osint
Discover the best alternatives in this category.
Wondersmith Rae
wondersmithrae.medium.com
Wondersmith Rae's Medium page shares OSINT-related articles and investigative write-ups from an active contributor within the open-source intelligence community.
WebBreacher's Hacking and Hiking Blog
webbreacher.com
WebBreacher's blog covers information security and OSINT topics, sharing technique write-ups and commentary from a long-time practitioner and trainer in the field.
VirtuProbe Studio
virtuprobe.studio
Cross-protocol request workbench for integration and penetration testing. 11 protocols, local-first, no account needed. Put your tests together on your own or supervise your agent helping you achieve your goals via MCP. Chain your tests or script your scenarios in JS or Groovy. Free tier covers HTTP, DNS and SMTP testing.
VEEXH – Medium
medium.com
VEEXH's Medium page publishes articles blending OSINT, HUMINT, and threat analysis, sharing insights aimed at intelligence and security professionals.
Trace Labs
www.tracelabs.org
Trace Labs' site and blog cover the nonprofit's crowdsourced OSINT work supporting missing persons investigations, along with CTF write-ups and community research initiatives.
The Security Noob
thesecuritynoob.com
The Security Noob blog shares approachable write-ups on OSINT and cybersecurity topics, aimed at helping newcomers build practical investigative and security skills.
Techjournalist Medium
techjournalism.medium.com
Techjournalist's Medium page features writing on open-source investigations, satellite imagery analysis, data journalism, and applying tools like Python and R to investigative work.
Skopenow Blog
www.skopenow.com
Skopenow's blog covers news and commentary on digital investigations, public records research, and due diligence, complementing the company's OSINT-focused investigative software platform.
seintpl/osint translated articles
github.com
A GitHub-hosted collection maintained by seintpl compiling OSINT articles translated into different languages, helping broaden access to community knowledge beyond English-language sources.
Secjuice - OSINT Articles
www.secjuice.com
Secjuice's OSINT tag aggregates community-contributed articles on open-source intelligence techniques, tools, and investigations, part of the broader Secjuice infosec publication.
Renato Trabucco | Digital Forensics & OSINT Analysis
thenerdinthehighcastle.wordpress.com
Renato Trabucco's WordPress blog covers digital forensics and OSINT analysis techniques, sharing case studies and methodology write-ups from a practitioner working across both disciplines.
Petro Cherkasets - Medium
medium.com
Petro Cherkasets' Medium page publishes articles on open-source intelligence techniques, tools, and investigative methodology from an active contributor in the OSINT community.
osintme.com
www.osintme.com
osintme.com publishes OSINT technique guides, tool reviews, and investigative write-ups covering a broad range of open-source intelligence topics for practitioners at different skill levels.
OSINTCurio.us
osintcurio.us
OSINTCurio.us shares tutorials, tool reviews, and technique breakdowns from a community of contributing OSINT practitioners, aimed at helping readers sharpen their investigative skills.
OSINT TEAM Blog
www.osintteam.com
OSINT Team's blog publishes articles teaching open-source intelligence and cybersecurity techniques, covering search methods, frameworks, tools, and free resources for investigators of all levels.
OSINT Combine Blog
www.osintcombine.com
OSINT Combine's blog, produced by the Australian OSINT training company, shares practical technique guides, tool walkthroughs, and industry commentary aimed at working investigators.
OH SHINT Blog
ohshint.gitbook.io
OH SHINT is a GitBook-hosted OSINT education blog offering approachable, beginner-friendly tutorials and technique write-ups covering a range of open-source investigation topics.
Offensive OSINT
www.offensiveosint.io
Offensive OSINT publishes technique-focused write-ups exploring the overlap between offensive security and open-source intelligence gathering, aimed at practitioners in both disciplines.
Maltego - OSINT Blogs
www.maltego.com
Maltego's OSINT blog category features articles and tutorials on open-source investigation techniques, often demonstrating how the Maltego link-analysis platform can be applied to real investigative workflows.
Krebs on Security
krebsonsecurity.com
Krebs on Security, run by veteran investigative journalist Brian Krebs, is one of the most respected cybersecurity news outlets, covering data breaches, cybercrime, and threat actor investigations in depth.
Key Findings Blog - MW OSINT
keyfindings.blog
Key Findings, by MW OSINT, publishes practical write-ups on open-source investigation techniques, tool testing, and case studies aimed at working OSINT practitioners.
IntelTechniques Blog
inteltechniques.com
Michael Bazzell's IntelTechniques blog covers OSINT methodology, privacy, and investigative techniques, complementing his popular search tools, books, and training courses.
Hakin9 Blog
hakin9.org
Hakin9's blog covers cybersecurity, penetration testing, and OSINT-adjacent topics, complementing the publication's long-running IT security magazine and training content.
Gralhix | OSINT & GEOINT Tutorials
gralhix.com
Gralhix publishes tutorials focused on OSINT and GEOINT (geospatial intelligence) techniques, covering satellite imagery analysis, geolocation, and open-source mapping tools.
Exposing the Invisible
exposingtheinvisible.org
Exposing the Invisible, from Tactical Tech, publishes guides, interviews, and long-form pieces exploring investigative methods, digital security, and the practice of open-source research.
Dutch OSINT Guy Nico
www.dutchosintguy.com
The Dutch OSINT Guy blog by Nico shares practical open-source investigation tips, tool guides, and technique write-ups aimed at both newcomers and experienced OSINT practitioners.
BushidoToken
blog.bushidotoken.net
BushidoToken's blog focuses on cyber threat intelligence, malware analysis, and threat actor tracking, written by a security researcher active in the CTI and OSINT communities.
Benjamin Strick Blog
benjaminstrick.com
Benjamin Strick's blog covers open-source investigation methodology, geolocation, and video verification techniques from a journalist and investigator known for high-profile OSINT-driven reporting.
Bellingcat
bellingcat.com
Bellingcat is the renowned investigative journalism outlet whose site publishes open-source investigations into conflicts, human rights abuses, and disinformation using verification and geolocation techniques.
Sector035 & Week In OSINT
sector035.nl
Week in OSINT, published by Sector035, is one of the most widely followed recurring roundups in the community, curating the latest OSINT tools, techniques, and news each week.
NixIntel
nixintel.info
NixIntel is a well-regarded OSINT blog offering practical tutorials on investigative techniques, geolocation, and tool usage, written by an experienced practitioner and trainer in the field.
hatless1der Blog
hatless1der.com
hatless1der's personal blog shares OSINT techniques, tool reviews, and investigative musings from a long-time practitioner active in the open-source intelligence community.
cyb_detective Thread Reader App
threadreaderapp.com
A Thread Reader archive of cyb_detective's Twitter/X threads, unrolling their daily OSINT tool discoveries and tips into an easy-to-read, searchable format outside the platform's native feed.
CQcore - Ginger_T
www.cqcore.uk
CQcore is a blog by OSINT practitioner Ginger_T covering practical open-source investigation techniques, tool walkthroughs, and case-study style write-ups aimed at helping readers build hands-on OSINT skills.
Tsurugi Linux VM
tsurugi-linux.org
Tsurugi Linux is a free, open-source Linux distribution purpose-built for digital forensics and incident response (DFIR), with a strong OSINT tooling component included alongside its forensic analysis suite. Based on Ubuntu, Tsurugi ships with a curated collection of forensic acquisition tools, memory and disk analysis utilities, malware triage tools, and open-source intelligence gathering applications, all organized for efficient investigative workflows. The distribution is actively maintained and regularly updated to keep pace with new forensic techniques and tool releases, and it's used both for professional casework and for educational purposes in digital forensics courses worldwide. Tsurugi is distributed as a live/installable ISO and is commonly run inside VirtualBox or VMware for safe, isolated analysis, protecting the host system from any malicious artifacts under examination. The project's documentation and active community support make it approachable for students and newcomers to DFIR, while its depth of pre-installed tooling makes it capable enough for professional examiners. For OSINT-focused users, Tsurugi's bundled reconnaissance and social-media investigation tools mean the same environment used for forensic casework can double as an investigative research platform without needing a separate dedicated OSINT VM.
Trace Labs OSINT VM
www.tracelabs.org
The Trace Labs OSINT VM is a free, purpose-built virtual machine distributed by Trace Labs, a nonprofit organization that crowdsources open-source intelligence to help locate missing persons. The VM comes pre-loaded with a curated set of OSINT tools tailored specifically for people-search investigations, social media analysis, and the kind of missing-persons research conducted during Trace Labs' well-known 'Search Party' CTF events, where teams compete to find real (but historical, already-resolved) missing persons cases using only open-source techniques. Because the VM is built around Trace Labs' own investigative methodology, it's an excellent hands-on learning tool for anyone wanting to practice ethical, structured people-finding OSINT in a legal and beneficial context. The organization actively maintains the VM and updates its toolset as new resources emerge in the community, and it pairs well with Trace Labs' Discord community, YouTube channel, and CTF initiatives for a full training pipeline. Using the VM within Trace Labs events also contributes tangible social good, as findings are passed to law enforcement partners, giving participants real-world motivation and impact alongside skill development, which distinguishes it from purely academic training environments.
Silo for Research by Authentic8
www.authentic8.com
Silo for Research, developed by Authentic8, is a purpose-built, cloud-based secure browsing platform specifically designed for online investigators and researchers who need to access potentially risky or sensitive web content, including dark web sites, extremist forums, and foreign-language sources, without exposing their own identity, IP address, or device to compromise. Unlike general-purpose remote browser isolation tools, Silo for Research is specifically engineered around investigative use cases, offering features like automatic attribution management, built-in translation, and detailed activity logging that support the specific compliance and evidentiary needs of professional investigators working in government, law enforcement, and corporate security contexts. Authentic8 has built a strong reputation within the professional OSINT and threat intelligence community, and Silo for Research is frequently used by government agencies, financial institutions, and corporate security teams that require an audited, enterprise-grade solution rather than a general consumer remote browser tool. Because the platform is delivered as a managed cloud service rather than requiring local VM management, it removes much of the technical overhead associated with maintaining sock-puppet infrastructure, though this convenience comes with an enterprise-oriented subscription cost rather than being freely available to casual users.
The Sunday Download - Gary Ruddell
www.garyruddell.com
The Sunday Download, written by Gary Ruddell, is a personal newsletter focused on cybersecurity content creation and building in public, blending the author's own professional cybersecurity insights with a transparent, journal-like approach to sharing his ongoing work and learning process. Rather than being a purely OSINT-specific technical newsletter, The Sunday Download reflects a broader cybersecurity content creator's perspective, likely touching on OSINT-adjacent topics as part of a wider cybersecurity content mix rather than focusing exclusively on open-source intelligence technique. The 'building in public' framing suggests the newsletter offers readers insight into the author's own content creation journey and professional development, which can be valuable for readers interested in the personal and career development side of building a presence within the cybersecurity and OSINT community, not just pure technical skill-building. As a personally branded newsletter delivered on a weekly Sunday cadence, it offers a more casual, personality-driven alternative to the more institutionally-produced or purely technical newsletters elsewhere in the OSINT and cybersecurity newsletter ecosystem, appealing to readers who enjoy following an individual creator's ongoing professional journey alongside the technical content they share.
Kasm: Disposable Secure Browser or Desktop
kasmweb.com
Kasm Workspaces is a container-based streaming platform that delivers zero-trust remote browser isolation (RBI) and desktop-as-a-service (DaaS) directly through a standard web browser, without requiring local installation of a VM or dedicated hardware. For OSINT investigators, Kasm is particularly valuable because it allows analysts to browse sensitive or high-risk sites, social media platforms, or dark web resources inside a disposable, isolated container that leaves no trace on the host machine and can be destroyed and rebuilt instantly after use. This 'browser sacrifice' pattern helps protect investigator identity and device security while conducting sock-puppet research or visiting potentially malicious sites. Kasm supports self-hosted deployment for organizations wanting full control over their data and infrastructure, as well as cloud-hosted options, and it integrates with Docker/Kubernetes environments for scalable enterprise deployment. Beyond browser isolation, Kasm can stream full desktop environments and specific OSINT toolchains, letting teams standardize their investigative environment across an organization. Its zero-trust architecture, SSO integration, and audit logging make it attractive for larger investigative teams, government agencies, and enterprises that need both security compliance and operational flexibility when performing sensitive online research.
Osint Updates by OSINT Ambition
osintupdates.com
Osint Updates, published by OSINT Ambition, is a newsletter dedicated to tracking and surfacing new developments across the open-source intelligence field, including tool releases, technique write-ups, and broader industry news relevant to OSINT practitioners. As one of several competing tool-and-news-focused OSINT newsletters within the community, its specific value proposition typically comes down to curation quality, update frequency, and how effectively it filters genuinely useful signal from the large and constantly growing volume of OSINT-related content being produced across blogs, social media, and community forums. The 'Ambition' branding suggests a newsletter positioned toward practitioners who are actively working to grow and advance their OSINT skills and career, potentially blending motivational or career-development framing alongside the more standard tool and technique update content typical of the genre. For readers building a personal newsletter subscription stack to stay current with the OSINT field, Osint Updates offers another complementary option alongside more established publications like Week in OSINT or Cyb_detective's Substack, with the specific mix of content ultimately depending on the curator's particular editorial focus and update cadence.
Kali Linux VM
www.kali.org
Kali Linux is the industry-standard Debian-based Linux distribution built for penetration testing, security auditing, and offensive security research, maintained by Offensive Security. While primarily known as a hacking and pentesting platform, it is also heavily used within the OSINT community because it ships with hundreds of pre-installed reconnaissance, network scanning, and information-gathering tools, alongside the ability to easily install additional OSINT-specific packages. Kali is available in numerous formats, including virtual machine images for VMware and VirtualBox, ARM builds for Raspberry Pi, WSL integration for Windows, cloud images for AWS and Azure, and a live-boot USB option, making it one of the most flexible security-focused operating systems available. The distribution receives frequent rolling updates, ensuring tools stay current, and its massive user base means troubleshooting help and tutorials are widely available online. Kali also offers 'Kali Purple' for defensive/blue-team work and various metapackages so users can install only the tool categories they need rather than the full toolkit. For OSINT practitioners specifically, Kali serves as a robust, sandboxed base system on which to run tools like Maltego, theHarvester, Recon-ng, and SpiderFoot without contaminating a personal or corporate machine.
OSINT TEAM Newsletter
www.osintteam.com
The OSINT TEAM Newsletter, published by OSINT Team (the organization behind the popular OSINT Team blog and Medium-style publication platform), is branded as 'The Practical OSINT Newsletter,' signaling an emphasis on immediately actionable techniques and tool recommendations rather than purely theoretical or news-focused content. Because OSINT Team already operates a well-established blog publishing platform where independent contributors share OSINT tutorials and technique write-ups, the newsletter likely functions as a curated digest pulling highlights from that broader content ecosystem, giving subscribers a convenient way to stay on top of new contributor articles without needing to browse the platform directly. This kind of newsletter-as-digest model is common among publications tied to larger content platforms, since it helps surface the most valuable content from a potentially large and varied stream of contributor submissions. For readers already engaged with the OSINT Team blog ecosystem, the newsletter offers a convenient complementary format, while for new subscribers it can serve as an introduction to the breadth of practical, contributor-driven OSINT content the platform has built its reputation on producing.
OSINT Jobs Newsletter
osintjobs.substack.com
The OSINT Jobs Newsletter, published weekly via Substack by the team at osint-jobs.com, delivers a curated combination of open-source intelligence tradecraft tips, exclusive job opportunities, and industry news tailored specifically to people building or advancing careers in the OSINT and intelligence field. Unlike most OSINT newsletters that focus purely on tools and techniques, this publication uniquely addresses the career and employment dimension of the field, aggregating job postings from intelligence agencies, private investigation firms, cybersecurity companies, and journalism organizations that specifically require OSINT skill sets. This career-focused angle fills a distinct gap in the OSINT information ecosystem, since most resources emphasize skill-building without addressing how practitioners can translate those skills into paid employment or contract work. The newsletter's weekly Sunday evening delivery cadence, combined with its focus on curated tradecraft tips alongside job listings, makes it a practical dual-purpose resource for readers who want to stay current on techniques while also monitoring the job market in a field where opportunities aren't always centrally advertised. With thousands of subscribers, it has become a go-to resource particularly for those transitioning into OSINT-related careers or freelance investigative work seeking visibility into where demand for these skills currently exists.
CSI Linux VM
csilinux.com
CSI Linux is a purpose-built Linux distribution designed specifically for open-source intelligence gathering, digital forensics, and incident response work. Available as a virtual machine, bootable ISO, or bare-metal install, it bundles together a curated set of pre-configured OSINT tools, forensic analysis utilities, and investigative workflows so that analysts don't need to manually install and configure dozens of separate applications. The distribution includes tools for social media investigation, geolocation, metadata extraction, dark web access, malware analysis basics, and case management, all organized within a consistent desktop environment tailored to investigative work. CSI Linux also offers an accompanying certification program and training courses, positioning the OS not just as software but as part of a broader educational ecosystem for aspiring digital investigators and law enforcement analysts. The project maintains an active Discord community where users troubleshoot issues, share techniques, and request new tool integrations, and regular updates keep the tool suite current with the fast-changing OSINT landscape. Because it's free to download, CSI Linux has become a popular entry point for students, hobbyists, and professionals who want a ready-made, sandboxed investigative environment without the overhead of building one from scratch on a generic Linux base.
Data2Know by Hetherington Group
www.hetheringtongroup.com
Data2Know, published by Hetherington Group, is a long-standing and highly regarded newsletter covering internet and online intelligence topics, recognized as one of the industry's most trusted sources specifically for due diligence investigations, background checks, and online personal security assessments. Hetherington Group is a well-established professional investigations and OSINT training firm, and the newsletter reflects that institutional pedigree by delivering articles, tips, and investigative insights grounded in real-time developments relevant to working investigators and due diligence professionals rather than purely hobbyist tips. The publication's specific focus on due diligence, background checks, and personal security assessment work distinguishes it from more general-purpose OSINT newsletters, making it particularly valuable for professionals in corporate investigations, compliance, executive protection, and private investigation fields who need specialized coverage of that niche rather than broad general OSINT technique roundups. Because Hetherington Group has operated in the professional investigations training space for many years, Data2Know carries institutional credibility and a track record of consistent, professionally relevant content that newer or purely community-run newsletters often can't match, making it a valuable subscription for readers specifically working in due diligence and background investigation contexts.
Cyber Hunter Academy Newsletter (Spanish)
site.cyberhunteracademy.com
Cyber Hunter Academy's newsletter is a Spanish-language publication produced by Cyber Hunter Academy, an organization focused on cybersecurity and OSINT training for the Spanish-speaking community, filling an important linguistic gap in a field whose newsletter ecosystem is otherwise dominated by English-language publications. The newsletter likely covers tool updates, technique tutorials, and training announcements tailored specifically to Spanish-speaking learners, making OSINT and cybersecurity education substantially more accessible to practitioners across Latin America and Spain who might otherwise face a language barrier engaging with the predominantly English-language OSINT resource ecosystem. Because Cyber Hunter Academy operates as a training organization, the newsletter likely also serves as a touchpoint into the academy's paid course offerings, giving subscribers a taste of the organization's teaching style and content quality before committing to formal training. For Spanish-speaking OSINT practitioners and cybersecurity enthusiasts, having a dedicated newsletter produced natively in their own language, rather than relying on translated or adapted English-language content, provides a more naturally accessible and culturally relevant learning resource within the broader international OSINT training landscape.
Alicja Pawłowska's OSINT Newsletter
www.alicjapawlowska.com
Alicja Pawłowska's OSINT Newsletter is a personal publication maintained by an active OSINT practitioner and content creator, sharing tips, technique write-ups, and curated resource recommendations drawn from the author's own investigative work and ongoing engagement with the broader OSINT community. Personal-brand newsletters of this type tend to carry a distinct individual voice and set of professional interests, meaning the specific mix of content, whether skewed toward social media investigation, geolocation, or general tradecraft, reflects the author's particular specialization and experience rather than an attempt at broad, generic coverage. Because the newsletter is hosted on the author's own personal website rather than a large aggregator platform, it often serves as an extension of the author's broader personal brand, potentially complementing other content such as social media presence, speaking engagements, or training work. For readers who value learning from an individual practitioner's specific perspective and ongoing casework insights rather than a purely institutional or corporate-voice publication, this newsletter offers a more personal, closely-followed alternative within the broader landscape of OSINT-focused newsletters.
My OSINT Newsletter
myosint.link
My OSINT Newsletter is published by the team behind My OSINT Training, a well-established OSINT education company co-founded by respected trainers including Micah Hoffman and Griffin (Hatless1der). The newsletter delivers curated updates on new tools, training opportunities, community news, and practical tips drawn from the team's extensive experience running professional OSINT courses and workshops. Because the publishers are active educators rather than purely tool aggregators, the newsletter content tends to emphasize pedagogical framing, helping readers understand not just what a tool does but how to think about incorporating it into a broader investigative methodology. My OSINT Training's broader ecosystem includes free introductory video courses, a dedicated free tools site, and paid certification-track training, and the newsletter functions as a connective thread tying these resources together while also surfacing genuinely new content from across the wider OSINT community. Given the founders' visibility and reputation within OSINT training circles, the newsletter often serves as an early signal for emerging trends, conference talks, and community initiatives before they gain wider attention, making it a valuable subscription for both newcomers seeking structured learning pathways and experienced practitioners wanting to stay connected to the training side of the OSINT ecosystem.
Digital Investigations - Craig Silverman
digitalinvestigations.substack.com
Digital Investigations, written by veteran journalist Craig Silverman, is a highly respected Substack newsletter focused on teaching digital verification, misinformation research, and online investigative techniques to journalists and researchers. Silverman built his reputation as a pioneering figure in fact-checking and verification journalism, notably through his earlier work leading BuzzFeed News' media desk and authoring the influential Verification Handbook referenced throughout the journalism and OSINT communities. The newsletter combines practical tutorials on tools and techniques with analysis of current misinformation trends, platform policy changes, and case studies of real investigations, giving subscribers both immediately actionable skills and broader context on the evolving information ecosystem. With tens of thousands of subscribers, it has become one of the most widely read publications specifically bridging journalism and digital investigation skill-building, distinguishing itself from more purely technical OSINT newsletters by maintaining a strong media-literacy and misinformation-analysis angle. Silverman's established credibility and network within investigative journalism circles mean the newsletter often features insights and sourcing that wouldn't be accessible through generic tool-focused OSINT content, making it particularly valuable for journalists, researchers, and anyone interested in the intersection of verification, misinformation, and digital investigation.
Cyb_detective's Substack
cybdetective.substack.com
Cyb_detective's Substack is a daily-updated newsletter focused specifically on open-source intelligence tools and techniques, run by the creator of the popular 'osint_stuff_tool_collection' GitHub repository, one of the largest continuously updated aggregations of OSINT tools available anywhere. The newsletter format allows the author to surface newly discovered or updated tools in digestible, frequent installments rather than the larger periodic roundups typical of other OSINT newsletters, making it especially useful for readers who want to stay on top of the tooling landscape in near real-time. Content typically includes brief tool descriptions, direct links, and occasional commentary on use cases, with a strong emphasis on genuinely new or lesser-known resources rather than repeatedly covering already well-known tools like Maltego or SpiderFoot. Because the author also maintains the associated GitHub tool collection, subscribers effectively get an early, curated preview of what eventually gets archived into that larger repository, giving the newsletter a role as both a discovery feed and a changelog for the broader collection. With thousands of subscribers, it has become one of the most consistently updated OSINT tool-discovery resources in the community, valuable for practitioners who prioritize staying current over deep tutorial content.
Websleuths
www.websleuths.com
Websleuths is one of the longest-running and most established online forums dedicated to crowdsourced discussion and investigation of true crime cases, missing persons, and unsolved mysteries, predating much of the more recent mainstream OSINT tooling and community boom by many years. The forum brings together amateur sleuths, true crime enthusiasts, and increasingly OSINT-savvy investigators who apply open-source research techniques to discuss and analyze ongoing criminal cases, missing persons situations, and historical unsolved mysteries in extensive, detailed forum threads. Because of its long history and large, dedicated user base, Websleuths has accumulated substantial institutional community knowledge about various high-profile cases, with some threads representing years of ongoing collaborative research and discussion by dedicated community members. While the forum predates the formal 'OSINT' branding now common in the professional investigation community, many of the research techniques long practiced by Websleuths members, including social media investigation, public records research, and cross-referencing multiple information sources, directly parallel modern OSINT methodology, making the forum a valuable, if less formally structured, community resource for those interested in applying investigative skills to true crime and missing persons contexts.
UK OSINT Community
www.osint.uk
UK OSINT Community is a regional community platform specifically serving open-source intelligence practitioners based in or focused on investigations involving the United Kingdom, providing a join page directing prospective members into the community's various engagement channels, likely including its associated Discord server and other communication platforms. As a dedicated UK-focused community, it addresses the practical need for practitioners working on British cases to connect with others who understand the specific nuances of UK public records, data protection law following UK GDPR post-Brexit, and other regionally distinct legal and administrative considerations that broader international OSINT communities don't specifically address in depth. The community likely provides networking, resource sharing, and mutual support opportunities specifically valuable to UK-based journalists, private investigators, corporate researchers, and security professionals who benefit from region-specific community knowledge and connections beyond what generic international OSINT community platforms can offer.
Trace Labs Discord
discord.com
Trace Labs is a nonprofit organization and community that crowdsources open-source intelligence specifically to assist in locating missing persons, and its Discord server serves as the central hub for thousands of volunteer investigators worldwide. The community is best known for organizing 'Search Party' CTF-style events, where teams compete using only legal, ethical OSINT techniques to gather information on real (though already-resolved) missing persons cases, with findings then shared with law enforcement partners in ongoing cases through separate channels. Beyond competitions, the Discord functions as an active mentorship and learning space, where experienced investigators help newcomers develop skills, share methodology write-ups, and discuss case strategy in a structured, ethical framework designed to avoid the pitfalls of vigilante-style investigation. Trace Labs also distributes its own OSINT VM and produces YouTube content, creating an integrated ecosystem for skill development that goes beyond a typical Discord chat community. Because the organization channels community effort toward a genuinely impactful social cause, member engagement tends to be high, and the events attract participants ranging from security professionals to complete OSINT beginners looking for meaningful, hands-on practice with real stakes and mentorship.
The OSINTion Discord
discord.gg
The OSINTion Discord is the community server for The OSINTion, an OSINT education and community platform that also maintains an associated wiki and website providing structured OSINT reference content and educational resources. The Discord likely serves as the primary real-time discussion and support channel for The OSINTion's broader community, complementing the more static reference content found on the associated wiki with dynamic, ongoing conversation, technique sharing, and member networking. Communities tied to broader educational platforms like this one often provide a more cohesive learning experience than standalone chat servers, since members can move between structured wiki reference material and live community discussion as their specific learning needs require, getting both durable reference content and responsive, real-time community support from the same overall educational ecosystem rather than needing to piece together disparate unconnected resources.
SANS Blue Team Discord
discord.gg
The SANS Blue Team Discord is the community server associated with SANS Institute's blue team and defensive security training programs, bringing together security analysts, incident responders, and students engaged with SANS's respected cybersecurity training curriculum. While primarily focused on defensive security topics like incident response, digital forensics, and security operations rather than pure OSINT, the community frequently touches on open-source intelligence techniques given how integral OSINT skills are to modern threat hunting, attacker attribution, and incident investigation work. Being associated with SANS, one of the most respected names in professional cybersecurity training, the community carries strong institutional credibility, and members often include working security professionals pursuing SANS certifications alongside their existing careers, giving the Discord a notably professional and technically rigorous discussion tone. For OSINT practitioners specifically interested in the cyber threat intelligence and defensive security applications of open-source investigation, this community offers valuable professional networking and technical discussion within a highly respected training ecosystem.
Where In The World Is Mrs. OSINT?
www.mrsosint.com
Where In The World Is Mrs. OSINT? is a geolocation-focused challenge series hosted by Mrs. OSINT, a personal OSINT training and content brand, playfully referencing the classic 'Where in the World is Carmen Sandiego?' educational game franchise to frame its own investigative geolocation puzzles. The challenge series presents participants with images or clues and asks them to determine a specific location using open-source investigative techniques, following the popular geolocation-puzzle format that has become a staple practice method within the OSINT community, similar in spirit to GeoGuessr and Sourcing.Games but presented with the curator's own distinct personal branding and challenge design. Personal-brand-driven challenge series like this one often build a loyal following through consistent, engaging content and the curator's own personality and teaching style, distinguishing them from more anonymous or purely mechanical challenge platforms. For followers of Mrs. OSINT's broader content and training offerings, this challenge series likely serves as an engaging, recurring way to stay connected with the practitioner's community while simultaneously practicing and sharpening genuine geolocation investigative skills through an enjoyably branded, game-like format.
r/RBI
www.reddit.com
r/RBI (Reddit Bureau of Investigation) is a distinctive Reddit community where users post cases involving missing items, unidentified contacts, suspicious situations, or general mysteries and ask fellow community members to help investigate and resolve them using collective open-source research and detective-style reasoning. Despite its playful 'Bureau of Investigation' branding, the subreddit exercises genuinely applicable OSINT skills, including tracing digital footprints, verifying claims, and piecing together disparate information, all applied to real personal situations community members bring to the subreddit for collective crowdsourced help. Because the cases posted are typically personal and immediate rather than historical or academic, the community provides a uniquely practical, real-stakes application of investigative reasoning skills, giving OSINT enthusiasts a genuinely useful and often rewarding way to apply their skills to help real people while simultaneously building experience with the kind of ad-hoc, resourceful investigative thinking that characterizes much real-world OSINT work.
WhatIsThisThing (r/whatisthisthing)
www.reddit.com
r/whatisthisthing is a large, active Reddit community where users post photographs of unidentified objects, tools, artifacts, or devices and ask fellow community members to help identify what the item is, its purpose, origin, or value, drawing on collective crowdsourced knowledge and investigative reasoning. While not explicitly branded as an OSINT training resource, the subreddit exercises genuinely relevant investigative skills, including visual analysis, pattern matching against known object categories, and research techniques to track down manufacturer information or historical context, all of which parallel core OSINT reasoning applied to a specific, engaging category of everyday mystery-solving. The community's large, knowledgeable membership means questions often get surprisingly detailed and well-researched answers, with contributors frequently demonstrating the same kind of systematic evidence-based reasoning that characterizes professional investigative work, just applied to identifying random objects rather than people or events. For OSINT enthusiasts who enjoy the puzzle-solving aspect of the discipline, following or participating in r/whatisthisthing offers an enjoyable, low-stakes way to practice observational and research skills in a genuinely fun, community-driven context distinct from more formal training platforms.
r/InfoSecNews
www.reddit.com
r/InfoSecNews is a Reddit community focused on aggregating and discussing current information security news, breaches, vulnerabilities, and broader cybersecurity industry developments, serving as a general news and discussion hub for the infosec community rather than being exclusively OSINT-focused. While its primary scope covers cybersecurity news broadly, OSINT-relevant stories, particularly those involving threat actor attribution, major data breaches, and investigative journalism pieces that use open-source techniques, frequently surface within the subreddit's discussion, making it a useful supplementary community for OSINT practitioners who also want to stay current on the broader cybersecurity news landscape their investigative work often intersects with. The subreddit's aggregation function means members can rely on community curation to surface the most significant and discussion-worthy security news items rather than needing to monitor dozens of individual news sources independently, providing efficient consolidated coverage of a fast-moving news domain that regularly touches on OSINT-adjacent themes and stories.
Verif!cation Quiz Bot
twitter.com
The Verification Quiz Bot, known on Twitter/X as @quiztime, is a long-running community account that posts daily verification-focused quizzes challenging followers to apply digital verification and OSINT techniques to answer questions about images, videos, or claims circulating online. Each quiz typically requires participants to use tools and techniques such as reverse image search, geolocation analysis, and metadata examination to determine facts like where or when a piece of content originated, closely mirroring the verification skills professional fact-checkers and journalists apply to authenticate user-generated content during breaking news events. Because the account has operated consistently for years, posting quizzes on a near-daily basis, it has built a loyal following of verification enthusiasts and professionals who use the recurring quizzes as a form of regular skill-maintenance practice, similar to how language learners might use daily practice apps to keep skills sharp. The community-oriented, low-stakes format encourages open discussion of approaches and techniques among participants, making it as much a learning community as a pure quiz account, and its association with established verification methodology makes it a respected recurring practice resource within journalism and OSINT verification circles.
Overt Operator: Crowdsourced Intelligence (Discord 2)
discord.gg
This is an alternate invite link for the Overt Operator: Crowdsourced Intelligence Discord community, the same collaborative open-source intelligence group focused on pooling community effort toward shared investigative challenges using crowdsourced research techniques. Communities sometimes maintain multiple active invite links for redundancy, tracking different referral sources, or because older links have expired and been replaced, meaning this second listing likely leads to the same underlying community as the other Overt Operator Discord entry found elsewhere in the collection. The crowdsourced intelligence model this community is built around reflects a broader trend within the OSINT community of leveraging distributed group effort to tackle investigative challenges more effectively than individual research alone, similar in spirit to Trace Labs' collaborative missing-persons search events, giving members hands-on collaborative practice and exposure to how experienced community members approach shared investigative problems in real time.
TryHackMe: Searchlight IMINT
tryhackme.com
Searchlight is a TryHackMe room focused specifically on IMINT (imagery intelligence) and OSINT techniques centered around extracting and analyzing information from images, building on foundational skills introduced in rooms like OhSINT with a deeper focus on visual analysis and image-based investigation methodology. The room likely covers techniques such as reverse image searching, metadata extraction, and visual clue analysis in more depth than introductory rooms, helping learners develop more refined image-intelligence-specific skills applicable to real-world investigative work involving photographic or visual evidence. Being part of TryHackMe's broader OSINT room catalog alongside OhSINT, Geolocating Images, and Google Dorking, Searchlight allows learners to build a comprehensive, structured skill progression across different OSINT sub-disciplines entirely within the same trusted, gamified training platform. The room's guided format, complete with structured hints and TryHackMe's large, supportive learner community, makes even more specialized topics like imagery intelligence accessible to learners without requiring them to piece together scattered external resources, reflecting TryHackMe's broader value proposition as a comprehensive, structured OSINT and cybersecurity training destination.
Overt Operator: Crowdsourced Intelligence (Discord 1)
discord.com
Overt Operator: Crowdsourced Intelligence is a Discord community focused on collaborative, crowdsourced open-source intelligence work, bringing together members to collectively investigate topics or cases using shared open-source research techniques and pooled community knowledge. The 'crowdsourced intelligence' framing suggests the community operates similarly in spirit to platforms like Trace Labs' Search Party events, where distributed community effort combines to tackle investigative challenges more effectively than any single individual could accomplish alone, though the specific focus and structure of Overt Operator's crowdsourced activities may differ from Trace Labs' missing-persons-specific mission. Community-driven crowdsourced intelligence projects like this one provide valuable hands-on collaborative practice for members, letting less experienced participants learn directly from more skilled community members working on the same shared investigative challenges in real time, fostering a more socially engaged and mentorship-oriented learning experience compared to purely solo skill-building resources.
TryHackMe: OhSINT
tryhackme.com
OhSINT is one of the most popular beginner-friendly rooms on TryHackMe, a widely used gamified cybersecurity learning platform, specifically designed to teach foundational open-source intelligence techniques through a hands-on, puzzle-like challenge. Participants are given a single image file and must use OSINT methods such as metadata extraction, reverse image searching, geolocation analysis, and network information lookups to progressively uncover a chain of clues leading to a final answer, simulating the kind of deductive, multi-step reasoning process real OSINT investigations often require. Because TryHackMe structures its content as guided, gamified rooms with built-in hints and a supportive community, OhSINT has become a standard recommendation for people just starting to learn OSINT, offering an approachable, self-paced way to practice real techniques rather than just reading about them theoretically. The room's popularity has also made it something of a rite of passage within the beginner OSINT community, frequently referenced in write-ups, walkthroughs, and training curricula as a first practical exercise. TryHackMe's broader platform also hosts related rooms like Google Dorking and Searchlight OSINT, allowing learners to build a structured skill progression entirely within the same gamified environment.
OSMOSIS Association
l.osmosisinstitute.org
The OSMOSIS Association (Open Source Multimedia and Social media Open Source Intelligence Symposium) is a prominent professional association and annual conference bringing together digital forensics, open-source intelligence, and social media investigation professionals, particularly with strong representation from law enforcement and government sectors. The organization's website and community serve current members and conference attendees, providing access to training resources, conference materials, and networking opportunities within a professionally-oriented community that skews toward government, law enforcement, and corporate investigation professionals rather than a purely hobbyist or general enthusiast audience. OSMOSIS has built a respected reputation over years of running its symposium, which features presentations from leading practitioners across digital forensics and OSINT disciplines, making association membership and community access valuable for professionals seeking institutional credibility, structured networking, and access to conference-level training content not typically available through purely informal community channels like Discord or Reddit.
TryHackMe: Google Dorking
tryhackme.com
Google Dorking is a TryHackMe room dedicated to teaching advanced Google search operators and techniques used to uncover sensitive information, exposed files, and hard-to-find data that standard search queries wouldn't surface, a foundational skill underlying much of both offensive security reconnaissance and open-source intelligence investigation. The room walks learners through operator syntax such as site:, filetype:, intitle:, and various boolean query combinations, along with practical exercises demonstrating how these techniques can reveal information that organizations or individuals didn't intend to make easily discoverable through normal search behavior. Because Google dorking is one of the highest-leverage foundational skills in both OSINT and security research, mastering it through a structured, gamified room like this one gives learners a strong technical base before moving on to more advanced or specialized techniques covered in other rooms. TryHackMe's guided format, complete with built-in hints and community support, makes this technical topic approachable even for complete beginners, and the skill directly transfers to real-world investigative work regardless of whether the practitioner's eventual focus is security research, journalism, or general open-source investigation.
Osintia.com
osintia.com
Osintia is a community platform for Open Source Intelligence professionals to share knowledge, ideas, tools, and further develop their skills, positioning itself as a general-purpose hub bringing together OSINT practitioners across various specializations and experience levels. The platform likely combines forum-style discussion, resource sharing, and possibly structured content or courses, giving members multiple ways to engage with the community beyond pure real-time chat, distinguishing it somewhat from purely Discord or Slack-based communities that rely entirely on chat-based interaction. Osintia also maintains a dedicated Start.me resource page specifically focused on social media investigation tools, referenced elsewhere in the broader OSINT collection, suggesting the community actively produces and curates supplementary educational content beyond just facilitating member discussion. For practitioners looking for a community platform that combines discussion with structured resource curation, Osintia offers a somewhat more comprehensive community experience compared to communities that rely solely on ephemeral chat-based interaction for member engagement and knowledge sharing.
TryHackMe: Geolocating Images
tryhackme.com
Geolocating Images is a TryHackMe room specifically focused on teaching the practical techniques used to determine the physical location where a photograph was taken, one of the most valuable and widely applicable skills in the broader OSINT discipline. The room guides learners through analyzing visual clues such as architecture, vegetation, signage, shadows, and other environmental details, combined with metadata analysis and reverse image search techniques, to progressively narrow down and confirm a location, mirroring the methodology used by professional investigators and organizations like Bellingcat in real-world geolocation verification work. Being hosted on TryHackMe's gamified platform, the room includes structured guidance, built-in hints, and a supportive community, making it accessible for learners who are newer to geolocation-specific technique even if they have some general OSINT background. This room complements other TryHackMe OSINT content like OhSINT and Searchlight, allowing learners to build a comprehensive skill set across different OSINT sub-disciplines within the same trusted, gamified learning platform, and its specific focus on geolocation makes it a valuable, focused practice session for anyone wanting to deliberately sharpen that particular high-value skill.
OSINT-FR Discord
discord.osintfr.com
The OSINT-FR Discord is the real-time chat community associated with OSINT-FR, the well-established global French-speaking OSINT community, providing an interactive discussion space complementing the organization's main website and broader community activities. The Discord likely hosts channels for technique discussion, tool recommendations, and general networking among French-speaking OSINT practitioners, offering the kind of fast, informal, real-time community interaction that static websites and forums can't fully replicate. Given OSINT-FR's established reputation and broad geographic reach across Francophone countries and regions, the Discord likely maintains an active, engaged membership that provides genuine ongoing value for French-speaking practitioners seeking community support and knowledge-sharing calibrated specifically to their linguistic and cultural context, distinct from what they'd find in the numerically larger but predominantly English-language OSINT Discord communities that dominate the broader international ecosystem.
Trace Labs CTFs (Search Party)
www.tracelabs.org
Trace Labs' Search Party CTF is a globally recognized capture-the-flag competition format in which teams of investigators use exclusively open-source, ethical, and legal techniques to gather information related to real missing persons cases, with findings passed along to law enforcement partners to potentially assist ongoing investigations. Unlike typical cybersecurity CTFs focused on exploiting systems, Search Party events are entirely investigation-based, scoring teams on their ability to find information such as social media accounts, associates, locations, and employment history using publicly available sources within a set time limit. These events are held both virtually and in-person at security conferences worldwide, drawing participants ranging from complete OSINT beginners to seasoned security and intelligence professionals, all motivated by the genuinely meaningful real-world stakes involved. Trace Labs provides a dedicated OSINT VM preloaded with relevant tools, extensive rules and ethics guidelines to keep participant conduct within legal and appropriate bounds, and post-event debriefs that help participants improve their technique for future competitions. The combination of hands-on skill-building, competitive structure, and tangible social impact has made Search Party one of the most respected and sought-after events in the OSINT community, and many participants credit it as their entry point into more serious OSINT practice or careers.
OSINT-FR (France)
osintfr.com
OSINT-FR is a well-established global community specifically gathering French-speaking OSINT experts and learners who want to develop their knowledge of open-source intelligence techniques, serving as one of the more prominent non-English-language OSINT communities within the broader international ecosystem. The community addresses the significant gap facing French-speaking practitioners who might otherwise need to rely entirely on English-language resources and communities, providing native-language discussion, resource sharing, and mutual support specifically calibrated to the needs and interests of Francophone investigators, journalists, and security researchers. Being described as a global community rather than purely France-specific suggests the group draws French-speaking members from across multiple countries and regions, including France, Belgium, Switzerland, Quebec, and various Francophone African nations, giving it a broader reach than a purely nationally-bounded community while maintaining the linguistic and cultural cohesion that comes from shared language. OSINT-FR complements its main community platform with an associated Discord server, giving members multiple engagement channels for participating in the community's ongoing knowledge-sharing and skill-development activities.
The Insider Threat CTF
blog.bushidotoken.net
The Insider Threat CTF, hosted on BushidoToken's cybersecurity blog, is a specialized capture-the-flag challenge focused specifically on insider threat investigation scenarios, requiring participants to apply OSINT and digital forensics techniques to uncover evidence of malicious insider activity within a simulated organizational context. This niche framing distinguishes it from more general OSINT or cybersecurity CTFs, since insider threat investigation requires a distinct analytical mindset focused on internal organizational data, behavioral analysis, and often more nuanced ethical considerations compared to external threat actor investigation or general people-search OSINT work. BushidoToken, the blog's author, is a respected figure within the cyber threat intelligence community known for detailed technical write-ups on threat actor campaigns and security research, lending credibility to the challenge's design and realism. For security professionals and OSINT practitioners specifically interested in the corporate security and insider risk management niche, this CTF offers valuable specialized practice that most general-purpose OSINT training platforms don't address, reflecting the growing recognition that insider threats represent a distinct and increasingly important category within the broader security and investigative landscape.
OSINT UK Discord Server
discord.com
The OSINT UK Discord Server is the community chat platform for the broader UK OSINT Community, bringing together open-source intelligence practitioners specifically based in or focused on investigations involving the United Kingdom. The server likely provides channels for discussing UK-specific investigative resources, such as Companies House records, UK court databases, and other British public records systems that differ from American or general international OSINT guidance, alongside more general technique and tool discussion relevant to any OSINT practitioner. Because UK data protection law, following UK GDPR post-Brexit, and platform usage patterns differ meaningfully from other jurisdictions, having a dedicated community space for discussing these UK-specific nuances provides genuine practical value beyond what broader international OSINT communities typically address in depth. For investigators, journalists, and researchers working on UK-focused cases, this Discord offers valuable region-specific networking and knowledge-sharing alongside the community's associated main website resource.
Sourcing.Games
sourcing.games
Sourcing.Games is a dedicated OSINT training platform built around gamified geolocation and image-sourcing challenges, where users are presented with photographs and must use open-source investigative techniques to determine exactly where and sometimes when the image was taken. This closely mirrors real-world geolocation work used in journalism, human rights investigations, and conflict verification, making the platform valuable practice for skills popularized by organizations like Bellingcat. The game-like scoring and competitive format, similar in spirit to GeoGuessr but purpose-built for serious investigative skill development rather than casual entertainment, helps keep practice engaging while building genuinely transferable techniques such as analyzing vegetation, architecture, signage, shadows, and other visual clues to narrow down a location. Because geolocation is one of the most consistently useful and broadly applicable OSINT skills across journalism, human rights, and security investigation contexts, platforms like Sourcing.Games fill an important practical training niche that pure reading material can't replicate. The platform is frequently recommended alongside Bellingcat's workshops and GeoGuessr as a way to build the specific visual-analysis intuition that experienced geolocation investigators rely on, helping newer practitioners develop pattern-recognition skills through repeated, structured practice.
OSINT Switzerland Discord
discord.com
The OSINT Switzerland Discord is the community chat server associated with the broader OSINT Switzerland community platform, providing real-time discussion, networking, and resource sharing specifically for OSINT practitioners based in or focused on investigations involving Switzerland. As the interactive discussion component complementing the main OSINT Switzerland website, the Discord likely hosts more dynamic, real-time conversation among community members compared to the more static informational content the main site might provide, including channels for technique discussion, event coordination, and general networking among Swiss-focused OSINT practitioners. Given Switzerland's distinct multilingual and legal context, this Discord likely serves discussion in multiple languages relevant to the country's different linguistic regions, offering a more linguistically and culturally tailored community experience than broader international English-language OSINT Discord servers can provide for practitioners specifically working within or interested in the Swiss investigative context.
SEINT_pl - osintquiz
github.com
SEINT_pl's osintquiz is a GitHub repository maintained by a Polish OSINT community project, compiling quiz-style investigative challenges and questions designed to test and build open-source intelligence research skills within a structured, version-controlled format. Being hosted on GitHub rather than social media, this quiz collection benefits from more durable, easily accessible archiving compared to quiz events organized purely through ephemeral social media posts, allowing learners to revisit and work through the material at their own pace long after the original event, if any, concluded. As part of the broader SEINT_pl community project, which also maintains other OSINT resource collections including translated articles for Polish-speaking audiences, this quiz repository likely serves a similarly regional function, potentially including some content specifically relevant to Polish or Central European contexts alongside more general OSINT quiz questions. GitHub-hosted community quiz collections like this one reflect a growing trend of preserving and formalizing what might otherwise be ephemeral social-media-driven community events into more permanent, accessible learning resources that continue providing value well beyond their original publication or event date.
OSINT Switzerland
osintswitzerland.ch
OSINT Switzerland is a regional community platform and website specifically serving open-source intelligence practitioners in Switzerland, providing localized networking, resource sharing, and community engagement tailored to the Swiss context. Switzerland's unique multilingual environment, spanning German, French, Italian, and Romansh-speaking regions, along with its distinct legal and data protection framework, means Swiss OSINT practitioners often benefit from region-specific community resources that address these particular linguistic and regulatory nuances more directly than broader international OSINT communities can. The website likely serves as a hub pointing to the community's associated Discord server (listed separately) along with other resources, events, or informational content specifically relevant to Swiss-based investigators, journalists, and security researchers. For OSINT practitioners based in or working on cases involving Switzerland, this community offers valuable localized networking and knowledge-sharing that accounts for the country's specific legal, linguistic, and cultural investigative context.
Sector035 OSINT Quiz 2020
twitter.com
The Sector035 OSINT Quiz 2020 is the follow-up edition of the community-run investigative quiz event organized by Sector035, the respected curator behind the widely followed 'Week in OSINT' newsletter, continuing the informal annual tradition of testing the OSINT community's investigative skills through social-media-organized quiz challenges. Following the same general format as the 2019 edition, the quiz presents a series of open-source research questions requiring participants to apply genuine investigative techniques to arrive at correct answers, with the community-driven, low-stakes format fostering engagement and camaraderie among practitioners of varying skill levels. As an annual or recurring tradition, this quiz series reflects the ongoing vibrancy and social cohesion within the OSINT community, with Sector035's established credibility helping draw consistent participation year over year. Because the quiz was organized during 2020, a period marked by significant global events, the specific questions likely reflected contemporary investigative themes relevant to that particular moment, giving the event both skill-building value and a historical snapshot quality reflecting what the community found engaging and instructive during that specific year's edition of the recurring quiz tradition.
OSINT Editor Discord
discord.gg
OSINT Editor Discord is a community server likely associated with an OSINT-focused content or tooling project using the 'Editor' branding, suggesting the community may be centered around a specific OSINT-related editing tool, content platform, or collaborative documentation effort within the broader open-source intelligence ecosystem. Community servers tied to specific tools or projects typically provide dedicated support channels, feature request discussion, and a gathering point for users specifically invested in that particular project's development and use, distinguishing them from more general-purpose OSINT discussion communities like r/OSINT or larger umbrella Discord servers. For users of whatever specific OSINT Editor tool or platform this community supports, the Discord likely serves as the primary channel for troubleshooting, staying current with updates, and providing feedback directly to the project's maintainers, offering a more focused and directly useful community experience for that specific user base compared to broader, more general OSINT communities.
Sector035 OSINT Quiz 2019
twitter.com
The Sector035 OSINT Quiz 2019 is a community-run investigative quiz event organized by Sector035, the well-respected curator behind the widely followed 'Week in OSINT' newsletter, representing an early entry in what became a recurring tradition of annual OSINT quizzes within the community. The quiz format typically presents participants with a series of investigative questions requiring open-source research and deduction to answer correctly, run informally through social media channels like the announcement referenced here, with participants submitting answers via email for evaluation. These community-organized quiz events serve an important social and skill-building function within the OSINT community, providing a lower-stakes, more casual alternative to formal CTF competitions while still testing genuine investigative and research skills in a fun, communal format that helps build camaraderie among practitioners. Because Sector035 has significant credibility and reach within the OSINT community through the ongoing Week in OSINT newsletter, these quiz events tend to attract solid community participation and engagement despite their informal, social-media-driven organization format, and they represent a snapshot of the kinds of investigative puzzles the community found engaging and instructive during that particular year.
Openosint Team Slack
openosint.slack.com
Openosint Team Slack is a Slack-based community workspace for OSINT practitioners, offering an alternative platform choice to the more commonly used Discord for OSINT community discussion. Because Slack is widely used in professional and workplace contexts, communities choosing this platform over Discord may skew toward a more professionally-oriented membership or discussion tone, potentially appealing to practitioners who are more accustomed to Slack's interface and channel organization style from their day job compared to gaming-oriented Discord. Slack's threading and channel organization features can support well-structured, topic-specific discussion in a way that some users find more conducive to focused professional conversation compared to Discord's more free-flowing chat style, though this ultimately depends on how the specific community's channels and norms are structured. For OSINT practitioners who prefer Slack's interface and are already using it in professional contexts, this community offers a familiar platform choice for engaging with fellow open-source intelligence practitioners without needing to adopt a separate gaming-oriented chat client.
PictureGame (r/PictureGame)
www.reddit.com
r/PictureGame is a Reddit community built around a specific investigative guessing game format, where users post cropped or partial images and challenge other members to identify the exact location, subject, or context depicted using visual analysis and deduction skills, closely mirroring core OSINT geolocation and image-analysis techniques. While framed as recreational entertainment rather than formal OSINT training, the subreddit provides genuinely useful, repeated practice for the visual pattern-recognition skills central to professional geolocation work, since successfully identifying picture locations requires analyzing architectural styles, natural landmarks, signage, and other visual clues in much the same way professional investigators approach image verification and geolocation tasks. The community-driven, casual format makes it an accessible and enjoyable way to build these skills incidentally through regular engagement, without the more formal structure of dedicated training platforms, appealing particularly to hobbyists who enjoy the puzzle-solving aspect of OSINT-adjacent skills without necessarily pursuing OSINT as a professional discipline. Many OSINT practitioners cite communities like r/PictureGame as an enjoyable supplementary practice ground alongside more structured geolocation training resources like GeoGuessr or Sourcing.Games.
Nordic OSINT Community
www.osinord.com
The Nordic OSINT Community, hosted at osinord.com, is a regional community platform specifically serving OSINT practitioners across the Nordic countries, including Sweden, Norway, Denmark, Finland, and Iceland, addressing the common gap in the broader OSINT community ecosystem which tends to skew heavily toward English-language, U.S. and UK-centric resources and discussion. Regional communities like this one provide valuable localized networking and knowledge-sharing opportunities, connecting practitioners who share similar legal frameworks, platform usage patterns, and cultural context specific to the Nordic region that broader international communities don't specifically address. For investigators, journalists, and researchers working on cases involving Nordic countries or simply wanting to connect with geographically proximate OSINT practitioners, this community offers a valuable networking and knowledge-sharing resource distinct from the larger but more geographically diffuse international OSINT communities like r/OSINT or various global Discord servers.
OSINT: Corporate Recon - HTB Academy
academy.hackthebox.com
OSINT: Corporate Recon is a structured training course offered through HTB Academy, the educational arm of Hack The Box, one of the most respected platforms in the cybersecurity training and CTF space, focusing specifically on applying open-source intelligence techniques to corporate reconnaissance for penetration testing and security assessment purposes. The course teaches how to gather information about a target organization's digital footprint, including employee information, technology stack details, and organizational structure, as a foundational step in authorized penetration testing engagements, reflecting the significant overlap between OSINT methodology and the reconnaissance phase of professional security assessments. Being part of HTB Academy's structured curriculum, the course includes guided lessons, hands-on practical exercises, and skill assessments rather than being a standalone unstructured challenge, giving learners a more academically rigorous and professionally credentialed learning experience compared to informal community challenges. HTB Academy operates on a freemium model, with some introductory content available for free and deeper course material requiring a paid subscription, making this course accessible for initial exploration while incentivizing further investment for learners who want the complete corporate reconnaissance curriculum and associated skill certification.
Imaginary CTF Discord
discord.gg
The Imaginary CTF Discord is the community hub for Imaginary CTF, a popular community-run capture-the-flag platform offering regular daily challenges spanning multiple cybersecurity disciplines including cryptography, reverse engineering, web exploitation, and general security puzzles. With thousands of members, the server serves as a gathering point for discussion, hints, and collaborative problem-solving around the platform's daily and periodic special challenges, fostering an active, engaged community particularly popular among students and cybersecurity hobbyists learning through consistent practice. While not exclusively OSINT-focused, the general reconnaissance and information-gathering skills required for certain challenge categories overlap meaningfully with core OSINT technique, and the platform's active, welcoming community makes it a good complementary practice environment for security enthusiasts who want broader cybersecurity CTF exposure and community engagement alongside more narrowly OSINT-focused training platforms and communities found elsewhere in the ecosystem.
OSINT Dojo
www.osintdojo.com
OSINT Dojo is a well-regarded OSINT education and community platform known for its structured training content, YouTube channel, and its creation of the popular Sakura and OhSINT rooms on TryHackMe, among the most recommended beginner and intermediate OSINT practice exercises in the community. The platform combines blog-style tutorial content, video walkthroughs, and gamified practice challenges into a cohesive learning ecosystem, giving learners multiple complementary formats to engage with the same underlying skill-building curriculum depending on their preferred learning style. Because OSINT Dojo has built its reputation specifically around structured, pedagogically sound OSINT education rather than simply aggregating links or challenges, the content across its various formats tends to be thoughtfully sequenced to support genuine skill progression from beginner through intermediate levels. The platform's TryHackMe room creations in particular have achieved outsized visibility within the broader OSINT training community, often serving as many newcomers' very first hands-on OSINT exercise, making OSINT Dojo an influential entry point into the field for a significant portion of people currently active in OSINT investigation and training circles.
Hack South
discord.gg
Hack South is a community Discord server bringing together cybersecurity enthusiasts, hackers, and security researchers, with a naming convention suggesting either a Southern Hemisphere or Southern regional focus (such as Southern Africa or the Southern United States) for its core community base. Regional cybersecurity and hacking communities like this one often provide valuable localized networking opportunities, connecting practitioners who may face similar regional infrastructure, legal, or cultural contexts in their security and investigative work that broader international communities don't specifically address. While not exclusively OSINT-focused, communities of this type typically include OSINT-adjacent discussion as part of their broader cybersecurity and hacking culture conversation, given how frequently reconnaissance and information-gathering techniques come up in general security discussion. For practitioners in the relevant geographic region the community serves, Hack South likely offers valuable local networking, meetup coordination, and community-building opportunities that larger international OSINT and security communities can't replicate due to their more globally dispersed membership.
OSINT Combine Capture-the-Flag
osintcombine.ctfd.io
OSINT Combine's Capture-the-Flag platform, hosted on the popular CTFd framework, is a dedicated competitive challenge environment built by OSINT Combine, the respected Australian OSINT training and consultancy company, offering structured CTF-style challenges specifically focused on open-source intelligence skills. Being built by a professional training organization rather than a purely community-run effort, the challenges tend to reflect genuinely tested, pedagogically sound investigative puzzles that align with the broader skill-building curriculum the company teaches through its paid courses and free tools. The CTFd platform provides a polished, standard competitive CTF experience including scoreboards, hint systems, and structured challenge categories, giving participants a familiar and well-supported competitive framework specifically applied to OSINT rather than general cybersecurity topics. OSINT Combine periodically runs live timed CTF events using this platform, often tied to training courses, conferences, or community engagement campaigns, giving participants both practice value and a competitive, community-oriented experience. For practitioners already engaged with OSINT Combine's broader tool and training ecosystem, this CTF platform offers a natural extension for testing and validating the skills developed through the company's other educational offerings.
Element: OSINT Chat - Matrix
app.element.io
Element: OSINT Chat is a community discussion room hosted on the Matrix protocol, an open, decentralized, and federated communication network that offers an alternative to more centralized platforms like Discord or Slack for OSINT community discussion. Matrix's decentralized architecture appeals particularly to privacy-conscious and security-minded communities, since it allows self-hosting and doesn't concentrate all community data and control within a single corporate platform, a consideration that resonates with many OSINT and security practitioners who are professionally attuned to platform data-sovereignty and privacy concerns. The Element client provides a modern, feature-rich chat interface for interacting with Matrix rooms, supporting end-to-end encryption and cross-platform accessibility similar to more mainstream chat applications, while preserving the underlying decentralized and interoperable nature of the Matrix protocol. For OSINT practitioners who prioritize platform independence and want to reduce reliance on centralized corporate chat platforms, this Matrix-based community offers a philosophically aligned alternative discussion space, even if its membership and activity level may be smaller than more mainstream Discord-based OSINT communities.
Operation OShINT: Shake The Cobwebs
csilinux.com
Operation OShINT: Shake The Cobwebs is a narrative-driven OSINT investigative exercise hosted by CSI Linux, presenting a scenario-based challenge designed to help learners practice open-source intelligence techniques within an engaging, story-framed investigative context. The 'Shake The Cobwebs' framing suggests the exercise is intended partly as a refresher or warm-up challenge, helping practitioners reactivate and sharpen previously learned skills through practical application rather than introducing entirely new concepts, which can be valuable for periodic skill maintenance rather than only initial learning. Being hosted by CSI Linux, the popular free OSINT and digital forensics Linux distribution, the exercise likely complements and reinforces skills relevant to using the CSI Linux toolset, giving users of that distribution a practical way to test their proficiency with the bundled investigative tools in a structured scenario context. Narrative-framed OSINT exercises like this one help maintain learner engagement by embedding technical skill practice within a more memorable and enjoyable storyline, distinguishing this kind of exercise from drier, purely instructional practice material.
We Are Bellingcat
www.bellingcat.com
We Are Bellingcat, written by Bellingcat founder Eliot Higgins, tells the story of how a group of amateur online sleuths grew into one of the world's most respected investigative journalism organizations, credited with uncovering war crimes, exposing disinformation campaigns, and helping identify perpetrators behind major international incidents. Rather than a pure how-to manual, the book blends narrative storytelling with practical insight into the open-source investigation methods that made Bellingcat's work possible, including the identification of the Russian operatives behind the Skripal poisoning and detailed reconstructions of the MH17 shoot-down. It offers readers a behind-the-scenes look at how citizen journalists and volunteers, often with no formal intelligence or journalism training, can leverage publicly available information, satellite imagery, social media, and crowdsourced verification to hold power to account. The book is particularly valuable for understanding the philosophy and ethics behind Bellingcat's approach, including their commitment to transparency and reproducibility, which distinguishes their methodology from more opaque intelligence work. For readers new to OSINT, it functions as an inspiring, real-world demonstration of what's achievable using open-source techniques, while for experienced practitioners it offers historical context on how the field's most influential organization developed its practices and reputation.
DEFCON Discord
discord.gg
The DEFCON Discord is the official community server for DEF CON, one of the world's largest and most influential hacker and information security conferences, bringing together tens of thousands of security researchers, hackers, and enthusiasts from around the globe. While DEF CON's scope spans the entire cybersecurity discipline rather than being exclusively OSINT-focused, the conference features dedicated OSINT-related villages, talks, and competitions each year, and the Discord serves as a year-round hub for the broader community that overlaps significantly with open-source intelligence practitioners. The server provides channels for conference planning and coordination, technical discussion across numerous security subdisciplines, and general community networking among some of the most skilled and experienced security professionals in the world. Because DEF CON's community includes law enforcement, security researchers, hobbyist hackers, and government personnel all engaging on relatively equal footing, the Discord offers OSINT practitioners exposure to a broader security community context and networking opportunities beyond what purely OSINT-specific communities typically provide, making it a valuable, if less narrowly focused, community resource.
Limitless OSINT
limitless-osint.com
Limitless OSINT is a dedicated training platform providing progressive, structured challenges specifically designed to help learners master open-source intelligence gathering and analysis skills through a deliberately staged difficulty curve. Rather than presenting a random assortment of unrelated puzzles, the platform's progressive structure is designed to build skills incrementally, introducing foundational techniques before advancing to more complex, multi-step investigative challenges, which supports more effective skill retention and confidence-building for learners working through the material sequentially. This structured pedagogical approach distinguishes Limitless OSINT from more loosely organized challenge collections, positioning it as a genuine training curriculum delivered through a gamified challenge format rather than simply a loose assortment of puzzles of varying, unpredictable difficulty. For learners specifically seeking a guided, structured path through OSINT skill development rather than the somewhat scattered experience of jumping between different unrelated challenge platforms, Limitless OSINT offers a more cohesive, progressively paced learning journey, making it a valuable option for both individual self-paced learners and potentially for instructors looking for structured practice material to assign within a broader OSINT training curriculum.
Verification Handbook
verificationhandbook.com
The Verification Handbook is a free, definitive guide to verifying digital content, specifically designed for journalists, humanitarian workers, and emergency responders who need to rapidly and accurately assess user-generated content during breaking news events, disasters, and crises. Produced with contributions from leading verification experts and organizations in the field, the handbook provides concrete, actionable methodologies for confirming the authenticity of images, videos, and eyewitness reports circulating on social media, an increasingly critical skill in an era of rampant misinformation and deepfakes. The guide covers techniques such as reverse image searching, geolocation verification, metadata analysis, and cross-referencing witness accounts, all explained through real case studies drawn from actual news events and humanitarian crises. Because it's freely available online, the Verification Handbook has become a standard reference cited across newsrooms, NGOs, and academic journalism programs worldwide, and it pairs particularly well with First Draft News and Bellingcat's toolkit for a comprehensive verification skill set. Its practical, checklist-oriented approach makes it especially useful in fast-moving situations where investigators need clear, quick criteria for assessing credibility rather than lengthy theoretical discussion, making it an essential bookmark for anyone working in digital-age crisis reporting or emergency information verification.
CSI Linux Discord
discord.com
The CSI Linux Discord is the official community server for CSI Linux, the popular free Linux distribution purpose-built for open-source intelligence gathering, digital forensics, and incident response work. The community provides support channels where users troubleshoot installation and configuration issues, request new tool integrations, and share techniques for making the most of the distribution's bundled investigative toolset. Because CSI Linux also offers an accompanying certification program and structured training courses, the Discord functions as a natural gathering point connecting the free open-source tool with the organization's broader paid educational offerings, letting users interact directly with instructors, developers, and fellow learners. Active Discord communities tied to specific tools like this one tend to provide faster, more responsive support than traditional forums or ticketing systems, and they also create valuable feedback loops where user requests and bug reports can directly influence the tool's ongoing development roadmap. For anyone actively using CSI Linux in their investigative work, the Discord serves as an essential companion resource for troubleshooting, technique sharing, and staying current with the distribution's regular updates.
Imaginary CTF Daily Challenge
imaginaryctf.org
Imaginary CTF is a community-run capture-the-flag platform and Discord community offering regular daily challenges spanning multiple cybersecurity disciplines including cryptography, reverse engineering, web exploitation, and general security puzzles, with OSINT-relevant challenges appearing periodically within its broader challenge rotation. The platform's daily challenge format encourages consistent, ongoing skill practice rather than one-off engagement, helping participants build cybersecurity and investigative reasoning skills incrementally over time through regular, bite-sized problem-solving. Imaginary CTF has built a large and active community, particularly popular among students and cybersecurity hobbyists, with its associated Discord server serving as a hub for discussion, hints, and collaborative problem-solving around the daily challenges. While not exclusively an OSINT-focused platform, the general reconnaissance and information-gathering skills required for certain challenge categories overlap meaningfully with core OSINT technique, and the platform's active, welcoming community makes it a good complementary practice environment for security enthusiasts who want broader cybersecurity CTF exposure alongside more narrowly OSINT-focused training platforms elsewhere in the ecosystem.
The Internet Intelligence & Investigation Handbook
www.amazon.com
The Internet Intelligence & Investigation Handbook is a practical field guide aimed at investigators, researchers, journalists, and security professionals who need a structured reference for conducting online investigations. The book compiles a wide range of techniques for verifying digital content, tracing online identities, and navigating the ethical and legal considerations involved in internet-based research. It is designed to function like a desk reference, with organized sections that readers can jump to when facing a specific investigative challenge rather than requiring linear, cover-to-cover reading. The handbook covers social media investigation, image and video verification, domain and infrastructure research, and methods for documenting findings in a way that holds up to scrutiny, which is particularly valuable for those whose work may be used in legal proceedings or published journalism. Because it's written with a broad audience of professionals in mind rather than purely technical specialists, the book balances accessibility with depth, making it approachable for newcomers while still offering value to more experienced investigators looking for a structured refresher. It's frequently recommended alongside Bazzell's OSINT Techniques series and the Bellingcat toolkit as core reading for building a well-rounded open-source investigation skill set.
r/OSINT
www.reddit.com
r/OSINT is the largest and most active English-language Reddit community dedicated to open-source intelligence, bringing together hobbyists, professionals, journalists, and law enforcement to discuss tools, techniques, ethics, and current events related to open-source investigation. The subreddit serves as a discussion hub where members ask for tool recommendations, share newly discovered investigative techniques, post write-ups of interesting cases, and debate the ethical boundaries of OSINT work, particularly around privacy and doxxing concerns. Its large subscriber base means questions typically get fast responses from a mix of experienced practitioners and enthusiastic newcomers, making it a valuable resource for troubleshooting specific investigative challenges or getting a second opinion on methodology. The community also frequently surfaces breaking OSINT-relevant news, new tool releases, and links to conference talks or training opportunities, functioning as an informal aggregator alongside dedicated newsletters like Week in OSINT. Because Reddit's format allows for threaded discussion and community voting, high-quality answers and resources tend to rise to visibility over time, helping newcomers quickly identify trustworthy advice within the noise. Moderation generally enforces basic ethical guidelines, discouraging harassment-oriented or clearly malicious requests, which helps keep the community focused on legitimate investigative and educational use cases.
GeoGuessr
geoguessr.com
GeoGuessr is a widely popular online geography guessing game that drops players into random Google Street View locations around the world and challenges them to identify where they are based purely on visual clues such as road signs, architecture, vegetation, and language on signage. While originally designed as an entertainment and educational geography game rather than a dedicated OSINT training tool, GeoGuessr has been enthusiastically adopted by the OSINT community as an excellent way to build and sharpen geolocation skills, since the core skill it develops, visually analyzing an image to determine its geographic location, is directly transferable to real-world OSINT geolocation work used in journalism, human rights investigations, and conflict verification. Many OSINT trainers and practitioners specifically recommend regular GeoGuessr play as a form of deliberate practice for building the pattern-recognition intuition needed for professional geolocation work, similar to how chess players study puzzles to sharpen tactical vision. The game's competitive multiplayer modes and global player base also make it an engaging, low-stakes way to practice this specific skill repeatedly, and its popularity has led to a large community of tips, strategies, and regional knowledge sharing that further supports serious geolocation skill development.
OSINT Investigations: We know what you did that summer
www.amazon.com
OSINT Investigations: We Know What You Did That Summer, published as part of the Cyber Secrets series, is a case-study-driven book presenting real-world open-source intelligence investigation examples and walkthroughs, using its memorable, slightly cheeky title to signal an approachable, example-based teaching style rather than dry academic instruction. Books in the Cyber Secrets series tend to compile practical, scenario-based content contributed by multiple practitioners, giving readers exposure to a variety of investigative approaches and problem-solving styles rather than a single author's consistent methodology, which can be valuable for seeing how different experienced investigators tackle similar classes of problems in distinct ways. This case-study format complements more systematic reference texts by showing OSINT techniques applied to specific, concrete investigative scenarios, helping readers bridge the gap between knowing individual tools and techniques and understanding how to sequence and combine them effectively during an actual investigation from start to finish. For readers who learn best through worked examples and real investigative narratives rather than abstract technique lists, this kind of scenario-driven book offers a valuable complementary learning format within the broader OSINT literature landscape.
Project Owl Discord
discord.gg
Project Owl Discord is a community server associated with Project Owl, an OSINT-focused initiative or community bringing together practitioners interested in open-source intelligence research, discussion, and collaboration. Community Discord servers of this type typically provide channels for sharing tools, discussing investigative techniques, and building professional and social connections among members with shared interest in the OSINT discipline. Because 'Owl' branding within investigative and intelligence communities often evokes themes of vigilance, observation, and nocturnal watchfulness, the community likely positions itself around similar thematic values of careful, patient investigative observation characteristic of quality OSINT work. As with many mid-sized OSINT community Discord servers, the specific value proposition depends heavily on the server's active membership, moderation quality, and the specific niche or specialization its core community has developed around, whether that's general OSINT discussion, a particular investigative focus, or a broader security and intelligence community umbrella that OSINT discussion happens to be part of.
EPCYBER China-Focused CTFs
epcyber.com
EPCYBER's China-Focused CTFs is a specialized capture-the-flag platform offering cybersecurity and OSINT challenges specifically oriented around Chinese-language content, platforms, and regional context, filling an important niche for practitioners who need to develop investigative skills relevant to Chinese digital ecosystems. Given how distinct China's internet landscape is, including different social media platforms, search engines, and information environments compared to Western contexts, having dedicated practice challenges focused on this region helps investigators build genuinely applicable skills rather than only practicing techniques calibrated to Western platforms like Facebook or Google. This kind of regionally-focused CTF platform is relatively rare within the broader OSINT and cybersecurity training ecosystem, which tends to skew heavily toward English-language, Western-platform-focused challenges, making EPCYBER's offering particularly valuable for investigators, researchers, or security professionals whose work specifically requires China-related digital investigation capability. The competitive CTF format adds a gamified, motivating structure to skill development, encouraging participants to build and test genuinely applicable regional investigative techniques rather than only generic, broadly transferable OSINT skills.
Operator Handbook: Red Team + OSINT + Blue Team
www.amazon.com
The Operator Handbook: Red Team + OSINT + Blue Team Reference, compiled by Cyber Secrets and Joshua Picolet, is a unique, dense reference guide that combines cheat-sheet-style technical content spanning three major cybersecurity disciplines, offensive red team operations, open-source intelligence gathering, and defensive blue team practices, into a single comprehensive volume. Rather than being a narrative or tutorial-style book, the Operator Handbook functions primarily as a field reference, packed with command syntax, tool usage notes, and quick-reference material that security professionals can consult during active engagements across any of the three covered disciplines. Its unusual scope, deliberately bridging offensive, intelligence-gathering, and defensive security work in one reference, reflects the reality that modern security professionals increasingly need cross-disciplinary fluency rather than narrow specialization, making the handbook particularly valuable for security generalists, SOC analysts, and penetration testers who regularly move between these different operational modes. Because of its cheat-sheet density and breadth, it's less suited as an introductory learning text and more valuable as a desk reference for practitioners who already have foundational knowledge across red team, OSINT, and blue team disciplines and want a single consolidated quick-reference source.
Kase Discord Server
t.co
The Kase Discord Server is the community hub for Kase Scenarios, a dedicated OSINT training platform offering realistic investigative case scenarios designed to simulate the kind of complex, multi-step cases professional investigators actually encounter. The Discord provides a space for members working through Kase's scenario-based training content to discuss approaches, share techniques, and get feedback from fellow learners and possibly the platform's creators, adding a social and mentorship layer to what would otherwise be a purely solo training experience. Because Kase Scenarios emphasizes realistic, multi-faceted case investigation rather than simple single-answer puzzles, having a community space to discuss strategy and compare approaches to the same scenario adds meaningful learning value beyond what the platform's exercises alone provide, letting members see different investigative paths to similar conclusions. For practitioners engaged with Kase's training content, the Discord offers a natural complementary community layer, fostering ongoing engagement, peer learning, and direct connection with a community of similarly scenario-focused OSINT learners and instructors within the broader Kase ecosystem.
CyberDefenders Blue Team CTF Challenges
cyberdefenders.org
CyberDefenders is a well-regarded blue-team focused cybersecurity training platform offering hands-on digital forensics and incident response challenges built around realistic attack scenarios and evidence sets. This specific lab (lab 38) is one of many CyberDefenders modules requiring analysts to investigate simulated security incidents, often involving network traffic analysis, memory forensics, or log correlation, skills that overlap significantly with OSINT-style investigative reasoning even though the primary framing is defensive cybersecurity rather than pure open-source intelligence. CyberDefenders has built a strong reputation within the DFIR (digital forensics and incident response) community for producing high-quality, realistic lab scenarios based on genuine attack patterns and evidence types, making the platform valuable for security analysts who want practical, scenario-based skill development beyond theoretical study. The platform offers free access to a subset of labs alongside premium subscription tiers unlocking its full lab catalog and more advanced content. For OSINT practitioners specifically interested in the cyber threat intelligence and incident response side of the field, CyberDefenders labs provide valuable complementary practice to more traditional people-and-organization-focused OSINT exercises found on other platforms.
Open Source Intelligence Methods and Tools
www.amazon.com
Open Source Intelligence Methods and Tools is a structured, academically-oriented text that provides a practical guide to online intelligence gathering, systematically covering the methodologies and tools used across the OSINT discipline in a format suited to both classroom use and self-directed professional learning. The book typically organizes content around key investigative categories such as search engine techniques, social media investigation, image and metadata analysis, and dark web research, presenting a more textbook-like structure compared to narrative-driven OSINT books, making it well suited for readers who prefer a systematic, methodical approach to building their skill set from foundational concepts upward. Because it's published through a technical publisher known for professional and academic computing texts, the book tends to maintain a more formal, rigorously organized presentation compared to some community-published or self-published OSINT titles, appealing to readers in academic, government, or corporate training contexts who value a more standardized reference format. This structured approach makes it a solid complementary text alongside more practitioner-voice-driven books like Bazzell's series, offering readers a different pedagogical angle on largely overlapping subject matter within the broader OSINT methodology and tooling landscape.
Bellingcat Discord
discord.gg
The Bellingcat Discord server is the official community space for the renowned investigative journalism organization, connecting volunteers, aspiring investigators, and professional researchers who want to learn from and potentially contribute to Bellingcat's open-source investigation work. The server provides channels for discussing ongoing investigative techniques, sharing relevant tools and resources, and engaging with a community that includes some of the most experienced open-source investigators in the world. Because Bellingcat's methodology emphasizes transparency and reproducibility, community discussions often dive into the specifics of how particular investigations were conducted, offering a level of technical detail and mentorship that's hard to find elsewhere. The Discord complements Bellingcat's separate 'Volunteer Community' initiative, which provides more structured onboarding for those wanting to contribute directly to active investigations, while the Discord itself serves as a more casual, ongoing discussion space. Given Bellingcat's global reputation and track record of major investigative breakthroughs, the community attracts a genuinely international and skilled membership, making it valuable both for networking and for absorbing best practices directly from practitioners who have worked on high-profile cases involving war crimes documentation, disinformation tracking, and open-source verification at scale.
Blueteamlabs.online
blueteamlabs.online
Blue Team Labs Online is a gamified cybersecurity training platform focused primarily on defensive security, digital forensics, and incident response challenges, presented through interactive labs that simulate real security incidents analysts need to investigate and resolve. While its core focus is blue-team defensive skills rather than pure OSINT, many of its labs incorporate open-source intelligence techniques for threat actor attribution, log analysis, and digital forensics investigation, making it relevant for practitioners working at the intersection of OSINT and cyber threat intelligence or incident response. The platform offers both free and premium content tiers, with free challenges providing a solid entry point and premium subscriptions unlocking deeper, more comprehensive lab content and features. Because defensive security analysts frequently need to trace attacker infrastructure, correlate indicators of compromise, and investigate suspicious activity using publicly available information, skills practiced on Blue Team Labs Online translate meaningfully into broader OSINT-adjacent capability, particularly for those working in security operations centers (SOCs) or incident response teams who need investigative skills beyond pure technical forensics.
Hunting Cyber Criminals
www.amazon.com
Hunting Cyber Criminals is a comprehensive book focused on applying open-source intelligence techniques specifically to cybercrime investigation, threat actor attribution, and tracking the individuals and groups behind malicious cyber activity. The book covers methodology for building an OSINT toolkit oriented toward cyber threat intelligence work, including tracing digital infrastructure, unmasking anonymized threat actors, and correlating disparate pieces of online evidence to build attribution cases against cybercriminals, closely mirroring the kind of investigative work made famous by journalists like Brian Krebs and dedicated threat intelligence teams at major cybersecurity firms. Because cybercrime investigation requires a distinct blend of technical cybersecurity knowledge and traditional OSINT people-and-organization research skills, this book serves an important niche bridging those two disciplines for readers who want to specialize specifically in cyber threat hunting and attribution rather than general-purpose OSINT applicable to any investigative context. The title's framing around 'hunting' suggests an active, pursuit-oriented investigative approach rather than passive research, appealing to readers interested in the more adversarial, cat-and-mouse aspects of tracking sophisticated cyber threat actors using open-source techniques combined with technical cybersecurity analysis.
Bellingcat Open Source Challenge
challenge.bellingcat.com
The Bellingcat Open Source Challenge is an official investigative competition run by Bellingcat, designed to test participants' open-source investigation skills against realistic scenarios modeled on the organization's own professional casework. Unlike generic OSINT puzzle sites, this challenge is built and curated by one of the world's most respected investigative journalism organizations, meaning the scenarios and required techniques closely reflect genuinely professional-grade investigative work rather than simplified academic exercises. Participants typically work through verification, geolocation, and social media analysis tasks similar to those Bellingcat's own investigators tackle in published stories, giving the challenge unusual authenticity and educational value compared to many other gamified OSINT platforms. Because Bellingcat also runs structured workshops and maintains its Online Investigation Toolkit, the challenge functions as a natural extension of the organization's broader educational mission, letting participants apply toolkit techniques in a scored, competitive format. The challenge periodically runs as a live event tied to conferences or awareness campaigns, generating community engagement and occasionally serving as a recruitment or visibility tool for identifying skilled investigators who might contribute to Bellingcat's volunteer community, adding real career-relevant stakes beyond simple skill practice.
Hack The World with OSINT
www.amazon.com
Hack The World with OSINT is a practically oriented book focused on applying open-source intelligence techniques in the context of ethical hacking, penetration testing, and broader security research, reflecting the significant overlap between reconnaissance-phase OSINT work and offensive security methodology. The book likely covers how OSINT techniques such as domain and infrastructure research, employee and organizational footprint mapping, and social engineering reconnaissance feed directly into the early stages of authorized penetration testing engagements, where understanding a target organization's digital footprint is often the critical first step before any technical exploitation begins. This positions the book at the intersection of two closely related but distinct communities, security professionals conducting red-team and pentest work, and traditional OSINT investigators focused on people and organization research, making it valuable for readers wanting to understand how these disciplines inform and strengthen each other. Given its title's playful tone referencing hacker culture, the book likely balances technical instruction with an engaging, accessible writing style aimed at security enthusiasts and aspiring penetration testers who want to build genuinely comprehensive reconnaissance skills as part of their broader ethical hacking toolkit.
Sakura TryHackMe Room by OSINT Dojo
tryhackme.com
The Sakura room, created by OSINT Dojo on the TryHackMe platform, is a highly regarded intermediate-level OSINT challenge that builds on the skills introduced in the more beginner-friendly OhSINT room, guiding learners through a more complex, multi-layered investigative scenario. Sakura requires participants to combine several different OSINT techniques, including social media investigation, image analysis, and cross-referencing disparate pieces of information, to progressively uncover a chain of clues and ultimately identify a target, closely simulating the kind of layered reasoning process required in real investigative work. Because it's built on TryHackMe's gamified, guided-room format, the challenge includes structured hints and a built-in community of learners who share tips and encouragement, making it approachable even for those tackling more advanced techniques for the first time. OSINT Dojo's reputation for producing pedagogically sound, well-designed training content means Sakura is frequently recommended as a natural next step after completing OhSINT, helping learners progress along a structured skill-building path within the same trusted training ecosystem. It's widely regarded as one of the better intermediate OSINT practice rooms available on the platform.
Google Hacking for Penetration Testers
www.amazon.com
Google Hacking for Penetration Testers, originally pioneered by Johnny Long and continued through multiple editions, is the seminal technical reference on using advanced Google search operators, known as 'Google dorking,' to discover sensitive information, misconfigured systems, and security vulnerabilities that have been inadvertently exposed through search engine indexing. While written primarily for a penetration testing and security research audience, the techniques covered overlap substantially with OSINT methodology, since dorking is used both offensively to find exploitable exposures and investigatively to uncover publicly accessible but hard-to-find information about individuals, organizations, and infrastructure. The book systematically covers operator syntax, search strategies for finding specific types of exposed data such as login portals, configuration files, and directory listings, and how to build effective search queries that go well beyond typical everyday Google usage. As one of the foundational texts establishing Google hacking as a formal discipline, it remains a frequently cited reference even as newer editions and community resources like the Exploit-DB Google Hacking Database have extended and updated the specific dork queries covered. For OSINT practitioners, the book provides essential grounding in search-engine-based reconnaissance techniques that underpin much broader open-source investigation work.
Kase Scenarios
kasescenarios.com
Kase Scenarios is a dedicated OSINT training platform offering realistic investigative scenarios designed to simulate the kind of complex, multi-step cases that professional investigators actually encounter, going beyond simple single-answer puzzles toward more comprehensive case-based learning. The platform's scenario-based approach mirrors real investigative work by requiring learners to piece together multiple types of open-source information, cross-reference findings, and build a coherent picture from disparate data points rather than solving an isolated, narrowly defined challenge. This format is particularly valuable for intermediate and advanced practitioners who have already learned individual tools and techniques and want to practice applying them in combination within a structured, case-like context that better reflects genuine investigative complexity. Kase Scenarios appears within the broader ecosystem of OSINT training platforms alongside similar offerings like OSINT Dojo and Trace Labs, each providing different flavors of hands-on practice, and its focus on scenario realism positions it as a valuable step up from purely tool-focused tutorials toward genuinely applied investigative skill-building, helping learners develop the judgment and workflow discipline needed for real-world casework rather than just technical tool familiarity.
Down the Rabbit Hole: An OSINT Journey
www.amazon.com
Down the Rabbit Hole: An OSINT Journey is a narrative-driven book that follows the personal and professional journey of learning and applying open-source intelligence techniques, blending storytelling with practical investigative insight in a style that distinguishes it from more purely instructional OSINT texts. Books structured around a personal journey narrative tend to appeal to readers who want to understand the lived experience of becoming proficient in OSINT, including the mistakes, breakthroughs, and evolving mindset that come with real investigative practice, rather than simply receiving a checklist of tools and techniques. This approach can be particularly engaging and motivating for newcomers to the field, since it frames OSINT skill development as an ongoing journey of discovery rather than a fixed body of knowledge to memorize, echoing the sentiment behind the book's evocative title referencing falling down an investigative rabbit hole. While likely lighter on exhaustive technical tool documentation compared to reference-style texts like Bazzell's series, this kind of narrative OSINT book serves a valuable complementary role by helping readers understand the investigative mindset, patience, and curiosity that underpin effective open-source intelligence work in practice, beyond just technical tool proficiency.
Gralhix - OSINT Exercises
gralhix.com
Gralhix's OSINT Exercises page is a curated list of practical, hands-on open-source intelligence exercises compiled by Gralhix, a well-known OSINT and GEOINT trainer within the community who also produces tutorial videos and blog content. The page compiles various third-party and self-created exercises, ranging from image geolocation puzzles to social media investigation challenges, giving learners a structured way to practice specific OSINT skills rather than only consuming theoretical tutorials. Because the exercises are compiled by an active trainer with a strong reputation for producing quality educational content, the selection tends to reflect genuinely useful, skill-building challenges rather than an arbitrary collection of links. This kind of curated exercise list serves an important bridging function between passive learning, such as reading books or watching tutorials, and fully competitive environments like CTFs, letting practitioners practice specific techniques at their own pace without time pressure or competitive stakes. The page is regularly referenced within the broader OSINT training ecosystem as a solid starting point for hands-on practice, complementing Gralhix's own YouTube channel and blog content that often walks through solutions or approaches to similar categories of exercises.
Custom Search - Discover More: A Complete Guide to Google
www.amazon.com
Custom Search - Discover More: A Complete Guide to Google Programmable Search Engines is a specialized technical book focused entirely on mastering Google's Custom Search Engine (CSE) platform, teaching readers how to build their own scoped search engines tailored to specific research needs. For OSINT practitioners, the ability to build custom search engines restricted to particular sets of websites is a powerful technique for cutting through the noise of general web search when researching specific topics, platforms, or source types, such as dark web mirrors, government document repositories, or niche forums, and this book provides a comprehensive, structured treatment of exactly how to build and configure such tools. Rather than being a general OSINT methodology book, it functions more like a technical manual specifically dedicated to one high-leverage search technique, going deeper into CSE configuration, indexing behavior, and advanced query construction than most general-purpose OSINT guides that only mention custom search engines in passing. This specialization makes the book particularly valuable for practitioners who have already grasped foundational OSINT concepts and want to build genuinely custom, repeatable research tools rather than relying solely on other people's pre-built search engines or generic search techniques.
Intel Techniques VM (book purchase req'd)
inteltechniques.com
The IntelTechniques OSINT VM, created by Michael Bazzell, is a pre-configured virtual machine bundled as a companion resource to his widely used Open Source Intelligence Techniques book series, giving readers a ready-made investigative environment matching the tools and workflows described throughout the text. Rather than requiring readers to manually install and configure the many tools referenced in the book, the VM provides a turnkey environment where those tools are already set up and ready to use, significantly lowering the technical barrier to following along with the book's practical exercises. Access to the VM typically requires purchasing Bazzell's book, tying the virtual machine directly to his broader paid educational ecosystem that also includes online training courses and the free IntelTechniques search tools. Because Bazzell updates his book editions periodically to keep pace with changing platforms and techniques, the associated VM tends to be refreshed alongside new editions, helping keep the bundled toolset reasonably current. For readers following Bazzell's methodology specifically, having the matching VM available removes much of the setup friction that would otherwise slow down hands-on practice with the book's techniques.
Deep Dive: Exploring the Real-World Value of OSINT
www.amazon.com
Deep Dive: Exploring the Real-World Value of Open Source Intelligence, written by Rae Baker, is a widely respected book that goes beyond tool tutorials to examine how OSINT methodology actually gets applied across a range of real-world professional contexts, including corporate security, journalism, law enforcement, and humanitarian investigations. Rather than functioning purely as a technical how-to manual, Deep Dive emphasizes the practical judgment, ethical considerations, and investigative mindset needed to translate raw open-source data into genuinely actionable intelligence, a distinction the author argues is often missing from purely tool-focused OSINT education. Baker draws on her own professional experience conducting supply chain security and corporate intelligence investigations, giving the book a grounded, case-study-driven quality that resonates with readers who want to understand not just what tools exist but how skilled practitioners actually reason through complex investigations. The book has been well received within the OSINT community for filling a gap between purely technical tutorials and more narrative works like Bellingcat's, offering a middle-ground text that balances practical skill-building with broader conceptual framing about what makes intelligence 'real world' valuable rather than merely technically impressive. It's frequently recommended as a strong second read after foundational tool-focused texts.
OSINT: The Authoritative Guide to Due Diligence
www.amazon.com
OSINT: The Authoritative Guide to Due Diligence is a professionally oriented book aimed squarely at investigators, compliance officers, and due diligence professionals who need a rigorous, methodology-driven approach to open-source intelligence rather than a purely hobbyist or general-interest treatment of the subject. The book positions itself as an authoritative reference specifically for due diligence work, meaning it likely covers corporate research, beneficial ownership tracing, background investigations, and the kind of risk-assessment-oriented OSINT that compliance teams, KYC analysts, and professional investigators rely on in banking, legal, and corporate risk contexts. Unlike broader introductory OSINT titles that cover social media search and general people-finding techniques, a due-diligence-focused guide typically goes deeper into corporate registries, sanctions screening, adverse media research, and the specific documentation standards required to make findings defensible in a compliance or legal context. Because due diligence work carries direct business and legal consequences, from anti-money-laundering compliance to M&A risk assessment, having a dedicated authoritative text on the subject fills an important niche distinct from the more general-purpose OSINT literature dominated by titles like Bazzell's Techniques series. The book is well suited for readers already working in or entering compliance, risk, or corporate investigations roles who need OSINT skills specifically tailored to that professional context.
UK-OSINT (index)
www.uk-osint.net
UK-OSINT's index page serves as the main navigational entry point into the broader UK-OSINT website, one of the longest-established and most respected resources specifically focused on open-source intelligence techniques and tools relevant to investigating UK-based individuals, organizations, and public records. As the site's homepage or index, this page typically provides the primary navigation structure into the site's deeper content covering Companies House records, UK court and legal databases, electoral roll information, and other British public records systems that differ substantially from American counterparts in structure and accessibility. The site has maintained a long, consistent presence within the OSINT community, making it a trusted reference point for investigators, journalists, and researchers specifically working UK-focused cases who need guidance adapted to British legal and administrative frameworks rather than the more commonly available U.S.-centric OSINT guidance. Because data protection law and platform usage patterns in the UK differ meaningfully from American practice, particularly following UK GDPR post-Brexit, having a dedicated, well-organized UK resource with a clear navigational structure like this index page significantly eases the process of finding the right specific UK resource for a given investigative need.
Verification Toolset - Julia Bayer
start.me
The Verification Toolset curated by Julia Bayer is a Start.me dashboard specifically focused on digital content verification tools and techniques, reflecting the curator's apparent background or interest in the verification and fact-checking discipline within the broader OSINT field. Verification-focused resource collections address the specific need to authenticate images, videos, and claims circulating online, a discipline that has grown substantially in importance given the proliferation of misinformation, deepfakes, and manipulated media across social platforms, particularly during breaking news events and crisis situations. This kind of specialized collection typically compiles tools for reverse image search, metadata analysis, geolocation verification, and cross-referencing techniques used by professional fact-checkers and verification journalists, complementing foundational resources like the freely available Verification Handbook and Bellingcat's toolkit. Julia Bayer's name association with this collection suggests possible ties to the broader verification and fact-checking professional community, which includes prominent organizations like First Draft and various international fact-checking networks, lending the curation potential credibility as reflecting genuinely practiced verification methodology rather than a purely theoretical compilation of verification-adjacent tools.
V3nari Bookmarks
start.me
V3nari Bookmarks is a Start.me dashboard presenting a personal curated bookmark collection focused on OSINT tools and resources, following the common pattern of individual practitioners sharing their personal research bookmarks publicly through the Start.me platform for the benefit of the broader community. Personal bookmark-sharing pages of this type reflect the individual curator's specific investigative interests, professional experience, and technique preferences, meaning the particular mix of resources included may lean toward whatever investigative disciplines the curator personally works in most, whether that's general people-search, corporate research, or a more specialized niche. Because Start.me makes it easy for individual practitioners to publicly share what would otherwise be a private personal bookmark folder, the platform has fostered a rich ecosystem of these personally-curated OSINT dashboards, collectively providing the community with dozens of different individual perspectives on which resources are worth bookmarking. While the specific breadth and update frequency of any single personal bookmark collection like this one can vary, cross-referencing several such personally-curated pages alongside more comprehensive institutional aggregators tends to surface a richer and more diverse set of tool recommendations than relying on any single source.
UK-OSINT
www.uk-osint.net
UK-OSINT is a long-established, well-known resource site specifically focused on open-source intelligence techniques and tools relevant to investigating UK-based individuals, organizations, and public records, filling an important regional gap given how much of the broader English-language OSINT resource ecosystem skews toward U.S.-centric guidance. The site compiles UK-specific resources covering companies house records, UK court and legal databases, electoral roll information, and other British public records systems that differ substantially in structure and accessibility from their American counterparts, alongside general OSINT technique guidance adapted to the UK context. Because UK public records, data protection law (following both historical UK data protection legislation and post-Brexit UK GDPR), and platform usage patterns differ meaningfully from U.S. practices, having a dedicated UK-focused resource is particularly valuable for investigators, journalists, and researchers working on British cases who would otherwise need to independently discover and verify which resources apply within UK legal and administrative frameworks. UK-OSINT has maintained a consistent presence within the OSINT community for many years, making it one of the more established and trusted country-specific resource sites within the broader regional-collection segment of the ecosystem.
Toddington OSINT and Online Research Resources
www.toddington.com
Toddington's OSINT and Online Research Resources page is a comprehensive free resource compilation produced by Toddington International, a globally respected training organization specializing in open-source intelligence and internet investigation training for law enforcement, government, and corporate clients around the world. This resource page compiles categorized tools and reference material covering search techniques, social media investigation, and general online research methodology, reflecting the institutional training expertise the organization has developed through years of delivering professional courses to thousands of investigators internationally. Because Toddington's core business is professional OSINT training rather than simply aggregating community links, this free resource page tends to reflect genuinely tested, professionally-vetted recommendations rather than an exhaustive but unfiltered link dump, giving it above-average reliability and practical relevance for serious investigative use. The page functions partly as a value-added complement to the organization's extensive paid training course offerings, giving prospective clients and the broader community a taste of the practical toolset and methodology the organization teaches. For practitioners who value institutionally-vetted, professionally curated reference material, Toddington's resource pages represent some of the more consistently reliable free OSINT compilations available within the training-provider segment of the ecosystem.
The OSINTion Wiki
wiki.theosintion.com
The OSINTion Wiki is a wiki-format knowledge base maintained by The OSINTion, an OSINT community and educational platform, presenting structured reference content in a collaborative, cross-linked wiki format rather than a simple flat list or blog-style presentation. Wiki-format OSINT resources offer distinct advantages over simple link lists, including the ability to cross-reference related concepts, build out more detailed explanatory content around specific techniques or tools, and potentially allow community contribution and editing similar to how Wikipedia operates, though the actual openness of editing access varies depending on how The OSINTion has configured their specific wiki platform. Being connected to the broader OSINTion community, which also runs a Discord server and produces other educational content, the wiki likely serves as a more permanent, structured reference repository that captures accumulated community knowledge in a more durable format than ephemeral Discord conversations or scattered social media posts. For practitioners engaged with The OSINTion's broader community ecosystem, the wiki provides a valuable structured reference point that consolidates community knowledge into a more searchable and interconnected format than typical resource lists achieve.
The OSINT Rack - Mario Santella
www.mariosantella.com
The OSINT Rack, curated by Mario Santella, is a personal resource collection presenting open-source intelligence tools and references on the author's personal website, reflecting an individual practitioner's curated selection of resources they find valuable in their own investigative work. Personal resource collections of this type, hosted on individual practitioner websites rather than large community platforms, often carry a distinctly personal editorial voice and selection criteria, reflecting the specific investigative interests, professional background, and technique preferences of the individual curator rather than an attempt at exhaustive community-sourced comprehensiveness. Such personally-branded resource pages frequently serve as an extension of the author's broader professional or personal brand within the OSINT community, potentially complementing other content the author produces such as blog posts, training materials, or social media presence under their own name. Because personal websites depend entirely on the individual's continued interest and website maintenance, ongoing update frequency can be less predictable compared to institutionally-backed resources, but the personal touch and individual expertise reflected in curator-selected 'best of' style pages like this one often provides genuine value precisely because of that individual perspective and selection judgment.
The Cyber Post OSINT Tools & Resources
thecyberpost.com
The Cyber Post's OSINT Tools & Resources page is an article-style resource compilation published by The Cyber Post, a cybersecurity-focused media and news outlet, presenting a curated overview of open-source intelligence tools framed for a general cybersecurity-interested readership rather than a purely specialist OSINT audience. As a media outlet rather than a dedicated OSINT training organization, the content likely provides a more accessible, less deeply technical overview compared to specialist resources, functioning well as an introductory reference for readers coming from a broader cybersecurity news context who are exploring OSINT as an adjacent topic rather than dedicated OSINT practitioners looking for exhaustive specialist detail. This kind of media-outlet-published resource list often benefits from decent SEO visibility and general web search discoverability, meaning it may serve as many readers' first exposure to organized OSINT tool information, even if more specialist community resources ultimately offer greater depth for serious practitioners. The article format also means it may receive periodic freshness updates as part of the outlet's ongoing content strategy, potentially keeping some information more current than static personal resource lists that receive less consistent maintenance attention over time.
sinwindie/osint
github.com
sinwindie/osint is another entry within the substantial ecosystem of GitHub-hosted, community-maintained OSINT tool and resource list repositories, following the common markdown-based categorized-link format that has become a de facto standard for sharing curated technical resource collections on the platform. As with similar individually-maintained repositories throughout this broader collection, the specific value and freshness of this particular list depends on the maintainer's ongoing engagement, verifiable through the repository's commit history and issue activity. GitHub's search and discovery features, along with cross-referencing from broader meta-collections and comprehensive resource hubs like the Ultimate OSINT Collection, help such individually-maintained lists gain visibility beyond what they might achieve purely through organic GitHub search traffic. Given the substantial redundancy across the many similar GitHub OSINT lists referenced throughout this document, practitioners are generally better served by treating any single such repository as one input among several complementary sources rather than relying exclusively on it, since coverage and update recency can vary meaningfully between them, and cross-referencing multiple lists tends to produce more comprehensive tool discovery than relying on any single repository alone.
Reuser's Repertorium
rr.reuser.biz
Reuser's Repertorium is a long-established, highly specialized resource directory focused on international company information research, compiling links to corporate registries, business information databases, and due diligence resources organized by country around the world. This resource has existed for many years within the professional due diligence and business intelligence research community, predating much of the more recent mainstream OSINT tooling boom, and remains a respected reference specifically for company and corporate research across international jurisdictions. Unlike general-purpose people-search or social media OSINT tools, Reuser's Repertorium fills a distinct niche focused specifically on business and corporate due diligence, valuable for investigators, compliance professionals, and researchers who need to verify company registrations, ownership structures, and business information across different countries' often very differently structured corporate registry systems. Because researching company information internationally requires navigating dozens of different national registry systems, each with different search interfaces, access requirements, and data availability, having a consolidated directory pointing to the correct national resource for each country significantly reduces research friction for cross-border corporate due diligence work, a specialized but consistently in-demand OSINT use case within compliance, AML, and business intelligence contexts.
Resources by Country - wddadk
github.com
OSINT for Countries by wddadk is a GitHub repository specifically organized around country-by-country OSINT methodology, links, and tools, directly addressing the significant challenge that effective open-source investigation techniques vary substantially depending on which country's digital ecosystem, public records systems, and social media platform usage patterns are relevant to a given investigation. Rather than being a general tool list, this repository's country-organized structure makes it uniquely useful for investigators who need to quickly identify what's specifically relevant when working a case involving a particular nation, saving significant research time compared to manually discovering country-specific resources from scratch. Because building out comprehensive country-specific OSINT guidance requires substantial ongoing research and local knowledge for each covered nation, the depth and breadth of coverage likely varies significantly across different countries within the repository, with some nations having more thorough documentation than others depending on contributor knowledge and interest. This kind of internationally-organized resource fills an important gap in the broader OSINT resource ecosystem, which tends to be dominated by U.S. and UK-centric guidance, making it a valuable complementary reference for investigators working genuinely international or cross-border cases requiring country-specific expertise.
r3mlab datajournalism-resources
github.com
r3mlab's datajournalism-resources is a GitHub repository specifically focused on data journalism tools and techniques, addressing the growing intersection between traditional open-source intelligence and data-driven investigative reporting. Data journalism involves using statistical analysis, data visualization, and computational techniques to uncover and communicate stories from large datasets, a skill set that increasingly overlaps with OSINT work as investigations grow to involve leaked databases, government data releases, and large-scale public records analysis. This repository likely compiles tools for data cleaning, visualization, scraping, and analysis specifically relevant to journalists working with structured data, complementing more traditional OSINT resources that focus on individual lookups and social media investigation rather than large-scale dataset analysis. As data-driven investigative journalism continues to grow as a discipline, resources bridging the gap between pure OSINT technique and data science/analysis skills become increasingly valuable for investigators who need to handle datasets too large for manual review. For OSINT practitioners looking to expand into more quantitative, data-analysis-heavy investigative work, this GitHub collection offers a useful specialized resource beyond the typical people-search and social-media-focused tool lists that dominate most general OSINT aggregators.
Plessas Digital Knowledge Base
knowledgebase.plessas.net
The Plessas Digital Knowledge Base is a structured reference resource maintained by Plessas Experts Network, a respected organization known for professional OSINT and internet investigation training, particularly serving law enforcement and government investigators. Hosted as a Notion-based knowledge base, the resource organizes investigative methodology, tool references, and training material in a searchable, well-structured digital format that goes beyond a simple flat link list, reflecting the organization's institutional focus on structured, professionally rigorous training content. Because Plessas Experts Network specifically caters to a law enforcement and government training audience through its Academy platform, the knowledge base likely emphasizes techniques and legal considerations particularly relevant to that professional context, distinguishing it from more general hobbyist or journalist-oriented OSINT resources. The Notion-based format allows for rich formatting, embedded media, and hierarchical organization that can present complex investigative methodology more clearly than a simple bookmark list, making it a valuable reference for practitioners who want structured, institutionally-vetted guidance. As a companion resource to Plessas's paid Academy training courses, the knowledge base likely serves both as standalone reference material and as a touchpoint into the organization's broader professional training offerings for serious investigators.
Ph055a/OSINT Collection
github.com
Ph055a's OSINT Collection is a GitHub repository compiling a curated set of open-source intelligence tools and resources in the standard markdown-list format common across many community-maintained OSINT repositories on the platform. The collection categorizes tools across typical investigative disciplines, providing another entry point within the broader ecosystem of GitHub-hosted OSINT resource lists that collectively give the community multiple overlapping but distinctly curated options for tool discovery. As with similar individually-maintained repositories, the ongoing relevance and accuracy of the collection depends on the maintainer's continued engagement with updating dead links and adding newly discovered tools, which users can verify by checking the repository's commit history and last-updated timestamps. GitHub's open contribution model theoretically allows community members to propose additions or corrections through pull requests, though actual contribution activity varies significantly between repositories depending on visibility and maintainer responsiveness. Collections like this one are frequently cross-referenced within larger meta-aggregators and comprehensive Start.me pages such as the Ultimate OSINT Collection, functioning as one of many complementary community-maintained resource lists that collectively cover the sprawling and fast-changing OSINT tooling landscape.
Osintia Social Media
start.me
Osintia Social Media is a Start.me dashboard specifically dedicated to social media investigation tools and resources, part of the broader Osintia community platform which also runs a general OSINT community site (osintia.com) referenced elsewhere in the broader OSINT collection. Social media investigation is one of the most heavily used and rapidly evolving OSINT disciplines, given how much personal and organizational information is now shared across platforms like Facebook, Instagram, X (Twitter), TikTok, and LinkedIn, making a dedicated, focused resource collection for this specific investigative category valuable compared to trying to find relevant tools buried within larger general-purpose aggregators. Because social media platforms frequently change their privacy settings, API access, and search capabilities, resource collections focused specifically on this fast-moving area benefit from more frequent, targeted maintenance than a broader general OSINT list might receive. Being connected to the wider Osintia community platform, which describes itself as bringing together OSINT professionals to share knowledge and tools, this dashboard likely benefits from community input and ongoing engagement from active practitioners specifically focused on social media investigation techniques and emerging platform-specific research methods.
OSINTgeek Tools
osintgeek.de
OSINTgeek Tools is a German-based resource page compiling open-source intelligence tools, likely reflecting both general international OSINT resources and some regionally relevant German-language or European-focused tools, given the site's .de domain and apparent German origin. Regionally-based OSINT resource sites often provide valuable dual value, offering both standard internationally-used tools familiar to any English-speaking practitioner while also surfacing region-specific resources, search engines, or public records systems that non-German-speaking investigators might not otherwise discover through purely English-language resource collections. For investigators working on cases involving German or broader Central European contexts, having a resource curated from within that regional and linguistic context can surface locally relevant nuances around platform usage, privacy law considerations (such as GDPR compliance), and public records accessibility that differ from U.S. or UK-centric OSINT guidance. As with many personally or small-team maintained OSINT resource sites, ongoing value depends on continued active maintenance, but regionally-flavored resource collections like this one serve a useful complementary role alongside the more dominant English-language, U.S.-centric OSINT resource ecosystem that most major aggregators represent.
OsintDojo Resources
www.osintdojo.com
OsintDojo Resources is the resource compilation page of OSINT Dojo, a well-regarded OSINT education and community platform known for its structured training content, YouTube channel, and its creation of the popular Sakura room on TryHackMe, one of the most recommended beginner OSINT practice exercises in the community. The resources page complements OSINT Dojo's educational content by providing a curated set of external tools and references that support the practical exercises and training material the platform produces, giving learners a consolidated place to find supporting resources referenced throughout the site's tutorials and challenges. Because OSINT Dojo has built its reputation specifically around structured, pedagogically sound OSINT education rather than simply aggregating links, the resources compiled on this page tend to be selected with a training and skill-building purpose in mind rather than being an exhaustive general-purpose tool directory. This makes it particularly valuable for learners already engaged with OSINT Dojo's broader training ecosystem, including its YouTube tutorials and gamified TryHackMe content, since the resources page is designed to work in tandem with that structured learning path rather than standing alone as a pure reference directory.
OSINT54 start.me
start.me
OSINT54 is a Start.me dashboard providing a general collection of OSINT links and resources, following the common pattern of community-curated Start.me pages within the broader OSINT ecosystem that aggregate tools across multiple investigative categories into an easily browsable dashboard format. As one of numerous similarly structured Start.me-based OSINT collections referenced throughout this broader resource compilation, its specific value depends on the particular set of links the curator has chosen to include and how actively the page continues to be maintained over time. Community-maintained aggregator pages of this type collectively form a rich, if somewhat redundant, ecosystem of overlapping resource collections, where practitioners often benefit from browsing several different curators' perspectives on which tools are worth including, since different curators bring different professional backgrounds, regional focuses, and investigative specializations to their selections. The Start.me platform's popularity specifically within the OSINT community for this kind of dashboard-style resource curation reflects the platform's ease of use for non-technical curators wanting to share organized bookmark collections without needing to build or maintain custom websites.
OSINT4ALL - Abesti
start.me
OSINT4ALL by Abesti is a Start.me dashboard positioned as a broadly accessible, general-audience OSINT resource collection, as suggested by its inclusive naming, aiming to serve newcomers and casual users alongside more experienced practitioners. The dashboard likely compiles a wide range of commonly needed OSINT tools and reference material organized into an easily navigable format, prioritizing accessibility and breadth over deep specialization in any single investigative niche. General-audience resource collections like this one serve an important onboarding function within the OSINT community, giving newcomers a manageable entry point before they develop the experience to seek out more specialized or advanced resource collections focused on particular investigative disciplines or regional contexts. As with other Start.me-hosted OSINT pages within this broader collection, the resource benefits from the platform's easy-to-update widget-based structure, allowing the curator to keep the dashboard reasonably current without significant technical overhead. For those just beginning to explore the OSINT field, general accessible collections like OSINT4ALL provide a useful complement to more specialized or advanced resource pages found elsewhere in the ecosystem.
Osint.link
osint.link
Osint.link is a concise, memorably-named OSINT tool aggregator site offering a straightforward, categorized directory of open-source intelligence resources accessible through a clean, minimal web interface. As with several other general-purpose OSINT aggregators in the ecosystem, its specific differentiation from competitors like OSINT Framework or OSINT STASH typically comes down to its particular curatorial choices, categorization scheme, and how frequently the underlying tool links are checked and updated for continued availability. The short, easy-to-remember domain name likely contributes to the site's organic word-of-mouth visibility within the OSINT community, since memorable URLs tend to get shared and bookmarked more readily than longer or less intuitive addresses. Given the substantial overlap in purpose among the many OSINT aggregator sites referenced throughout this broader resource collection, practitioners typically benefit from cross-referencing several of these directories rather than relying on any single one, since coverage, update frequency, and categorization approach can vary meaningfully between them, and a tool missing from one aggregator may well be present and well-organized in another.
OSINT Techniques Tools
www.osinttechniques.com
OSINT Techniques Tools is the resource page of OSINTtechniques.com, a website dedicated to providing curated open-source intelligence tools alongside educational content about investigative techniques and methodology. The tools page compiles categorized links covering common OSINT investigative needs, complementing the site's broader educational mission of teaching practical open-source investigation skills to a general audience of newcomers and intermediate practitioners. Sites structured this way, combining tutorial and educational content with a companion tools reference page, are common within the OSINT resource ecosystem and provide a more complete learning experience than either a bare tool list or pure educational content alone, since users can move between conceptual explanation and direct tool access as needed. The site's naming and focus on 'techniques' rather than purely tools suggests an emphasis on teaching the underlying methodology and reasoning behind effective OSINT work, not just providing a directory of links, which can be particularly valuable for newcomers trying to understand not just what tools exist but how and when to appropriately apply them within a broader structured investigative process, an important distinction from purely tool-focused aggregators.
OSINT Resources in Canada
start.me
OSINT Resources in Canada is a Start.me dashboard specifically curating open-source intelligence resources relevant to conducting investigations within the Canadian context, covering Canadian public records, provincial and federal government databases, corporate registries, and locally relevant search tools. Canada's federated system of provincial and territorial jurisdictions means public records and government data access can vary significantly by province, similar to the county-level fragmentation seen in U.S. public records systems, making a consolidated navigational resource particularly valuable for investigators unfamiliar with the specific quirks of Canadian record-keeping systems. This kind of country-specific resource collection addresses a common gap in the broader OSINT resource ecosystem, which tends to skew heavily toward U.S.-centric guidance given the dominance of American investigators, trainers, and content creators within the English-language OSINT community. For journalists, private investigators, due diligence researchers, or law enforcement analysts working on Canadian-focused cases, having this dedicated resource reduces the friction of independently discovering which Canadian-specific databases, registries, and search tools are available and how to access them, complementing more general North American or Western-centric OSINT resource collections found elsewhere in the ecosystem.
OSINT Resources - OH SHINT!
ohshint.gitbook.io
OSINT Resources by OH SHINT! is a section of the broader OH SHINT blog, a GitBook-hosted OSINT education resource that combines tutorial-style blog content with organized resource compilation. This particular page introduces and catalogs web-based OSINT resources, functioning as a companion reference to the blog's more narrative tutorial posts covering specific investigative techniques and tool usage walkthroughs. The GitBook format allows for well-organized, documentation-style presentation with clear navigation between related sections, distinguishing it somewhat from simpler flat-list aggregators by providing more contextual framing around why and how particular resources are useful. Because it's part of a broader educational blog rather than a standalone tool list, users exploring this resources page are likely to find complementary tutorial content elsewhere within the same GitBook covering practical application of the listed tools, giving the collection more instructional depth than a bare link list would provide. OH SHINT has built a modest but consistent following within OSINT community circles for producing approachable, beginner-friendly educational content, making this resources page a reasonable complementary bookmark alongside the blog's tutorial posts for those newer to structured OSINT learning.
OSINT Labs (Chinese)
start.me
OSINT Labs is a Start.me dashboard curating open-source intelligence and reconnaissance tools with a Chinese-language focus, providing resources relevant to Chinese-speaking investigators or those researching Chinese-language digital content and platforms. Given the distinct nature of China's internet ecosystem and the language barrier that Mandarin presents for non-native speakers, having a resource collection specifically organized in Chinese and focused on relevant regional tools serves an important function for practitioners in that linguistic and geographic context. The dashboard likely organizes resources across typical OSINT categories adapted to platforms and search engines more relevant within the Chinese digital ecosystem, complementing similar English-language regional collections like the separately listed OSINT CHINE by Pangar-Ban, though potentially serving a more native-Chinese-speaking audience given the language of the resource itself. Regional and language-specific OSINT collections like this one are valuable precisely because the field's dominant English-language resources tend to underserve investigators working within non-Western digital ecosystems, and having native-language curation can surface tools and techniques that English-only resource compilers might miss or underrepresent due to language and platform familiarity gaps.
OSINT Investigation Assistant
lambda.black
The OSINT Investigation Assistant, hosted on lambda.black, is described as an AI-assisted tool specifically designed to help with people investigations, representing the growing trend of applying large language model and AI capabilities to assist with open-source intelligence workflows. Rather than being a static tool aggregator or reference site, this resource appears to function as an interactive assistant that helps structure or guide the investigative process for locating and researching individuals, potentially helping users think through which search steps to take, what information to look for, or how to organize findings during a people-focused investigation. AI-assisted investigation tools represent an emerging category within the broader OSINT tooling landscape, distinct from traditional single-purpose search utilities, offering more conversational or guided assistance rather than direct data lookup. As with any AI-assisted tool applied to sensitive investigative contexts involving personal information about individuals, users should apply appropriate judgment regarding data accuracy, privacy considerations, and the legal permissibility of the specific investigative use case, since AI assistance in this space doesn't remove the underlying ethical and legal obligations of conducting person-focused OSINT responsibly and within permissible bounds.
OSINT Framework
osintframework.com
OSINT Framework is one of the most widely used and referenced visual tool directories in the entire open-source intelligence field, presenting an interactive tree diagram that organizes hundreds of OSINT tools and resources by investigative category, such as username search, email search, social networks, geolocation, and dark web research. The site's simple but powerful interface lets users click through categories to instantly find curated lists of relevant tools without needing to know their names in advance, making it an ideal starting point for both newcomers trying to learn what's available and experienced investigators looking for a tool they can't quite recall. Because the framework has been maintained and expanded for years, it has become something of a community standard, frequently referenced in training courses, presentations, and other OSINT resource collections as the canonical starting map of the OSINT tooling ecosystem. While individual linked tools vary in reliability and some inevitably go offline over time, the sheer breadth of categorization makes OSINT Framework valuable purely as a way to understand the taxonomy of open-source intelligence disciplines. It's commonly used as a teaching aid in introductory OSINT courses to give students a visual sense of how broad and interconnected the field really is before diving into specific tool training.
OSINT Essentials
www.osintessentials.com
OSINT Essentials is a dedicated resource website providing curated tools, guides, and reference material aimed at giving OSINT practitioners a foundational, essentials-focused starting point rather than attempting to be an exhaustive comprehensive database of every available tool. The site's positioning around 'essentials' suggests an editorial approach that prioritizes quality and relevance over sheer quantity, likely appealing to newcomers or those wanting a more manageable, curated set of go-to resources rather than being overwhelmed by hundreds of options as found in larger aggregators like OSINT Framework. This kind of curated, opinionated resource collection fills a different niche than comprehensive tool directories, serving users who want trusted recommendations rather than an exhaustive catalog they need to sift through themselves. Sites focused on essentials-level curation often function well as a first stop for OSINT newcomers before they graduate to more comprehensive resources and develop their own preferences among the wider tooling ecosystem. Because it's an independently maintained resource, its ongoing value depends on continued updates to keep the essential tool recommendations current as the underlying platforms and services referenced continue to evolve within the fast-moving OSINT tooling landscape.
OSINT Encyclopedia - optiv/cham423
github.com
The OSINT Encyclopedia is a GitHub repository maintained under Optiv, a recognized cybersecurity consultancy, compiling an extensive categorized reference of open-source intelligence tools, techniques, and terminology in an encyclopedia-style format. Being backed by a professional cybersecurity firm rather than an individual hobbyist gives the repository additional credibility and likely more consistent maintenance standards compared to many personally-maintained GitHub OSINT lists, since it may be tied to Optiv's internal training or research use rather than purely being a public side project. The encyclopedia format suggests a more explanatory, reference-oriented approach compared to simple link lists, potentially including definitions and context around techniques and terminology alongside straightforward tool links, making it useful both as a discovery resource and a learning reference for those newer to specific OSINT concepts. Corporate-maintained OSINT resources like this one, produced by firms that use these techniques in actual client-facing security and threat intelligence work, often reflect real-world tested practices rather than theoretical or academic treatments of the subject matter. For practitioners seeking a resource that combines terminology education with practical tool discovery, this repository offers a somewhat more structured alternative to typical bare-link GitHub aggregators.
OSINT Combine Tools
www.osintcombine.com
OSINT Combine Tools is a curated collection of free browser-based utilities developed by OSINT Combine, an Australian-based OSINT training and consultancy company, designed to support common open-source investigation tasks without requiring installation or account creation. The tools cover practical needs such as metadata extraction, hash generation, timestamp conversion, and various search-assistance utilities that streamline repetitive steps in the investigative workflow. Because these tools are built and maintained by a professional OSINT training organization, they tend to be reliable, well-documented, and specifically designed around real workflow needs identified through the company's training and consulting work rather than as generic side projects. OSINT Combine also offers a broader ecosystem including structured training courses, a capture-the-flag platform, and a blog, meaning the free tools serve partly as a lead-generation touchpoint into their more comprehensive paid training offerings, though the tools themselves remain fully usable without any purchase. The company's reputation in professional OSINT training circles, particularly in Australia and the broader Asia-Pacific region, lends credibility to the tool suite, and the tools are frequently recommended by trainers and practitioners as reliable, no-fuss utilities for common investigative micro-tasks.
OSINT CHINE - Pangar-Ban
start.me
OSINT CHINE by Pangar-Ban is a Start.me dashboard specifically curating open-source intelligence resources relevant to China, addressing the significant challenge that China's distinct digital ecosystem, including platforms like WeChat, Weibo, and Baidu rather than Western equivalents like Facebook or Google, requires specialized knowledge and tooling that generic Western-centric OSINT guides typically don't cover. Investigating Chinese entities, individuals, or online activity requires understanding not just different platforms but also different search techniques, given China's unique internet infrastructure, censorship considerations, and the language barrier that Mandarin and other Chinese languages present for non-native speakers. This kind of specialized regional resource collection fills a critical gap for investigators, journalists, and researchers working on China-related cases, providing curated entry points into an otherwise difficult-to-navigate digital ecosystem for those without existing expertise in Chinese-language online research. Given China's significant global economic and geopolitical importance, resources like this one carry outsized practical value relative to their niche appearance, since China-focused investigative work spans everything from corporate due diligence to human rights research to geopolitical analysis, all of which benefit substantially from a reliable starting point into the country's distinct online information environment.
OSINT STASH
osint.best
OSINT STASH is a general-purpose OSINT tool aggregator site organizing a broad collection of open-source intelligence resources into a browsable, categorized web interface at the osint.best domain. Similar in spirit to other prominent aggregators like OSINT Framework and Meta OSINT, the site aims to give investigators a single starting point from which to discover tools across the many different disciplines that fall under the broad OSINT umbrella, including social media investigation, people search, domain research, and image analysis. As one of many competing OSINT aggregator sites in the ecosystem, OSINT STASH's specific value proposition typically comes down to its particular categorization approach, visual design, and how actively it's maintained relative to the many similar competing collections. Given the sheer number of tool aggregator sites that exist within the OSINT community, practitioners often end up bookmarking several complementary options since no single aggregator perfectly covers every tool or stays perfectly current, and cross-referencing multiple aggregators like OSINT STASH alongside OSINT Framework and community GitHub lists tends to produce more comprehensive tool discovery than relying on any single source. The site's memorable, easy-to-type domain name likely contributes to its ongoing visibility within community resource-sharing.
Online Research Cheat Sheets - Toddington
www.toddington.com
Toddington's Online Research Cheat Sheets are a collection of concise, practical reference guides produced by Toddington International, a globally respected training organization specializing in open-source intelligence and internet investigation training for law enforcement, government, and corporate clients. The cheat sheets condense complex research techniques into quick-reference formats covering topics such as search engine operators, social media investigation shortcuts, and general online research methodology, designed to be printed or kept readily accessible during active investigative work. Because Toddington has trained thousands of professional investigators, analysts, and law enforcement officers over many years, their cheat sheets reflect institutional training expertise distilled into practical, field-ready formats rather than academic or theoretical guidance. The resources are offered freely as part of the organization's broader content marketing and community-education efforts, complementing their extensive paid training course offerings covering deeper, more comprehensive online investigation methodology. For practitioners who value institutionally-vetted, professionally produced reference material over community-crowdsourced content, Toddington's cheat sheets represent some of the more polished and reliably accurate quick-reference guides available for free within the broader OSINT training resource ecosystem.
officer_cia Non Typical OSINT Guide
github.com
The Non-Typical OSINT Guide by officer_cia is a distinctive GitHub repository explicitly positioned as covering unusual, offbeat, or lesser-known OSINT techniques and resources that go beyond the standard tool lists found in most mainstream collections. As the repository's own description humorously notes, it's intended for 'bored professionals' looking for creative or unconventional approaches to open-source investigation, suggesting content that pushes past the typical people-search and social-media-focused techniques into more niche or exploratory investigative territory. This kind of guide is valuable specifically because the OSINT field can become repetitive when most resource lists cover the same well-known tools like Maltego, theHarvester, or standard social media search techniques, and a resource explicitly curated around non-typical approaches offers experienced practitioners a way to discover techniques they might not encounter through more conventional channels. Being open to community pull requests through GitHub, the guide can theoretically grow through crowdsourced contributions of similarly unusual techniques over time. For OSINT veterans looking to expand beyond foundational skills into more creative or specialized investigative approaches, this guide offers a refreshing departure from repeatedly-covered standard tool recommendations.
Offensive Security Cheatsheet
cheatsheet.haax.fr
The Offensive Security Cheatsheet, hosted at haax.fr, is a comprehensive technical reference site compiling command syntax, tool usage examples, and quick-reference material for penetration testing, red teaming, and offensive security work. While primarily aimed at security professionals conducting authorized penetration tests, many of the reconnaissance and information-gathering techniques covered overlap significantly with OSINT methodology, particularly around network scanning, subdomain enumeration, and passive reconnaissance techniques used in the early stages of a security assessment. The cheatsheet format is specifically designed for quick lookup during active work rather than lengthy explanatory reading, making it valuable as a reference to keep open in a browser tab while actively conducting technical reconnaissance or exploitation exercises. Because offensive security and OSINT share substantial technique overlap in the reconnaissance phase, security professionals moving between penetration testing and open-source investigation work often find cross-disciplinary cheatsheets like this one useful for maintaining a single reference covering both skill sets. The site's organization by tool and technique category allows users to quickly jump to the specific syntax or command reference needed without wading through unrelated content, a hallmark of effective technical cheatsheet design.
NixIntel Start.Me
start.me
NixIntel Start.Me is the personal curated resource dashboard maintained by NixIntel, the respected OSINT blogger and practitioner known for the widely followed NixIntel blog covering practical open-source intelligence techniques. This Start.me page complements the blog by providing a structured, browsable collection of the specific tools, sites, and resources NixIntel personally relies on and recommends, organized into a dashboard format that's easier to navigate at a glance than scrolling through individual blog posts. Because the curator has an established reputation for sharing tested, practical OSINT guidance rather than untested tool lists, this resource collection carries above-average credibility, reflecting resources that have actually been used in real investigative work rather than simply aggregated from other lists. The combination of the blog for deeper tutorial content and the Start.me page for quick tool reference gives followers of NixIntel's work a more complete resource ecosystem than either format alone would provide. As with the blog itself, this page is likely to be periodically updated as the author discovers new tools or as previously listed resources become outdated, making it a worthwhile recurring bookmark check for followers of the author's ongoing OSINT work and commentary.
Meta OSINT by IntelScott
metaosint.github.io
Meta OSINT by IntelScott is a well-regarded, tabular-format resource site that catalogs OSINT tools with structured metadata for each entry, such as category, whether the tool is free or paid, and its general functionality, presented in a sortable and filterable table interface rather than a simple link list. This structured, database-like presentation makes Meta OSINT particularly useful for practitioners who want to quickly filter or search across a large tool inventory by specific attributes rather than manually scanning through categorized lists, offering a more powerful discovery experience than most other OSINT aggregators in the space. IntelScott, the site's creator, is an active and respected contributor within the OSINT community, and Meta OSINT has grown a reputation for being one of the more thoughtfully engineered tool-discovery resources available, going beyond simple curation to actual structured data presentation. The table format also makes the underlying data more amenable to programmatic use, community contribution through structured submission processes, and ongoing maintenance discipline compared to freeform list-based collections. For practitioners who want an efficient, filterable way to browse the OSINT tooling landscape rather than reading through long categorized lists, Meta OSINT represents one of the more modern, well-designed options in the current ecosystem.
Malfrat's OSINT Map
map.malfrats.industries
Malfrat's OSINT Map is a visually interactive resource that presents open-source intelligence tools and techniques organized in a map or graph-like visual layout rather than a traditional list format, offering an alternative navigational experience to standard text-based OSINT resource aggregators like OSINT Framework. Visual mapping interfaces can help users better understand relationships and categorizations between different tool types and investigative disciplines, potentially making it easier to discover adjacent or complementary tools that a simple categorized list might present less intuitively. This kind of visually distinctive presentation format has become part of a broader trend in the OSINT community toward more interactive and engaging ways of organizing the large and ever-growing universe of available tools, following in a similar spirit to OSINT Framework's tree-diagram approach but with its own distinct visual design and organizational logic. Because the resource is community-built and hosted independently, its long-term maintenance depends on the creator's continued interest in updating the map as new tools emerge, but visually distinctive aggregators like this one tend to get bookmarked and shared specifically because their presentation format stands out from the more common plain-list style of most OSINT resource collections.
Lorand Bodo Start.me
start.me
This Start.me dashboard is curated by Lorand Bodo, a recognized figure in the OSINT and extremism-research community known for his work analyzing online extremist networks and disinformation using open-source techniques. The collection compiles OSINT tools and resources reflecting Bodo's professional research focus, likely emphasizing social media analysis, network mapping, and content analysis tools relevant to studying extremist and disinformation-related online activity, alongside more general-purpose OSINT utilities. Because the curator has a specific research specialization, this resource collection carries a distinct flavor compared to more generalist OSINT aggregators, potentially surfacing tools particularly well-suited to studying online networks, propaganda dissemination, and coordinated inauthentic behavior. Resources curated by recognized subject-matter experts within their specific research niche tend to carry above-average practical value for others working in similar specialized areas, since the selection reflects tools that have actually proven useful in real research output rather than being compiled purely for general reference purposes. For researchers and analysts focused on extremism, disinformation, or online network analysis specifically, this curator's resource list offers a valuable, expert-vetted starting point distinct from more general people-search or corporate-investigation-focused OSINT collections found elsewhere in the ecosystem.
Journalist's Toolbox
www.journaliststoolbox.org
Journalist's Toolbox is a long-established resource site maintained under the Society of Professional Journalists umbrella, providing curated tool and resource collections specifically tailored to journalism, with a dedicated investigative journalism category covering public records research, data journalism, verification, and open-source investigation techniques relevant to news reporting. Because it's affiliated with a recognized professional journalism organization, the resource carries institutional credibility distinct from purely community-crowdsourced OSINT lists, reflecting curation informed by working journalists' actual reporting needs rather than a general-purpose investigator audience. The investigative category specifically compiles tools useful for uncovering public records, verifying claims, tracing financial and corporate information, and conducting background research on individuals and organizations relevant to news stories. The site has existed for many years as a trusted reference within journalism education and professional development circles, often recommended in journalism school curricula and newsroom training programs. For OSINT practitioners coming from backgrounds outside traditional journalism, this resource offers a useful perspective on how professional journalists specifically approach open-source investigation, which can differ somewhat in emphasis and legal/ethical framing from law enforcement or private-sector investigative approaches found in other OSINT resource collections.
jivoi/awesome-osint
github.com
jivoi/awesome-osint is one of the original and most widely referenced entries in the popular GitHub 'Awesome Lists' format applied to open-source intelligence, compiling an extensive categorized collection of OSINT tools, resources, and references spanning search engines, social media investigation, metadata analysis, and much more. As one of the earlier and more established awesome-list-style OSINT repositories, it has accumulated significant visibility and stars within the GitHub community over the years, making it a frequently cited starting point for developers and technically-minded investigators exploring the OSINT tooling ecosystem. The awesome-list format, standardized across many technical domains on GitHub, provides a consistent, scannable structure that's easy to navigate and contribute to, and this particular list benefits from the community engagement that comes with being an established, well-known repository in its category. Because it has existed for a long time, some linked tools may be outdated or defunct, a common challenge for any long-running curated list in a fast-moving field, but the repository's breadth and historical significance within the OSINT community make it worth referencing as one of several complementary aggregators when compiling a comprehensive investigative toolkit.
IVMachiavelli - OSINT Team
github.com
IVMachiavelli's OSINT Team Links is a GitHub repository compiling a curated collection of open-source intelligence tools and resources, organized in the markdown-based list format common to GitHub-hosted OSINT collections. The repository categorizes tools across typical OSINT investigative disciplines including social media search, people search, geolocation, and general reconnaissance utilities, providing a straightforward reference point for practitioners looking for a community-vetted starting list. As with many individually maintained GitHub OSINT lists, the resource's ongoing value depends on the maintainer's continued engagement, though GitHub's version history allows users to verify how recently the list has been updated and whether it's still actively maintained. The open, version-controlled nature of GitHub also theoretically allows community members to suggest corrections or additions through issues and pull requests, though actual contribution activity varies by repository. Collections like this one are commonly cross-referenced within larger OSINT resource aggregators, including comprehensive Start.me pages like the Ultimate OSINT Collection, functioning as one node within a broader interconnected web of community-shared tool lists that collectively cover the OSINT tooling landscape from multiple curatorial perspectives.
Intelligence X Tools
intelx.io
Intelligence X Tools is the free tools section of Intelligence X, a search engine and data platform specializing in searching leaked data, dark web content, historical web archives, and other hard-to-access data sources that aren't well indexed by mainstream search engines. The platform is particularly known within OSINT and cybersecurity circles for its ability to search across data breaches, paste sites, domain WHOIS history, and dark web marketplaces, making it a valuable resource for threat intelligence, due diligence, and investigative research that requires visibility into leaked or historically archived data. While Intelligence X offers a paid API and subscription tiers for heavier usage and more comprehensive search access, the tools page provides free-tier access to a meaningful subset of its search capabilities, letting investigators test and use core functionality without upfront cost. The platform's specialization in searching leaked and breach data distinguishes it from general-purpose OSINT tools, filling a niche that's particularly relevant for cybersecurity investigations, personal data exposure checks, and threat actor research. Because leaked data search carries privacy and legal considerations depending on jurisdiction and use case, users should apply the tool within appropriate legal and ethical boundaries relevant to their specific investigative context.
Intel0gist's Advanced Search Tools
start.me
Intel0gist's Advanced Search Tools is a Start.me dashboard curated by a contributor within the broader OSINT community (also linked to the main Ultimate OSINT Collection curator's network), focused specifically on advanced search techniques and tools that go beyond basic search engine queries. This includes resources for specialized search engines, custom search configurations, and lesser-known search platforms that can surface results not readily found through mainstream search engines like Google or Bing. Advanced search resource collections like this one are valuable for experienced investigators who have already mastered basic search operators and are looking to expand their toolkit with more specialized or niche search capabilities, such as searching specific file repositories, code repositories, or alternative search engines with different indexing behavior. Because the curator appears connected to the broader Ultimate OSINT Collection ecosystem, this page likely receives periodic updates and cross-promotion alongside the other resource pages in that network, benefiting from the collective curatorial attention of an active OSINT community hub. For practitioners looking to deepen their search technique repertoire beyond entry-level Google dorking, this kind of specialized advanced-search resource collection provides a useful next step in skill progression.
i-intelligence handbook (2025)
www.osinthandbook.com
The i-intelligence Handbook is a comprehensive, professionally produced OSINT reference guide published by i-intelligence, a Swiss-based organization specializing in open-source intelligence training for government, NGO, and private-sector clients. Now in its 2025 edition, the handbook compiles structured guidance on OSINT methodology, tool usage, and investigative techniques, drawing on the organization's extensive experience delivering professional training programs to international organizations, law enforcement agencies, and humanitarian bodies. Because i-intelligence operates primarily as a training and consultancy business serving institutional clients, the handbook tends to reflect more formalized, methodologically rigorous investigative frameworks compared to some community-generated resource lists, making it particularly useful for readers wanting a more academically structured approach to OSINT rather than just a list of tools. The handbook is freely accessible online, serving partly as a credibility-building and lead-generation resource for the organization's paid training offerings, though the content itself provides substantial standalone educational value. Regularly updated editions ensure the guidance stays current with evolving platform capabilities and investigative best practices, making it a solid complementary reference alongside more tool-focused resources like the IntelTechniques search tool or OSINT Framework.
Hun-OSINT Start.me
start.me
Hun-OSINT is a Start.me dashboard curating open-source intelligence resources specifically relevant to Hungary and the Hungarian-language digital ecosystem, filling a regional gap similar to other country- or language-specific OSINT collections within the broader community. Country-specific OSINT resources are valuable because effective investigation techniques depend heavily on understanding which social media platforms, search engines, public records systems, and local news sources are actually used and accessible within a given country, information that generic English-language OSINT guides typically don't cover in depth. For investigators, journalists, or researchers working on cases involving Hungarian entities, individuals, or events, having a curated starting point for locally relevant resources significantly reduces the research overhead of discovering these sources independently. The Start.me dashboard format allows the curator to organize resources by category, likely spanning social media, public records, and news sources specific to the Hungarian information environment. As with other niche regional OSINT collections found throughout curated lists like this one, the resource's ongoing value depends on continued maintenance to keep pace with the Hungarian digital landscape's evolution, but such collections remain valuable reference points for cross-border investigative work touching Central European contexts.
Google Advanced Search Operators
docs.google.com
Google Advanced Search Operators is a community-shared Google Doc compiling and explaining the various search operators and syntax tricks that can be used to refine Google search queries for more precise, targeted results, a foundational skill underlying much of open-source intelligence work. Operators such as site:, intitle:, filetype:, and various boolean combinations allow investigators to narrow searches to specific domains, file types, or phrase patterns, dramatically improving search efficiency compared to relying on Google's default natural-language query matching. Because Google frequently changes how certain operators behave or deprecates others over time, community-maintained reference documents like this one serve an important function in keeping practitioners updated on which techniques still reliably work versus which have become unreliable or discontinued. The Google Docs format allows for easy collaborative editing and commenting, meaning the document can theoretically be kept current through community contributions, though the actual maintenance activity depends heavily on the original author's continued engagement. For OSINT newcomers particularly, mastering advanced search operators is often considered one of the highest-leverage foundational skills to learn before moving on to more specialized tools, since so much investigative work still fundamentally relies on effective search engine querying.
GIJN - Online Research Tools
gijn.org
GIJN's Online Research Tools page is maintained by the Global Investigative Journalism Network, one of the most respected international associations supporting investigative journalists worldwide through training, resources, and conferences. This resource page compiles tools specifically curated for journalists conducting digital and open-source investigations, covering categories such as document analysis, data journalism, verification, and public records research across multiple countries and legal jurisdictions. Because GIJN operates as a global network with member organizations across dozens of countries, its resource curation tends to reflect an international perspective rather than the US or UK-centric bias common in many OSINT resource lists, making it valuable for investigators working on cross-border or non-Western-focused stories. GIJN also runs the well-regarded GIJC investigative journalism conference and produces extensive training materials, meaning this tools page functions as one entry point into a much larger ecosystem of investigative journalism education and community support. The organization's credibility within professional journalism circles means tools featured on this page have typically been vetted or recommended by working investigative journalists rather than being an algorithmically generated or purely crowdsourced list, giving it above-average reliability for serious investigative research use cases.
Genealogy Start.me by Cshellshelly123
start.me
Genealogy Start.me by Cshellshelly123 is a dashboard curating resources specifically focused on genealogical research, family history investigation, and ancestry tracing, an OSINT-adjacent discipline that shares many techniques with broader open-source investigation, including public records research, historical document search, and cross-referencing across multiple record types. Genealogy research often requires navigating specialized databases covering birth, marriage, death, immigration, and census records, many of which overlap with the public records resources used in professional investigative and skip-tracing work, making genealogy-focused collections useful even for investigators whose primary interest isn't family history. The Start.me dashboard format allows the curator to organize these specialized genealogy resources into clear categories, helping both hobbyist family historians and professional investigators quickly locate the right database for a specific type of historical record search. Because genealogical research techniques for finding historical records about individuals translate directly into skills useful for locating information about living people in professional OSINT contexts, resources like this one often get cross-referenced by professional investigators looking to expand their public-records research toolkit beyond the more commonly cited standard OSINT sources.
FBI Tools by Daniel Durnea
github.com
FBI Tools by Daniel Durnea is a GitHub repository compiling a curated list of tools and resources relevant to open-source investigation, digital forensics, and cyber threat intelligence work, despite its name not being an official FBI resource but rather a personal community project. GitHub-hosted OSINT tool lists like this one are common within the community because the platform's markdown-based README format makes it easy to organize categorized links with brief descriptions, and the version control system allows the community to track changes and contribute additions through pull requests. Repositories of this type typically aggregate tools across categories such as network reconnaissance, social media investigation, malware analysis, and general search utilities, serving as a personal reference collection that the maintainer has chosen to make publicly available for others to benefit from. Because such lists are maintained by individual contributors rather than large organizations, their longevity and update frequency can vary significantly, so users should check the repository's last commit date to gauge how current the linked resources are likely to be. Nonetheless, GitHub-based tool lists remain a popular and easily discoverable format within the broader OSINT and security research community for sharing curated resource collections.
Exploit Database - Google Hacking Database
www.exploit-db.com
The Google Hacking Database (GHDB), hosted by Exploit-DB (a project of Offensive Security, the same organization behind Kali Linux), is the most authoritative and widely referenced collection of Google dorking queries used to discover sensitive information, misconfigured servers, exposed files, and vulnerable systems that have been inadvertently indexed by search engines. Google hacking, or 'dorking,' uses advanced search operators to surface content that site owners didn't intend to be publicly discoverable, such as exposed login pages, configuration files, or leaked documents, making the GHDB an essential resource for both offensive security researchers and OSINT investigators who use similar techniques to find exposed information about people, organizations, or infrastructure. The database is community-contributed and categorizes dorks by the type of exposure they reveal, such as sensitive directories, error messages that leak information, or files containing credentials, with each entry vetted before publication. Because it's maintained by Offensive Security, a highly credible name in the penetration testing and security research field, the GHDB carries strong authority compared to informal dork lists circulating elsewhere. For OSINT practitioners, understanding and adapting these dorking techniques extends naturally from pure security research into broader open-source investigation of organizations and individuals' digital footprints.
Digintel Toolkit
start.me
The Digintel Toolkit is a Start.me dashboard specifically focused on tools rather than general reference material, part of the broader Digintel family of OSINT resource pages. It curates links to practical, actionable OSINT tools spanning categories like search utilities, metadata extraction, image analysis, and social media investigation, distinguishing itself from the more reference- or records-focused pages within the same curator's collection. Toolkit-style pages within larger curatorial ecosystems like Digintel's serve an important organizational function, helping visitors quickly find the 'what do I use' answer separately from 'where do I find records' or general background reading, which can otherwise become jumbled together in less organized resource collections. As with other Start.me-hosted OSINT pages, the toolkit benefits from easy updateability, meaning defunct tools can be removed and new discoveries added without requiring a full page redesign. Because it exists alongside the more specialized Digintel CNTY USA and general Digintel OSINT pages, users exploring one resource in this family are likely to find complementary value across the linked collection, making it worth bookmarking the full set of Digintel pages together rather than just this individual toolkit page in isolation.
Digintel OSINT Start.me
start.me
Digintel OSINT is a broad, general-purpose Start.me dashboard curating a wide range of open-source intelligence resources spanning multiple investigative disciplines, serving as a hub-style entry point into the Digintel project's larger family of specialized OSINT resource pages. As a general aggregator, it typically organizes links into categories covering social media investigation, public records, search techniques, and tool collections, functioning similarly to other prominent Start.me-based OSINT hubs in the community. The Digintel project appears to maintain several interconnected Start.me pages, including more specialized ones focused on U.S. county records and toolkits, meaning this general page often serves as a jumping-off point to the more niche resources within the same curatorial ecosystem. Community-maintained Start.me OSINT dashboards like this one benefit from the platform's easy widget-based organization, allowing curators to quickly add, remove, or reorganize links as the tooling landscape changes without needing to maintain custom website code. For practitioners exploring the broader OSINT resource ecosystem, general hub pages like Digintel OSINT are useful discovery points that can lead to more specialized, deeper resource collections maintained by the same curator or community.
Digintel - CNTY USA
start.me
Digintel - CNTY USA is a Start.me dashboard focused specifically on U.S. county-level public records and government resources, curated by the Digintel OSINT project. County-level records, including property records, court filings, marriage and divorce records, and local government databases, are a crucial but often overlooked layer of U.S. public records research, sitting beneath state and federal-level databases that receive more general attention in typical OSINT guides. Because U.S. county record systems are highly fragmented, with each of the roughly 3,000+ counties potentially operating its own separate online portal, search interface, and record availability, having a consolidated navigational resource significantly reduces the friction of locating the correct county-specific search tool for a given jurisdiction. This makes the Digintel CNTY USA resource particularly valuable for genealogists, skip tracers, due diligence researchers, and investigators working U.S. domestic cases who need to quickly identify the right local government portal rather than manually searching for each county's specific website. As part of the broader Digintel OSINT resource family, it complements the organization's other Start.me pages covering general OSINT toolkits and techniques.
DFIRDetective's SANS OSINT Summit 2022 Links
start.me
DFIRDetective's SANS OSINT Summit 2022 Links is a Start.me dashboard compiling resources, tool references, and materials shared during the SANS OSINT Summit 2022, a prominent annual conference bringing together OSINT practitioners, researchers, and trainers from across digital forensics, threat intelligence, and investigative journalism. Conference-derived resource collections like this one are valuable because they capture a snapshot of what the OSINT community's leading practitioners were discussing, presenting, and recommending at a specific point in time, often surfacing cutting-edge techniques and tools before they become widely known through other channels. The SANS OSINT Summit specifically draws speakers from law enforcement, private sector threat intelligence, journalism, and academia, meaning the linked resources tend to span a broad range of investigative disciplines rather than focusing narrowly on one niche. Because SANS is a highly respected name in cybersecurity and digital forensics training, resources and tool mentions originating from their summit carry above-average credibility compared to generic community-sourced lists. This collection is particularly useful for practitioners wanting to review what was presented at a major industry event without needing to track down individual conference talk recordings or slide decks separately.
Dating apps and hook-up sites - frenchPI
start.me
This Start.me dashboard curated by frenchPI compiles a specialized list of dating apps and hook-up sites relevant to investigators conducting background checks, due diligence, infidelity investigations, or catfishing/romance scam research. Because dating and hook-up platforms represent a significant and often overlooked digital footprint for many individuals, having a consolidated reference of which platforms exist, how they can be searched, and what information they typically expose is valuable for private investigators, due diligence researchers, and those investigating online dating fraud. The collection is particularly useful given how fragmented and regionally varied the dating app landscape is, with the curator apparently drawing on private investigator (PI) experience to identify which platforms are actually worth checking during an investigation versus which have negligible investigative value. This kind of niche, use-case-specific resource list fills gaps that broader OSINT tool collections don't typically address in depth, since general aggregators tend to focus on more universally applicable tools like social media search or public records rather than dating-platform-specific investigation techniques, making this a valuable specialized bookmark for practitioners working in relationship-fraud, due-diligence, or PI-adjacent investigative contexts.
CyberSecStu: OSINT for Finding People
docs.google.com
CyberSecStu's OSINT for Finding People spreadsheet is a community-maintained Google Sheet specifically focused on resources and techniques for locating individuals online, a common and high-demand OSINT use case spanning skip tracing, missing persons research, background checks, and general people-search investigations. The spreadsheet format allows the curator to organize links by category, such as social media search, public records, phone and email lookup, and image-based identification, while enabling quick scanning and filtering compared to a traditional prose-based blog post or article. Because finding people is one of the most frequently requested and practiced OSINT skills, resources dedicated specifically to this use case tend to be heavily bookmarked and shared within investigator communities, and spreadsheet-based collections like this one are popular precisely because they can be updated quickly as individual services go offline or change their search capabilities. As with any people-search resource list, users should approach the included tools with awareness of legal and ethical considerations, since techniques for locating individuals carry higher potential for misuse than more general research tools, making responsible, permissible-use context important when applying any of the referenced resources.
CTI Start.me Paranoid_ch1ck
start.me
CTI Start.me by Paranoid_ch1ck is a community-curated dashboard focused specifically on cyber threat intelligence (CTI) resources, aggregating tools, feeds, and reference materials used by security analysts to track threat actors, malware campaigns, and emerging vulnerabilities. The collection typically organizes resources into categories such as threat feeds, malware sandboxes, IOC lookup services, vulnerability databases, and analyst blogs, giving CTI practitioners a structured starting point for building or supplementing their daily research and monitoring routines. Because cyber threat intelligence work overlaps significantly with OSINT methodology, particularly around tracking threat actor infrastructure, dark web monitoring, and open-source reporting on cyberattacks, this dashboard serves practitioners who work at the intersection of both disciplines. The curator's handle suggests a security-community background, and Start.me pages of this type are typically maintained by working analysts who update their own bookmark collections and choose to share them publicly, meaning the resource often reflects genuinely used, battle-tested links rather than an SEO-driven listicle. For analysts building out a threat intelligence research stack, this dashboard offers a useful complement to more people-and-organization-focused general OSINT tool collections found elsewhere in the broader resource ecosystem.
CSE Utopia - Google Custom Searches
start.me
CSE Utopia is a Start.me dashboard collecting Google Custom Search Engines (CSEs) that have been specifically configured by OSINT practitioners to search across curated sets of websites relevant to particular investigative needs, such as people search, dark web indexing, or niche forum content. Google Custom Search Engines allow creators to restrict search results to a defined list of sites, effectively creating specialized mini search engines that surface more relevant results than a general Google search for specific investigative tasks, and CSE Utopia aggregates many of these community-built search engines in one place. This resource is particularly valuable because building an effective CSE from scratch requires knowing which sites are worth including for a given topic, meaning the pre-built search engines represent accumulated community knowledge about where relevant information for various investigation types tends to live online. Because the underlying technology depends on Google's search infrastructure, the CSEs benefit from Google's indexing quality while being scoped down to relevant sources, offering a middle ground between broad general search and highly manual site-by-site searching. The collection is especially useful for OSINT practitioners looking to save time on repetitive searches across known-good source sets for specific investigative domains.
BBC Africa Eye - Forensics Dashboard
start.me
The BBC Africa Eye Forensics Dashboard is a Start.me page compiling the open-source investigation tools and resources used by BBC Africa Eye, the BBC's investigative journalism unit focused on uncovering stories across the African continent through digital forensics and open-source verification techniques. BBC Africa Eye has produced several high-profile investigations using geolocation, video verification, and social media analysis to document human rights abuses, corruption, and other stories that traditional on-the-ground reporting couldn't fully capture, making this dashboard a window into the specific toolset a major broadcast news investigative team relies on. The resource is particularly valuable for journalists and researchers focused on African contexts, where digital investigation techniques must often be adapted to different social media platform usage patterns, connectivity constraints, and information environments compared to Western-centric OSINT guidance. Because it reflects the working toolkit of a professional broadcast investigative unit rather than a generic aggregator, the resource carries credibility around which tools are genuinely useful for producing broadcast-quality, legally defensible investigative journalism. It pairs well with Bellingcat's toolkit and the Verification Handbook for readers building out a well-rounded verification and geolocation skill set applicable across different global contexts.
Aware Online OSINT tools
www.aware-online.com
Aware Online's OSINT Tools page is a curated resource list maintained by Aware Online, a Netherlands-based organization specializing in online investigation training, research, and consultancy services. The page compiles categorized links to open-source intelligence tools spanning social media investigation, image analysis, domain research, and general search techniques, presented in a straightforward, easy-to-navigate format aimed at both newcomers and experienced practitioners. Because Aware Online operates as a professional training and consultancy business, the tool list tends to reflect resources the organization actually recommends and uses in its own client-facing investigative and training work, lending it practical credibility beyond a hobbyist-compiled list. The organization also offers structured courses and workshops on open-source investigation, meaning the tools page functions partly as a companion resource to that broader educational offering, giving visitors a taste of the practical toolset before considering paid training. As a European-based resource, it also carries some regional relevance for investigators working within EU privacy and legal frameworks, which can differ meaningfully from US-centric OSINT guidance in terms of what data sources are legally accessible and how personal data protection rules like GDPR affect investigative practice.
AsINT Collection
start.me
The AsINT Collection is a Start.me dashboard focused on curating open-source intelligence resources specifically relevant to Asian countries and regions, addressing a common gap in English-language OSINT resource collections that tend to skew heavily toward Western data sources and platforms. This regional focus makes it valuable for investigators, journalists, and researchers working on cases involving Asian social media platforms, local search engines, regional corporate registries, and country-specific public records that are often unfamiliar to practitioners trained primarily on Western tools like Facebook, LinkedIn, or U.S. public records databases. Because effective OSINT work fundamentally depends on understanding the specific digital ecosystem of the region under investigation, including which social platforms are actually popular locally and how local search engines and government transparency portals function, collections like AsINT serve an important specialized role. The Start.me format allows for organized categorization by resource type or country, and as a community-maintained page it benefits from ongoing updates reflecting the fast-changing landscape of regional platforms and services. It's a useful complementary bookmark for practitioners whose investigative work extends beyond the more heavily documented Western-centric OSINT resource ecosystem.
AML Toolbox - Travis Birch
start.me
The AML Toolbox, curated by Travis Birch on the Start.me platform, is a specialized resource collection focused on anti-money laundering (AML) investigation, compliance, and due diligence work. Unlike general-purpose OSINT collections, this toolbox is tailored to the specific needs of financial crime investigators, compliance officers, and due-diligence researchers who need to trace beneficial ownership structures, sanctioned entities, politically exposed persons, and suspicious financial activity using open-source and semi-open data sources. The Start.me dashboard format organizes resources into columns and widgets covering sanctions list lookups, corporate registry searches, adverse media screening, and other AML-specific research tools, making it easy to navigate directly to the resource type needed for a given compliance task. Because AML and financial crime investigation require a distinct set of specialized databases and search techniques compared to general people-search OSINT, this collection fills an important niche for professionals working in banking compliance, KYC (know-your-customer) processes, and financial investigations. The curator's ongoing maintenance ensures links remain functional and relevant as sanctions regimes and corporate transparency requirements evolve across jurisdictions, making it a practical bookmark for compliance-focused OSINT practitioners.
AaronCTI's Online Resources
docs.google.com
AaronCTI's Online Resources is a community-curated Google Spreadsheet authored and maintained by AaronCTI, a cyber threat intelligence practitioner and author, focused primarily on selector and indicator-of-compromise (IoC) search resources used in threat intelligence and cybersecurity investigations. The spreadsheet format allows for a highly organized, filterable, and searchable presentation of links, which is particularly useful for threat intel analysts who need to quickly locate specific lookup services for IPs, domains, hashes, and other technical indicators during incident response or research. Because it's maintained by someone actively writing and publishing in the cyber threat intelligence space, including an associated book on the subject, the resource benefits from ongoing curation informed by real analyst workflows rather than a one-time link dump. Google Sheets' collaborative and lightweight nature means the list can be updated quickly as new tools emerge or old ones become defunct, and readers can suggest additions through the linked contact page. This resource is especially valuable for practitioners at the intersection of OSINT and cyber threat intelligence, where indicator lookups, malware research, and infrastructure analysis intersect with more traditional open-source people- and organization-focused investigation techniques.
IntelTechniques OSINT Online Search Tool
inteltechniques.com
The IntelTechniques OSINT Online Search Tool, created by Michael Bazzell, is a comprehensive suite of custom search utilities designed to streamline common open-source intelligence lookups across categories including usernames, email addresses, phone numbers, real names, social networks, and images. Rather than manually searching each platform individually, the tool provides pre-built search templates and direct links executing targeted queries across numerous sites and databases at once, dramatically speeding up the reconnaissance phase of an investigation. It is maintained alongside Bazzell's popular OSINT Techniques book series and training courses, helping keep search templates reasonably current as platforms change their URL structures, though results should always be verified manually given how quickly source sites evolve. Being completely free with no account or installation required, it has become a staple bookmark for investigators, journalists, and researchers wanting fast, one-stop access to a wide net of search queries without maintaining their own bookmark folders. The tool suite is regularly cited across OSINT training materials and pairs naturally with Bazzell's associated OSINT VM and books for a complete, self-contained investigative toolkit, and it remains one of the most consistently recommended free resources for anyone starting or advancing in the OSINT field.
cyb_detective tools collection
cipher387.github.io
The cyb_detective tools collection, hosted on GitHub Pages and maintained by the creator of the popular Cyb_detective Substack newsletter, is one of the largest and most frequently updated aggregations of open-source intelligence tools available anywhere online. The collection categorizes tools across dozens of investigative disciplines including social media analysis, geolocation, phone number lookup, image search, domain research, and dark web investigation, with direct links to each resource. Because the author also runs a daily OSINT newsletter, the GitHub collection functions as a living archive of everything discovered and shared through that publication, meaning it's continuously refreshed rather than a static one-time compilation that goes stale. The sheer scale of the list, spanning hundreds of individual tools, makes it especially valuable as a discovery resource for practitioners who want to find niche or lesser-known utilities beyond the handful of well-known mainstream OSINT tools. Because it's hosted as a simple static GitHub Pages site, it loads quickly and requires no account, and its open format on GitHub also allows the community to suggest additions or corrections through issues and pull requests. It's widely referenced across OSINT training materials and community forums as one of the definitive tool-discovery bookmarks in the field.
Bellingcat's Online Investigation Toolkit
bellingcat.gitbook.io
Bellingcat's Online Investigation Toolkit is a freely available, actively maintained GitBook resource compiling the specific tools and techniques Bellingcat's own investigators rely on for open-source verification work. Unlike generic tool-list aggregators, this toolkit reflects the actual practice of a world-renowned investigative organization, offering insight into which resources are genuinely useful in professional-grade investigations rather than which are simply popular. It is organized by investigative discipline, covering satellite imagery analysis, archive and cache retrieval, geolocation, image and video verification, and social media research, with short explanations of how and when each resource is typically used. Because Bellingcat periodically updates the toolkit to reflect the fast pace of tool churn and platform changes, it stays more reliable than static lists that quickly go stale as services shut down or change functionality. The toolkit is frequently used as supplementary reading alongside Bellingcat's published investigations, letting readers understand and replicate the underlying methodology rather than just consuming finished journalism, aligning with the organization's mission of transparent, reproducible investigation. It's one of the most cited OSINT resource pages in the field, referenced constantly in training courses, conference talks, and other curated collections as a benchmark toolkit maintained by practitioners rather than marketers.
My OSINT Training's Tools
tools.myosint.training
My OSINT Training's Tools is a free collection of browser-based OSINT utilities built by the team behind My OSINT Training, one of the more respected names in modern OSINT education. The site bundles together small, purpose-built tools that solve specific recurring problems investigators face, such as converting between coordinate formats, generating search queries, parsing usernames, or extracting metadata, without requiring installation or account sign-up. Because the tools are created by active trainers who teach OSINT professionally, they tend to reflect genuine workflow pain points rather than being built as generic showcase projects, which gives them practical credibility within the community. The site is regularly updated as the team's training curriculum evolves and as students or clients surface new needs, keeping the collection relevant even as the wider OSINT tooling landscape shifts quickly. It complements My OSINT Training's paid certification courses and free introductory video content, functioning as a lightweight, no-barrier entry point for people exploring the field before committing to formal training. Because everything runs directly in-browser, the tools are accessible from any device without setup, making them convenient for quick lookups during live investigations, training exercises, or classroom demonstrations, and they are frequently referenced in other OSINT resource roundups and newsletters as reliable, actively maintained utilities.
Android Studio & SDK tools
developer.android.com
Android Studio is Google's official integrated development environment for building Android applications, bundling the Android SDK, an emulator, and a full suite of development tools into a single downloadable package. While primarily a mobile app development tool rather than a dedicated OSINT platform, it has found a place within the OSINT community because its bundled Android emulator allows investigators to run Android apps in a controlled, isolated virtual environment, which is useful for investigating mobile applications, testing how specific apps behave, or accessing app-only platforms and services without needing a physical Android device tied to a real identity. Investigators researching mobile-first platforms, messaging apps, or dating apps often use Android Studio's emulator to create disposable, sandboxed Android environments for this kind of controlled testing and investigation, separate from their own personal devices and accounts. Because it's a legitimate, actively maintained Google product used by millions of developers worldwide, it's a free, reliable, and well-documented way to get emulated Android environments running on a standard Windows, macOS, or Linux computer, making it a practical if somewhat repurposed tool within the broader OSINT virtual machine and remote browser toolkit.