Useful Google Chrome Extensions for OSINT Gathering
Useful Google Chrome Extensions for OSINT Gathering
Google Chrome and Firefox are usually the browsers for choice for OSINT investigations. Not only are they secure, but they provide the best plugins and extensions to make our work a lot easier. This article will discuss the various Chrome extensions I use during OSINT investigations and why I use them. Some of these you may of heard of of have used before, others may be new but have a clear application. Letâs get started.
1. AdBlock
This one should be obvious, but is a good place to start. Many websites, especially foreign ones, are so covered in ads that they slow down your browsing time and sometimes make it impossible to load a web page. Itâs good to get rid of the ads to get straight to the content and begin your investigation. This comes with some drawbacks, however. Many websites have the ability to detect AdBlock and other advertisement blocking programs and prevent you from seeing their content as a result. In situations like this, I simply copy and paste the URL and open it up on a garbage browser like Internet Explorer that I never use. Due to the nature of OSINT investigations, youâre always looking at things youâre not particularly interested on a consumer levelâso the âtargetedâ ads are kind of useless anyway. So itâs totally ethical!
2. FireShot
Now that Iâve got you warmed up, letâs get to more of the OSINT related stuff. FireShot is an extension that allows you to take a screenshot of your entire screen. Why is it useful? If youâre collecting evidence, a lot of websites will change their content or remove it all together. If you take a full page screenshot, you can have proof of your discovery and wonât have to worry about selecting what is important like you do in a normal screenshot (or have to take multiple screenshots). This extension is free, but if youâve been in the OSINT community long enough, youâll know thereâs a better option. If youâre willing to give up some coin, try Hunchly instead. It does what FireShot does and so much more. Itâs an OSINT battleship! I heard Justin is releasing an API for it as well! Check it out!
3. 360Social
360Social is a Chrome extension that allows you to find out where a particular social profile is elsewhere on the web. Itâs completely noninvasive on your screen and simply slides a user friendly panel from the left to reveal the information. Hereâs how it works. Letâs say you find a Twitter profile thatâs of interest to you. If you click on the 360Social extension, it will extract the information from the targetâs Twitter profile and reveal other places like Facebook, Instagram, LinkedIn, etc. where the same or similar information is hosted. This is something you can do manually, but Iâm all about automation.
4. Treeverse
This Chrome extension is specific to Twitter. What Treeverse does is it takes a conversation on Twitter and breaks it down into a hierarchical tree and tells you who is talking to who and where the connections are. This is great for threads that have hundreds if not thousands of replies. The result is something similar to Maltego or i2 and gives you a basic link analysis function. Itâs very fast and allows you to figure out the âso what?â really quickly. If you combine it with other extensions and conduct enough research, you could have a pretty quick data mined social network on your target in less than an hour.
5. Distill
Distill is a Chrome extension that monitors webpages or feeds for changes and then sends you a text or email after detection. You can save certain pages that are critical to your investigation (after taking a screenshot of course) and once they change, have a nice before and after screenshot that can make or break a case or add to evidence. I like this tool because itâs passive and works when Iâm not. Considering I have maximum Chrome tabs open at a particular time, I need all the help I can get for workflow management. Distill helps me do that. The version I use is free. They have a paid, premium, option but I havenât tried it.
Mostly Harmless is a Chrome extension that looks up the page you are viewing and tells you whether or not itâs on Reddit. And down the rabbit hole you go! Once you find a webpage posted on Reddit, you can view the comments and look for anything interesting. You can then extract the username of the account that commented and see if itâs anywhere else online using tools like WhatsMyName or Namechk. If you find something and can verify theyâre related, youâve just added a Reddit post and a username to your investigation.
Those are a few that I use for general purposes. In future articles, Iâll write about more niche extensions I use for things like extracting eCommerce data to perform trend analysis and other useful things. Make sure to follow me on Twitter or subscribe to this blog by email for updates!
ComentĂĄrios
Postar um comentĂĄrio