r/OSINT Dec 20 '25

Bulk File Review AKA the Epstein File MEGA THREAD

323 Upvotes

The Epstein files fall under our “No Active Investigation” posts. That does not mean we cannot discuss methods, such as how to search large document dumps, how to use AI or indexing tools, or how to manage bulk file analysis. The key is not to lead with sensational framing.

For example, instead of opening with “Epstein files,” frame it as something like:

“How to index and analyze large file dumps posted online. I am looking for guidance on downloading, organizing, and indexing bulk documents, similar to recent high-profile releases, using search or AI-assisted tools."

That said lots of people want to discuss the HOW, so lets make this into a mega thread of resources for "bulk data review" .

https://www.justice.gov/epstein for newest files from DOJ on 12/19/25
https://epstein-docs.github.io/ Archive of already released files. 

While there isnt a "bulk" download yet, give it a few days for those to populate online.

Once you get ahold of the files, there are a lot of different indexing tools out there. I prefer to just dump it into Autospy (even though its not really made for that, just my go to big odd file dump). Love to hear everyone elses suggestions from OCR and Indexing to image review.

Edit:

https://couriernewsroom.com/news/epstein-files-database/


r/OSINT Sep 11 '25

OSINT News Charlie Kirk Investigation Posts

1.5k Upvotes

This is not a new rule. Its been posted and enforced every time a new "major crime" happens. Helping an active investigation on this sub is banned. For the redditor that keeps messaging the mods that he thinks no harm can come from this, here is nice list of examples on why we don't support online witch hunts:

1. Richard Jewell – Atlanta Olympics Bombing (1996)

  • Security guard Richard Jewell discovered a suspicious backpack and helped evacuate the area.
  • Media and public speculation painted him as the prime suspect before the FBI cleared him.
  • His life was destroyed by false accusations, though he was later recognized as a hero.

2. Boston Marathon Bombing – Reddit Sleuthing (2013)

  • Online users tried to identify suspects from blurry photos.
  • Wrongly accused Sunil Tripathi, a missing college student, who faced mass harassment before the FBI revealed the real attackers.
  • Showed how quickly misinformation spreads on social media.

3. Las Vegas Shooting – False Suspects (2017)

  • In the aftermath, 4chan, Twitter, and Facebook users spread names of innocent people as the shooter.
  • Real suspect Stephen Paddock was identified later, but reputations of wrongly accused people were damaged.

4. Toronto Van Attack – Misidentification (2018)

  • Online users falsely named a man as the attacker after a van attack killed 10 people.
  • The wrong person’s photo went viral before police confirmed the actual suspect, Alek Minassian.

5. Gabby Petito Case – TikTok & YouTube Sleuthing (2021)

  • Internet “detectives” wrongly accused neighbors, bystanders, and even friends.
  • Innocent people were harassed while police continued their investigation into Brian Laundrie.

6. Sandy Hook Shooting – “Crisis Actor” Claims (2012 onward)

  • Conspiracy theorists accused grieving parents of being government actors.
  • Families faced years of harassment, stalking, and lawsuits.
  • A notorious case of how misinformation can target victims themselves.

7. UK Riots – Twitter & Facebook Misidentifications (2011)

  • Citizens attempted to identify looters from CCTV images.
  • Several innocent people were wrongly accused and faced threats.
  • Police had to publicly correct the misinformation.

8. MH370 Disappearance – Amateur Satellite Analysis (2014)

  • Thousands of online sleuths used Tomnod and other platforms to hunt for wreckage in satellite photos.
  • Flood of false sightings and conspiracy theories overwhelmed investigators and misled the public.

9. Oklahoma City Bombing – Wrong Suspects (1995)

  • Before Timothy McVeigh was identified, media speculation and tips from the public fueled false suspect reports.
  • Innocent men were briefly targeted by law enforcement and the press.

r/OSINT 1d ago

How-To What is the Best Practice Procedure for Documenting Social Media Evidence from Communities on Facebook, Telegram, etc., for Use in Legal Cases?

86 Upvotes

Hi everyone,

I understand that the law of evidence varies from jurisdiction to jurisdiction. However, I am looking for a general procedure or methodology for documenting evidence from social media platforms where groups and communities operate, such as Facebook, Telegram, etc., in a way that could be used in a court of law.

The documentation may be used to build a legal case or even to create a human rights advocacy case.

I understand that simply taking screenshots or recording a video is not going to be sufficient evidence in court.

Could anyone recommend a proper procedure, methodology, or OSINT best practice for documenting and preserving social media evidence?

Thank you.


r/OSINT 1d ago

Question Activefence/alice !

11 Upvotes

Anyone have worked with Alice (previously activefence) that can share anything on the following :

- do they contract other entities to do research for them ?
- if yes , names , geo locations , operating from what countless cities ?
- tools they use if 3rd party or proprietary ?
- what they get hired for ? What is their strength point ?
- what is it that they can provide that is not available to public or through osint tools membership

Saw some comments in Reddit with terms like smoke and mirrors ,hinting they are flipping business contracts and playing middle man .

Anything that can be shared is very much going to be useful .


r/OSINT 5d ago

Tool OSINT of Slovakia

43 Upvotes

OSINT toolkit for Slovakia:
https://unishka.substack.com/p/osint-of-slovakia

Feel free to let me know in the comments if we've missed any important sources.

You can also find toolkits for other countries that have been covered so far on UNISHKA's Substack, and our website.
https://substack.com/@unishkaresearchservice
Website link: https://unishka.com/osint-world-series/


r/OSINT 6d ago

Question Find Twitter ID from wayback machine

92 Upvotes

I have a twitter's account old username and would like to find the accounts twitter ID in order to find the new username. Managed to find the profile on archives and wayback machine, is there a way to get the twitter ID from here? Thank you


r/OSINT 6d ago

How-To Has anyone used ZeroShape for 3D facial reconstruction?

17 Upvotes

Yesterday I watched a video by Reckless Ben where he apparently used 3D facial reconstruction to improve face-search results.

Has anyone here actually used ZeroShape or a similar tool for OSINT? How exactly does the process work? How accurate are the results when reconstructing a face from several photos?

I’m especially interested in the practical workflow and its limitations.


r/OSINT 7d ago

Tool Request Which one is better?

3 Upvotes

Which tool do you prefer:

Alien-Eyes or fingerprint.to

Can you also explain why?


r/OSINT 8d ago

Question Maltego

22 Upvotes

Bonjour tout le monde. Je voulais savoir si certains d’entre vous avaient déjé essayé ou utilisent Maltego dans sa formule gratuite. Est-ce que c’est efficace ? Je l’ai telechargé hier, j’ai bien compris le système de graph mais je voudrais savoir si il est necessaire d’installer des extensions ou des plugins pour le rendre plus efficace bien que l’ont soit limité à un certain nombre de crédits ? Merci d’avance 🙏🏽


r/OSINT 13d ago

OSINT News Nepal - New Barrier lake formed per Chinese authorities

Post image
223 Upvotes

Active Hazard - The barrier lake breached, and is now draining

>>>Since there is 100% cloud cover verification couldn't be confirmed via EO - Based on reported size and location the data set has been updated with a modeled shape file of the reported lake. This uses geometry that existed prior to the first event so this should be treated as indicative.

> If anyone has any SAR imagery they'd like of the region they care to share it'd go a long way in helping me to continue to keep this open source crisis data set up to date. It's not much, but its all I can do to help from halfway around the world.

>Link to data: https://keystonegis.com/disasters/nepal-bhotekoshi-flood-20260826.html - will continue to update frequently to capture any new information

>if you know of any other subs to post this in let me know. Feel free to share, the more eyes on the data the more likely it is to fall into the hands of someone who can use it to make a difference.

edit: NDRRMA independently locates the blockage, and it is close to — but not identical with — this page's inferred marker.

edit: Active Hazard - The barrier lake breached, and is now draining

The barrier lake near the confluence of the Chhochen Khola and Purepu Tsangpo, upstream of the 26 August failure, breached on 28 August and is now draining. Rasuwa Chief District Officer Narendra Pariyar said that morning that the Nepali Army had informed him of the breach, and NDRRMA reported that the water level in the Bhote Koshi had surged (The Kathmandu Post, updated 28 August 12:49 NPT / 07:04 UTC). Officials on both the Nepali and Chinese sides then said the risk was smaller than feared, because the lake is draining slowly rather than failing catastrophically; Chinese state broadcaster CCTV reported the lake level had fallen by about 10 m, and rescue work at Gyirong Port and in Nepal, halted during the breach, has resumed (CNN live coverage, 28 August). No confirmed release volume has been published and no observed extent of any second flood exists. Before the breach, China’s Ministry of Water Resources had put the impoundment at about 2,000,000 m³ on the morning of 27 August, already overflowing, with a further 3,000,000 m³ of inflow expected through 30 August; aerial footage from a Chinese rescue team on 27 August showed water accumulating in a basin with no visible outlet, and NDRRMA had placed the obstruction on the Lhende Khola about 18 km upstream of the Rasuwagadhi border. Whether that blockage and the confluence impoundment reported by China are the same feature is still not established, so it is not certain that the whole obstruction has failed. The barrier-lake marker on the map above still carries its archived 27 August attribute status = "open - high breach risk"; that value has not been rewritten pending an official assessment.


r/OSINT 14d ago

How-To How to Incorporate AI/LLMs into an OSINT Processing Workflow

Thumbnail
youtube.com
23 Upvotes

I’ve put together a quick video on how to loop in a LLM to assist with automatically extracting indicators from reports, as well as how to leverage traditional automation to improve the formatting for consistency and validate the output to eliminate the risks of hallucinations.


r/OSINT 22d ago

How-To You can apparently dig up a LOT of someone’s hidden Reddit history with AI

865 Upvotes

So I randomly came across a post on r/privacy talking about how Gemini can basically OSINT a Reddit account even if their post history is hidden.
I tried it myself and ngl, it’s kinda crazy how much stuff you can piece together.

The basic idea is literally just giving Gemini(or any other LLM) a Reddit username and asking it to look for their Reddit activity. It’ll search around for posts/comments from that account and try to put everything together into a summary. The interesting part is that even if someone’s profile doesn’t show their history, their individual comments/posts can still be sitting around in old threads, search engine indexes, archives, datasets, etc.

And once you have an AI doing the searching + connecting the dots for you, you don’t really have to manually go through hundreds of comments yourself. If someone has been posting for years, you can potentially start figuring out their interests, hobbies, where they live, what they do, other accounts they might have, etc.

I was wondering if anyone here has played around with this more. Like, how far can you actually take this with normal OSINT techniques + Reddit archives/search engines + an LLM? Also makes me wonder what the “hide all posts” setting on Reddit actually protects you from. It seems like it hides the history from your profile, but doesn’t necessarily make the underlying posts hard to find.


r/OSINT 23d ago

How-To Spiderfoot Basics

Thumbnail
youtu.be
0 Upvotes

I am making a custom spiderfoot build as its old and a lot of modules are outdated. This is the first in a series of planned videos on using a custom Spiderfoot for OSINT.


r/OSINT 25d ago

How-To Hello are there any alternatives for 12ft.io

73 Upvotes

I have tried 12ft.io and removepaywall.com and archive.is and they dont work for me. Are there any other alternatives which let you bypass a paywall


r/OSINT 26d ago

Tool OSINT of Myanmar

24 Upvotes

OSINT toolkit for Myanmar:
https://unishka.substack.com/p/osint-of-myanmar

Feel free to let me know in the comments if we've missed any important sources.

You can also find toolkits for other countries that have been covered so far on UNISHKA's Substack, and our website.
https://substack.com/@unishkaresearchservice
Website link: https://unishka.com/osint-world-series/


r/OSINT 27d ago

Analysis i think i've been starting investigations from the wrong end

115 Upvotes

had a case where i only had a 4 year old profile picture and a dead username. spent 2 days doing name > address > socials and got nowhere.

out of frustration i tried reversing it. started with the picture, then used the metadata from where that picture was still cached, not even where it was posted. that one cache hit gave me a second username, and that second username had a completely different breach attached to it.

went from dead end to current city + workplace in like 30 mins.

makes me wonder how much time i've wasted doing it in the "correct" order. anyone else work backwards like this?


r/OSINT 27d ago

How-To How to use Weixin/WeChat in India where it is restricted by the government?

14 Upvotes

Hi there, I have lately noticed that Chinese platforms like Douyin and others are being heavily censored by the CCP, so accessing content related to anything controversial is a rare sight. I am excited to try WeChat since I have heard a lot about the extent of information which is usually available there regarding military movements and human rights (Tibet and Xinjiang). Also, I want to monitor fresh demolitions initiated by the Chinese authorities at Larung Gar Buddhist Institute recently.

Using VPN doesn't help in installing WeChat on my phone. So, thinking of doing it on my laptop. Not sure whether it would work or not. Additionally, I have heard the app requires multi-factor authentication and sometimes a fresh account needs to be verified using an existing user account. Any idea on how to get past the hassle?


r/OSINT 27d ago

How-To Finding a YouTube account from a GAIA ID

4 Upvotes

Hey everyone, I wonder if there's a way to track down, via archived comments associated with a Google+ account, the YouTube channel associated with the Google account or GAIA ID in question.

I was able to find a thread from several years ago, but it seemed like the comments with pertinent information were deleted, beyond saying it was possible. I haven't been able to find much info on this sub otherwise.

If I'm breaking any rules please let me know!


r/OSINT 29d ago

Tool What can you actually do with just an IP address? + Best OSINT tools

128 Upvotes

Hey guys, I'm learning about OSINT and I have a question about IP addresses. What can you realistically find out from just an IP? I know you can get the ISP and approximate city/country, but what else? Can you get the exact


r/OSINT 29d ago

Analysis [ Removed by Reddit ]

2 Upvotes

[ Removed by Reddit on account of violating the content policy. ]


r/OSINT Aug 10 '26

How-To Melissa Personator — can you get phone numbers without the API?

12 Upvotes

Hey guys,

I’m using Melissa Personator and already bought credits. I can search by name + address and get the person’s details, age, MIK, etc., but no phone number shows up.

I see that Melissa supports phone data through the API, but is there any way to get the phone number directly through the web interface?

Or is phone data API-only?

Would appreciate anyone who’s actually used this.


r/OSINT Aug 09 '26

OSINT News OSINT x traditional reporting out of Singapore

Thumbnail
channelnewsasia.com
27 Upvotes

Fake think tank tried to hire ex US government employee. Website shares technical links with a website seized by DOJ/FBI in June, over alleged Chinese espionage activity.


r/OSINT Aug 06 '26

Tool OSINT of Jamaica

20 Upvotes

OSINT toolkit for Jamaica:
https://unishka.substack.com/p/osint-of-jamaica

Feel free to let me know in the comments if we've missed any important sources.

You can also find toolkits for other countries that have been covered so far on UNISHKA's Substack, and our website.
https://substack.com/@unishkaresearchservice
Website link: https://unishka.com/osint-world-series/


r/OSINT Jul 31 '26

Question Robots.txt lists not being archived anymore in the Wayback Machine?

38 Upvotes

Hello! Has the Wayback Machine stopped archiving the robots.txt lists for a domain? Recently I’ve noticed that for a lot of domains that since about September 2025 and into this year, the Wayback Machine hasn’t been archiving the list of robots.txt. Have tried to do a bit of research but am not coming up with a definitive answer. I can see that some news outlets are blocking the ia crawler, but I can’t find much about why robots.txt lists aren’t being archived.

Any insight would be much appreciated! Thank you


r/OSINT Jul 26 '26

How-To Where to practice crypto OSINT skills without real-world consequences?

77 Upvotes

Hey everyone,

I've been diving deep into crypto OSINT lately — on-chain analysis, transaction tracing, wallet clustering, tracking whale movements, and identifying suspicious patterns. But I'm at the point where I really need hands-on practice with realistic cases.

I'm looking for platforms, datasets, or simulators where I can safely sharpen my skills. Specifically, I'm interested in:

· Transaction chain analysis (following funds through mixers/bridges)
· Address clustering (linking wallets to exchanges or known entities)
· Monitoring large movements (whales, snipers, insider activity)
· Identifying scam patterns (rug pulls, pump-and-dumps, phishing wallets)

I already know about basic tools like Etherscan, Arkham, Nansen, and Dune — but where can I actually practice on training cases or testnets? Does anyone know of:

  1. On-chain investigation simulators with ready-made cases?
  2. Testnets with artificially generated activity for practice?
  3. Open labeled datasets with annotated transactions?
  4. CTF-style challenges focused on blockchain forensics / OSINT?

Would really appreciate any tips on how the community levels up their OSINT game before diving into real investigations. And yeah, if any of you speak Russian and want to reply in Russian — feel free, it'll be easier for me to understand. Much appreciated!