
Explore open source intelligence fundamentals, including course outline, reporting, and getting started with a virtual machine. Learn tools, use cases, final quiz for beginners and professionals.
Open source intelligence (osint) collects data from publicly available sources to build a broader picture for background checks, social media investigations, and fraud detection using tools like Maltego.
Adopt a responsible OSINT approach using free, open-source tools to gather information from publicly available sources, while verifying laws and avoiding misuse.
Define scope and out-of-scope items, set a timeline amid information overload, establish data retention rules, encrypt and shred sensitive data, and document everything in writing to guide an osint investigation.
Develop mental preparedness for investigations by planning a structured approach and designating roles. Set realistic timelines to avoid overwhelm, know your tools, and take breaks to manage stress.
Define scope, timelines, and written data handling requirements—including encryption and data retention—for an OSINT investigation, then organize data within scope using a clean isolated virtual machine and respect client wishes.
Outline a generic OSINT investigation cycle from client check to reporting, including personal prep, initial checks, social media gathering, domain searches, and producing two reports for different audiences.
Learn to perform OSINT by name using people searches, social media, and data breach checks to build a profile. Validate data and compile non-technical and detailed reports for court-ready evidence.
Perform open source investigations on a business using advanced Google search, site analysis, and public records to assemble a comprehensive company profile.
Identify and set aside biases to maintain objectivity in osint investigations. Analyze evidence openly, validate findings, and follow data where it leads, avoiding tunnel vision.
Master professional OSINT reporting with versatile templates, like the CSI Linux template, covering case IDs, timelines, suspect profiles, conclusions, a logo, and confidential labeling across Word, OpenOffice, or Google Docs.
This lecture demonstrates how to create an OSINT proposal and client presentation, outlining deliverables, scope, and remediation strategies using a sample PowerPoint template.
Explore OSINT reporting through templates and client intake for case scoping, covering executive summaries, subject identity, digital footprint, professional history, assets, evidence logs, and conclusions with recommendations.
Learn what a sock puppet account is and why it matters in open source intelligence. It guards your identity, lets you view targets, and can range from bare to realistic.
Explore methods for creating Gmail sock puppet accounts without a phone number using a burner smartphone, noting Google's flags on VoIP numbers and possible daily limits.
Explore my sudo app for burner phone numbers, emails, and virtual cards, with multi-profile sock puppet setups, location selection, and burnable numbers for flexible OSINT investigations.
Explore 20 minute mail, a browser-based temporary email service that provides disposable addresses for quick, short-term use. Understand its 20-minute expiration, the option to generate or customize addresses, and the risks of password resets on social accounts, making it unsuitable for long-term use.
Explore text free, a free disposable number service for sending and receiving texts, with sign-up options and precautions about using it for long-term accounts and reverse lookups revealing VoIP.
Safeguard privacy with a reputable VPN to hide your real IP and prevent data leakage. Test DNS leak checks like wsj.com and dns leak dot com to verify VPN protection.
Learn why password managers are essential for strong, unique passwords and how ProtonPass provides encrypted storage, cross-device syncing, and password generation across Chrome, Firefox, iOS and Android.
Compare ProtonMail and Tutanota as secure email options, highlighting end-to-end encryption, free versus paid plans, cross-platform access, and GDPR or Swiss/German privacy considerations.
Use ai to clean up open source intelligence reports and sound more professional, safeguarding privacy, with tools like Gemini or chatgpt to refine executive summaries and findings, including voice cloning.
Master how to use CherryTree, a hierarchical notation program, to take notes, build client intakes and OSM report templates, and embed PDFs, images, and investigation media.
Store and organize your ocean investigations data in cloud storage like Google Drive or OneDrive, create folders, share with controlled permissions, and maintain client-compliant security with a dedicated investigations email.
Master Google advanced searches, or Google dorks, using specialized operators to find admin pages, login portals, and exposed data, with prebuilt templates and builder resources.
Discover how Google Maps and Street View support open source intelligence and reconnaissance for ethical hacking, helping identify entry points, cameras, and surrounding layouts.
Explore Google Images by clicking the camera icon to upload or paste a URL, and review indexed results, metadata, and visually similar posts for OSINT investigations.
Learn to use Google Images' search by image feature to upload or URL-search a logo, isolate an exact image match, and potentially reveal sources or dates to accelerate OSINT.
Learn how to use Google Alerts to monitor the web for new content by entering target names or search criteria, then customize delivery, frequency, sources, language, and region.
Discover how to locate a photo's position using reverse image search and photo metadata, including latitude and longitude, mapped with OpenStreetMap or Google Maps using pic to map.
Explore analyst research tools for OSINT, including international searches, PII search, email and phone lookups, social media, and Google search builders, to save time and broaden resources.
Use reverse email searches with multiple OSINT tools to verify an email's identities, from people search sites and social media to Have I Been Pwned, Google Advanced Search, and Maltego.
Learn how to perform reverse phone number lookups using tools like Spy Dialer, White Pages, and Maltego to gather voicemail, name, and location details.
Compare multiple reverse search engines—Google, Bing, Yandex, and Tin—to validate image results, uncover additional sources, and leverage non-US results for thorough OSINT.
Explore reverse phone searches in open source intelligence across the U.S. and Europe using two tools, verify country codes and time zones, and compare results across sources.
Explore Deepware AI, a web and app-based deepfake detector with modules for face detection and recognition, and learn to upload videos to detect deepfakes.
Detect live offers reverse image search and AI-generated image detection with accuracy settings. Upload images, review results, and view references from Google Lens, TinEye, Yandex, and Bing.
Explore free business search tools for open source intelligence to quickly lookup companies by name and location, revealing addresses, phone numbers, managers, and industry classifications.
Explore Open Corporates, the largest open database of companies, and learn to browse jurisdictions and search records. Verify information using status, addresses, directors, and handwritten signatures.
Explore black book online, a us-based osint resource offering thousands of free public record lookups, including jail inmate searches, email and death record lookups, maps, court records, and more.
Explore Dehashed, a data breach search tool that indexes emails, usernames, phone numbers, and more, and shows where else these credentials appear across breaches and forums.
Discover how Have I Been Pwned lets you enter an email to check for data breaches, reveal breached sites like Adobe and Dropbox, and identify compromised data for OSINT investigations.
Explore webmii, a browser-based osint tool that assigns a visibility score out of 10 to a person’s online footprint, revealing biographies, social profiles, news, videos, and related websites.
Discover how resumes reveal target information such as name, location, job skills, previous employers, and emails, and explore resume sites like LinkedIn, Indeed, and Monster for targeted searches.
Explore how family trees support osint by mapping relatives to verify information, broaden target profiles, and extract clues from ancestry.com, familytree.com, and Facebook.
Use Ancestry.com to search for grave sites and compare results with Find a Grave, extracting birth, death, and cemetery details to verify identities and uncover records.
This lecture demonstrates an OSINT approach using a State Farm account to reveal a target's vehicles, insurance dates, and a partially redacted email from a phone number and birth date.
Use Knowem to search a username across 500 plus social networks and 150 domains, supporting open source intelligence, branding checks, and verification of availability across platforms.
Learn how Pipl pro enables deep people searches, revealing age, location, career history, education, phone numbers, emails, and relatives, with advanced search operators for precise results.
Verify whether someone is admitted to a hospital and identify their area, such as ICU or emergency department, while respecting HIPAA and GDPR; never impersonate family members or medical staff.
Discover instant checkmate, a people search engine to generate new leads, verify information, and explore the timeline feature, licenses, emails, and location history while costing about $30 a month.
Learn a simple technique to unmask Google users by sharing a blank Google Docs document and reviewing access to reveal the name linked to an email, for investigative purposes.
Open source intelligence explores verifying if two photos show the same person using artificial intelligence face comparison tools and photo forensics, analyzing tattoos, scars, posture, and other facial features.
Use the Rino user checker, a web-based tool that searches a username across the web and shows results from sites like GitHub, Reddit, and TikTok, exportable as JSON.
Learn to search for code across platforms like GitHub, Google, Bing, and StackOverflow to detect leaks or malicious payloads, using case-sensitive queries and quoted multi-term searches.
In this course you will be learning about OSINT (Open-source intelligence) from a Investigator point of view. Tools, techniques, setting up a virtual lab, and how to protect yourself. This is a comprehensive course that will be using free open source tools to investigate people and companies. No matter if you are totally new to the fascinating world of OSINT and hacking or have some experience, this course will walk you through how both hackers and investigators use these tools and why.
Now I have been very fortunate in being able to teach OSINT over the years here and on other platforms teaching people from all over the world and in various jobs. You will generally see my OSINT courses as the best seller and sometimes highest rated (It's really competitive out there! And that's a good thing for everyone!) so I think that goes to show that I do work hard on these courses and that people are both learning and enjoying them. In this course I wanted it make it even more accessible my removing the VM requirement as I know that some people either don't have that ability or desire to run a VM (Virtual Machine). I still highly recommend running a VM, however we will be taking a look at performing OSINT without one while still keeping as safe as we can.
Get stuck or have a question? Always feel free to send me a message and I will do my best to help you out!
FYI, a reminder: I not anyone that is a part of DGS has any affiliation with any of the vendors, software manufactures, or programmers in this course.
I do not recommend taking this course if you have taken the OSINT 1, 2, or Windows edition.