personas for investigations.
 +
* Filtering known good/bad from results.
 +
* Understanding "relationships".
 +
* Geolocation techniques.
 +
* Geospatial Correlations.
 +
* Pattern of Life.
 +
* Sentiment Analysis.
 +
* Not getting owned (Digital Self Defence).
 +
* Building believable personas.
  
 
= Target audience =
 
= Target audience =
 
+
The aim of this training is to help teams in searching, analyzing and performing various kinds of investigations by combining Open Source Intelligence data via the Internet with Social Media Intelligence (SOCMINT) and existing internal data sources.
  
 
= Requirements =  
 
= Requirements =  
Line 15: Line 36:
 
=Trainer Biography=
 
=Trainer Biography=
 
[[File:.jpg|thumb|125px]]  
 
[[File:.jpg|thumb|125px]]  
 
+
Daniel Cuthbert is the Chief Operating Officer at SensePost. With a career spanning 20+ years in penetration testing, red teaming and secure software design. He is the original co-author of the OWASP Testing Guide, released in 2003 and now the co-author of the OWASP Application Security Verification Standard (ASVS).
  
 
<br>[[Image:300px-twitter-icon.jpg|17px]] [https://twitter.com/dcuthbert @dcuthbert]
 
<br>[[Image:300px-twitter-icon.jpg|17px]] [https://twitter.com/dcuthbert @dcuthbert]

Revision as of 16:13, 7 June 2017

SensePost OSINT: Stalk like a boss

Course Description

Open-Source Intelligence (OSINT) is publicly available information including radio, television, newspapers, journals, the Internet, commercial databases, videos, graphics, and drawings. We can mine and correlate this information to profile a person or company in order to find or track an individual, look for affiliations or look for relationships between people or companies.

This course teaches you how to harness information online to build up a solid dossier of intel and gives you the confidence, as an investigator, to research individuals, companies, organisations and internet traffic.

Course Contents

Maltego - OSINT & Forensics Platform

The course is oriented around Maltego. A powerful data mining and analysis platform, Maltego allows the collection of relevant data from diverse sources, organise it, map it and present it for human analysis

The ability to extract large volumes of data from diverse sources and then analyse it to understand the patterns and relationships it reveals can be immensely powerful when used correctly, and there are endless situations where this kind of analysis can be useful.

  • Understanding our digital footprint - what sites like Google and Facebook know about us.
  • Fundamentals of SOCMINT in investigations.
  • Theory of OSINT and adopting a methodology.
  • Understanding OSINT "boundaries" - limits of OSINT Exploitation.
  • Creating and protecting online personas for investigations.
  • Filtering known good/bad from results.
  • Understanding "relationships".
  • Geolocation techniques.
  • Geospatial Correlations.
  • Pattern of Life.
  • Sentiment Analysis.
  • Not getting owned (Digital Self Defence).
  • Building believable personas.

Target audience

The aim of this training is to help teams in searching, analyzing and performing various kinds of investigations by combining Open Source Intelligence data via the Internet with Social Media Intelligence (SOCMINT) and existing internal data sources.

Requirements

Trainer Biography

File:.jpg
125px

Daniel Cuthbert is the Chief Operating Officer at SensePost. With a career spanning 20+ years in penetration testing, red teaming and secure software design. He is the original co-author of the OWASP Testing Guide, released in 2003 and now the co-author of the OWASP Application Security Verification Standard (ASVS).


300px-twitter-icon.jpg @dcuthbert

Links :

Mon. 2 - 3 October 2017 (09:00 - 17:00) (2-day) - NH Gent Belfort

Register.jpg

Back to Training Overview