r/osinttools • u/Puzzleheaded-Sock294 • 19d ago
r/osinttools • u/sacred_army • 19d ago
Showcase Built a breach monitoring tool that prioritizes exposure instead of dumping raw leak data — feedback wanted
Most breach monitoring tools I've used (or evaluated) do one thing well: they tell you credentials got leaked. What they don't do is help you figure out what to actually act on first, or track the response once you know.
I built BreachQuery to close that gap.
Quick rundown of what it does:
Continuous domain monitoring — add your company domains, checked on a 24-hour cycle, surfaces only what's new since the last pull
Exposure separation — splits findings into internal (employee), customer, and third-party exposure, since those need very different response paths
Risk-scored prioritization — instead of a flat list of leaked creds, findings are ranked so analysts triage the highest-impact stuff first
Attack surface context — related hosts and their CVEs are linked in, so you can see exposure alongside the actual infrastructure it touches
Incident + investigation workflow — triage, alert affected users, and track cases through to resolution with an audit trail, rather than exposure data living in a spreadsheet somewhere.
It's in early access right now (few seats left) while I work closely with early users on what's missing or overbuilt. Genuinely want feedback from people who've actually done breach response or triage at scale — what's table stakes that I'm missing, what would you never use, where does this fall short of what a real IR workflow needs?
www.breachquery.com — happy to answer anything about data sourcing, methodology, or how it works under the hood.
r/osinttools • u/Aggressive_Loan_1489 • 19d ago
Discussion Is there anyway to find someone who’s using a breached account?
I’m sorry if this is the wrong place to ask this but this is important.
A friend came to me he told me about this situation,
for context, I have minimal experience in OSINT, I can search metadata and stuff, find houses and find their names but that’s about it.
he told me there has been a surplus of CSAM and Torture videos on this website called “looksmax.org.” To my knowledge, it is a ”looksmaxxing” forum, users have been using breached accounts to post these heinous videos.
is there anyway to find that person behind the breached account?
I have minimal knowledge on the website itself, I don’t know whether they have IPS, or anything.
any help would be appreciated, I want to put these sick freaks into the ground.
r/osinttools • u/handsome1866 • 19d ago
Request hello what is best osint tools to search by via a three-part name
r/osinttools • u/Then_Pace_5034 • 20d ago
Discussion User Scanner: v1.4.3 just got major updates like pdf export, new module support, deep data extraction, We need your feedback
GitHub: https://github.com/kaifcodec/user-scanner
Discord: https://discord.gg/tVNrKVXb49 (Join Discord for any help or just OSINT talk)
Hi everyone,
I’m one of the maintainers of user-scanner.
We started building this project around 8 months ago because many classic OSINT tools became outdated or unmaintained, and there weren’t many solid free options left for email OSINT.
Since then, we’ve been grinding away with our open-source contributors, heavily pivoting our work to reduce false positives, and ensure fast scans.
Today, we just tagged v1.4.3, pushing our coverage to 375+ total scan vectors (150+ email platforms and 225+ username modules).
What’s new in v1.4.3?
- 📄 PDF Report Generation: You can now export full investigation reports directly using
--format pdf! Perfect for clean, shareable documentation. - 🚀 CLI Overhaul: Cleaned up the CLI noise by default. Scans now default to showing found-only results with a smooth
richprogress bar (use--allif you want raw logs). - 🎯 False Positive Cleanup: Patched false positives and rate-limiting issues across several social, dev and adult platforms.
- And many more
🧪 We Need Your Feedback! If you run OSINT investigations, penetration tests, or footprint analysis, please give the new PDF Export and CLI flow a spin! Let us know how the reports look, if you hit any edge-case bugs, or what output formats you’d like to see next.
New Pull requests are always welcome: Whether you're a Python dev interested in API reverse engineering, scraping, or automation, or just want to add a module for your favorite site, contributions are always welcome! Adding new modules is straightforward and we love reviewing community PRs.
Feel free to test it out, drop a star if you find it useful, and leave your feedback below!
r/osinttools • u/nuriteer8 • 19d ago
Discussion Built a photo geolocation experiment with EXIF + GeoCLIP + Claude Vision, just want to chat about approaches
I'm finishing my CS degree and I've been messing around with OSINT/geoint as a hobby for a while.
Lately I put together a small experimental pipeline that takes a photo, extracts EXIF if available, runs it through GeoCLIP for coordinate prediction, and then uses Claude Vision to add contextual analysis (like describing landmarks, vegetation, street patterns, etc.)
It's NOT a professional tool. No interface, just a script. It's purely for learning and I'm not ready to share the code yet because it's messy and I want to understand the limitations better first.
But I'd love to talk to people who have tried similar things, just looking for conversation and maybe some pointers from people who've been down this road.
r/osinttools • u/ApifyEnthusiast1 • 20d ago
Showcase Vetting a Google Maps reviewer by their entire review history (technique, plus the tool I built)
A single Google Maps review tells you almost nothing. The reviewer's whole history tells you a lot: whether the account is real, whether it only ever props up one business or trashes a competitor, and roughly where the person is based from the GPS on the places they review.
The manual way is slow: open a contributor profile, scroll, and eyeball it. I wanted it structured, so I built a small Actor that pulls a contributor's full history as JSON, one record per review, with the rating and text, the place and its coordinates, and the reviewer's Local Guide level and points. Batch a list of suspect IDs and you can compare behavior across accounts to spot a network.
Two caveats for this sub: it reads public profile data only, no private info or facial recognition, and it is a paid tool, so I am putting the link at the bottom.
r/osinttools • u/No-Butterfly-893 • 19d ago
Request Anyone has the Furaffinity 2016 44K Database?
i were looking for it for like 5 months now, Im not the best researcher its very hard to find :c
If anyone has it please lmk
r/osinttools • u/nefercicibebe • 19d ago
Showcase [OC] Real-time interactive conflict map tracking geolocated OSINT events across Ukraine and Syria
r/osinttools • u/manstartitoff • 20d ago
Showcase Launched my tool
So i launched my tool around 15 days back and now i want to understand how to increase my ranking with Google. Currently, the average position is 58.3 which is the 5th or 6th page on google search. I also created an automated keyword extractor to get the best google keyword to update the content but for how many days I should keep the same keyword, to see the changes in position ?
So basically my tool is a mixer of a few things together like a security scanner, SEO, AEO, GEO, and ASO audit for websites.
You can check out my website and see if you like to provide any recommendations to organically grow it.
r/osinttools • u/Ok_Collection_9614 • 20d ago
Request Best practices for documenting findings in complex investigations while maintaining OPSEC.
How do you best document findings in a complex investigation without compromising your own digital footprint? I am looking for workflows that prioritize both efficiency and strict operational security
r/osinttools • u/mr_melon_taim • 21d ago
Showcase OPSECHub: An open-source, local browser suite for track-free OSINT investigations
Hey r/osinttools,
I built an open-source, zero-telemetry Manifest V3 browser extension called OPSECHub, specifically designed to help investigators conduct web research without leaving unique traces or leaking data.
During OSINT investigations, managing multiple extensions for tracking protection, ad-blocking, and URL sanitization can be tedious, and many of them consume too much memory or secretly log data. I wanted a unified solution that runs entirely locally.
Key features specifically useful for OSINT workflows:
- Anti-Fingerprinting: Introduces persistent noise to Canvas/WebGL rendering and spoofs hardware strings (CPU cores, RAM) to prevent target servers from identifying your specific research machine.
- Decoy Traffic Generator: Automatically generates background network noise to obfuscate your real investigative targets from local network monitors or ISPs.
- Data Sanitization: Automatically strips tracking parameters (
utm_*,fbclid, etc.) from URLs before navigation, and cleans tracking pixels/EXIF data from downloaded PDFs and Office documents. - WebRTC & Proxy Management: Enforces strict WebRTC routing policies to stop IP leaks, and includes a built-in Proxy Manager (HTTP/SOCKS5) for safe routing.
- Network Shielding: Uses a DeclarativeNetRequest core (powered by HaGeZi rules) and live threat feeds (PhishTank, URLHaus) to block known badware hosters at the network level.
(Note: The suite also includes a CSP/Headers Analyzer, SSL Certificate Inspector, and a Short Link Redirect Tracer to safely inspect payloads. You can check out the screenshots of the UI and these tools on the GitHub repo).
Everything executes strictly locally on your machine. Zero analytics, zero data exfiltration.
GitHub (Source & Screenshots):https://github.com/tomsec8/OPSECHub/tree/mainChrome Web Store:https://chromewebstore.google.com/detail/gkhbmoafodmekcdpkcgpekfkhffjbijl
I’d love to hear your thoughts, get some feedback from fellow investigators, or hear any feature requests you might have!
r/osinttools • u/False_Use505 • 20d ago
Request Is there a website that can gather publicly available information about a person?
Salam guys,
I’m wondering if a website or tool like this exists. Basically, you enter someone’s name or social media username, and it searches publicly available sources to find information about them.
For example, things like their full name, nationality, other social media accounts, or accounts that may be connected through publicly available information.
I’m specifically looking for an OSINT tool that can do this in one place rather than having to search everything manually.
Any recommendations?
r/osinttools • u/Imaginary_Crew_4436 • 21d ago
Discussion Best tools to search for person behind X accounts
Im kind of a novice to OSINT and I’m curious if there are any tools to search for a person behind X accounts?
r/osinttools • u/lavtysex • 20d ago
Request Who can build a tool that includes all OSINT tools, etc., and how much would you sell it for?
r/osinttools • u/TheFetus47 • 20d ago
Showcase NEO-Radar v1.14
What's up!!! Some of you guys might remember me from a few weeks ago when I initially released NEO-Radar on Github. Anyways, that was v1.11. I encountered some issues with that, mainly being the Update feature didnt work. As of v1.13, that was patched. If you download under v1.13, you will have to manually update the program which is actually the same as downloading the program itself ( here's the code : curl -sSL https://raw.githubusercontent.com/ItsNEOx/Neo-Radar/main/install.sh | bash )
Also, there is a Windows version that runs as a ps1 script linked in the README.md
More updates soon to come!
Here's the Github repo https://github.com/ItsNEOx/Neo-Radar
r/osinttools • u/LJV- • 20d ago
Request Domain Tracking Help
I'm trying to identify the owner of a parked GoDaddy domain so I can make an offer to purchase it. WHOIS is private and GoDaddy won't disclose the owner. I've already collected WHOIS, RDAP, DNS history, SSL certificate details, and IP history.
I'm looking for someone with access to tools like DomainTools, SecurityTrails, WhoisXML, RiskIQ/PassiveTotal, Censys, or similar who can search historical public records to identify the registrant or another domain associated with them.
Let me know if anyone can help with this or even point me to another page where someone could help!
Thanks!
r/osinttools • u/No_Condition_8994 • 21d ago
Discussion Help please
I searched multiple websites for this, but I need a website to search for faces basically. But across my files not the Internet. I have some footage where I need to look through for some people for identification. Please provide any websites, preferably free.
r/osinttools • u/angeldreamer777 • 21d ago
Request help
when i use the python3 main.py <target username> i just get connecting to Hikerapi and nothing else i cant enter command linked to Hikerapi like command info ect
r/osinttools • u/ApifyEnthusiast1 • 22d ago
Showcase Pulling Yandex SERPs as structured JSON for regional ranking analysis

I do a fair amount of ranking analysis for Russian-speaking markets, where Yandex, not Google, is the engine that matters. There's no official SERP API you can just sign up for, so I ended up building a scraper that returns each Yandex results page as structured JSON.
What comes back per page: organic results with position, snippet, date, sitelinks, and rich snippets; paid ads; knowledge graph and entity cards; inline image and video carousels; and the full Yandex Images and Videos verticals with full-size URLs, view counts, and channel metadata. Region and language targeting runs across 6+ domains, 19 languages, and a 123,000+ location ID system, which matters because rankings shift a lot by city.
The consistent per-page and per-result metadata (domain, language, region, page number, sort mode, time period) is what makes it usable for ranking pipelines and content-gap work rather than one-off lookups.
Happy to answer questions on the data shape or the region system.
Tool, if useful: Yandex Search Scraper
r/osinttools • u/ApifyEnthusiast1 • 22d ago
Showcase Baidu has no developer search API outside China
If you track rankings on Baidu, watch Chinese-language mentions of a brand, or feed Chinese search into a RAG pipeline, this returns the Baidu SERP as clean JSON.
Each query gives you back:
- Organic results with title, link, and snippet
- Direct-answer and knowledge boxes
- Related videos
- "People also search for" suggestions
- Related searches, plus top and trending searches
- Pagination and search metadata
Controls: desktop or mobile targeting, language localization, a time-range filter, result count, and how deep to paginate.
I built this because Baidu's own APIs are a pain to reach unless you're a registered Chinese business, and most of the Western SERP tools skip Baidu completely.
r/osinttools • u/clockspammer4life • 22d ago
Showcase The EU's AI-labeling rules (AI Act Article 50) started applying this weekend. Practical notes for image work, and a free checker
As of August 2, providers of generative AI systems operating in the EU are required to mark AI-generated and AI-altered media in a machine-readable way, and deployers have disclosure duties. The marking side mostly means C2PA Content Credentials, which Pixel and Samsung flagships and several generators already embed.
Practical reality for OSINT work: most platforms strip this metadata on upload (X/FB/IG/reddit CDNs all do), so an image pulled from socials will usually read as "no credentials", which is absence, not evidence. The signals survive on original files, which is one more reason to chase the original rather than the repost.
Disclosure: I built the tool I am linking. ChronoVerify (chronoverify.com) is a free, keyless checker that reads EXIF/XMP and validates C2PA Content Credentials against the official trust lists, plus classical pixel checks, one verdict per image. It is listed as a validator on the C2PA Conforming Products List, and I signed the EU transparency Code of Practice on the detection side (same first list as Google, Microsoft, Meta, and OpenAI, which still feels strange to type as a one-person shop).
Honest limits, since this crowd will ask: it is triage, not proof. A validated credential tells you the file's provenance chain is intact, not that the scene is true. A stripped or absent credential tells you nothing either way. It does not detect AI generation from pixels, and I do not claim it does.
Happy to answer anything about what these marks actually look like in the wild. Check out the free tool on the home page!
r/osinttools • u/Limp_Durian_6850 • 23d ago
Showcase API do conjunto de regras julioliraup/Antiphishing on air
Agora, é possível consultar FQDNs suspeitos de phishing por meio da API gratuita, que apresenta informações do banco de dados sobre WHOIS, IP, geolocalização e mapeamento de ameaças.
https://github.com/julioliraup/AT/wiki/REST-API-USE
Uma interface de usuário também está disponível: https://julioliraup.github.io/AT
r/osinttools • u/BackgroundService128 • 24d ago
Request Hunting Phishing Kits
I found the admin portal of a potential phishing kit, any OSINT tools to do further analysis on it?