A vulnerability in the Central Web Authentication (CWA) feature of Cisco IOS XE Software for Wireless Controllers could allow an unauthenticated, adjacent attacker to bypass the pre-authentication access control list (ACL), which could allow access to network resources before user authentication. This vulnerability is due to a logic error when activating the pre-authentication ACL that is received from the authentication, authorization, and accounting (AAA) server. An attacker could exploit this vulnerability by connecting to a wireless network that is configured for CWA and sending traffic through an affected device that should be denied by the configured ACL before user authentication. A successful exploit could allow the attacker to bypass configured ACL protections on the affected device before the user authentication is completed, allowing the attacker to access trusted networks that the device might be protecting.
#OSINT

A search engine and data archive. Search Tor, I2P, data leaks and the public web by email, domain, IP, CIDR, Bitcoin address and more.

It is the golden age of Command and Control (C2) frameworks. The goal of this site is to point you to the best C2 framework for your needs based on your adversary emulation plan and the target environment. Take a look at the matrix or use the questionnaire to determine which fits your needs.

Hacktoria creates CTF Games for OSINT and Digital Forensics enthusiasts. Overlaying fictional events and organizations over our real world, we create immersive games that make learning fun.

Query and order satellite images, aerial photographs, and cartographic products through the U.S. Geological Survey

Live Flight Tracker and Airport Status.

Your one-stop platform for all OSINT tools and related information.

OSINT, Leaks, Breaches, Accounts, Networks and More.

NEW

Learn OSINT for free by subscribing to our newsletter. Discover the best Open-Source Intelligence (OSINT) tools, techniques, and valuable resources.

Cloud-based Deep CDR, Multiscanning, Sandbox Dynamic Analysis, Hash and IP-Domain reputation with options for personal and commercial users.

ZoomEye really mapping global leader of cyberspace mapping.

Any interested party can access and search the complete Legal Entity Identifier (LEI) data pool free of charge and without the need to register, using the web-based LEI search tool developed by the Global Legal Entity Identifier Foundation (GLEIF). The LEI search tool provides enhanced functionality including the option to identify corporate ownership structures or pinpoint other identifiers that have been mapped to an LEI.

Explore 10234 Webcams. "WATCHING THE WORLD, The Encyclopedia Of the Now" is an art, a photography, an exhibition, an AI, a Big Data, an online project and uses only Open Data sources for this purpose. It photographs around the clock and around the globe the world in live mode by means of publicly accessible network cameras, presents the images simultaneously on the website in different modes and, with the help of AI, develops a new way of seeing, a new kind of photography.

OSINT framework focused on gathering information from free tools or resources. The intention is to help people find free OSINT resources. Some of the sites included might require registration or offer more data for $$$, but you should be able to get at least a portion of the available information for no cost.

Search Social NetworksFind someone by username or email on Social Networks, Dating Sites, Forums, Crypto Forums, Chat Sites and Blogs. 600+ sites Supported! Largest Reverse User Search Online!

Search, discover, visualize, refine, and access NASA Earth Observation data in your browser with Earthdata Search

We offer robust APIs & data services for Security Teams worldwide.

Live view of SpaceX starlink satellite constellation and coverage.

ThreatMiner is a threat intelligence portal that provides information on indicators of compromise (IOC) such as domains, IP address, malware samples (MD5, SHA1 and SHA256), SSL certificates, WHOIS information and malicious URLs such as phishing and malware links.

An OpenStreetMap-based project for creating a map of the world's railway infrastructure.

Webcams from around the world.

Have you been compromised? DeHashed provides free deep-web scans and protection against credential leaks. A modern personal asset search engine created for security analysts, journalists, security companies, and everyday people to help secure accounts and provide insight on compromised assets. Free breach alerts & breach notifications.

The world's first mobile app security search engine. Scan and check the security score of your mobile apps. Analyze over one million indexed apps for added security.

NEW

Free Social Media Search Engine. Start real-time mentions monitoring in social media and web. Quickly analyze what people are saying about your company, brand, product, or service in one easy to use dashboard.

Welcome to GeoSpy Public Demo. Photo location prediction using AI. Take a picture or select an existing one.

Free VIN number decoder for any cars.

Displays images from hundreds of webcams, cameras around the world, including a description of the web cam location. and Displays worldwide webcam images on the Google map.

WhiteIntel Dark-Web Intelligence Services. Detect your leaked passwords in dark-web and info stealer leaks.

DNSlytics provides the ultimate online investigation tool. See detailed information about every IP address, domain name and provider. Perform network tests like DNS lookup, email testing and WHOIS lookups.

PeeringDB is a freely available, user-maintained, database of networks, and the go-to location for interconnection data. The database facilitates the global interconnection of networks at Internet Exchange Points (IXPs), data centers, and other interconnection facilities, and is the first stop in making interconnection decisions.

Analyse suspicious files, domains, IPs and URLs to detect malware and other breaches, automatically share them with the security community.

Website scanner for suspicious and malicious URLs

Official TruthFinder website. Try our People Search, Reverse Phone Lookup, or Address Lookup today to search people online. It's simple to get started, just enter a name or phone number and click search. Social Media, Photos, Police Records, Background Checks, Civil Judgments, Contact Information and Much More!

Analyze files in seconds! Zero Miss for Office Malware Threats.

All the networks. Found by Everyone.

Hackyx is a search engine for cybersecurity. The aim of this project is to easily find any resource related to IT security like CTF writeups, articles or Bug Bounty reports.

Search Engine for the Internet of Everything. Shodan is the world's first search engine for Internet-connected devices. Discover how Internet intelligence can help you make better decisions.

This page displays the complete IPv4 address ranges organized by country. There are 249 countries listed below, and each link will bring you to a new page containing the respective IP address ranges. If you are interested to learn more about the ranking of IP addresses allocated for each country, please visit IP Address Reports for details.

Reverse Image Search. Find where images appear online.

Web technology information profiler tool. Find out what a website is built with.

Interactive world weather map. Track hurricanes, cyclones, storms. View LIVE satellite images, rain radar, forecast maps of wind, temperature for your location.

Find accurate phone numbers, addresses and emails from the most trusted U.S. white pages phone directory and address lookup since 1997.

A FREE domain research tool that can discover hosts related to a domain. Finding visible hosts from the attackers perspective is an important part of the security assessment process.

Welcome to the Social Links OSINT blog! Get handpicked news stories, authentic case studies, and OSINT insights.

Sicehice automates the collection of cyber threat intelligence from over 30 sources and enables users to search against the collected IPs. It is possible that there will be false positives in our dataset. We are a small group that cannot vet all indicators gathered on an hourly basis.

SPYTOX is the authority in online people search. With comprehensive personal information, including cell phone numbers, for over 275 million people nationwide. SPTOX provides answers to over 3 million searches every day is one of the top ranked domain for human information.

At GreyNoise, we collect and analyze untargeted, widespread, and opportunistic scan and attack activity that reaches every server directly connected to the Internet.

Would you like to travel the world? Webcamtaxi takes you there! Webcamtaxi is a platform for live streaming HD webcams from around the globe that will give you the opportunity to travel live online and discover new and distant places. If you are passionate about travel...

Internet Search Engines For Security Researchers.

NEW

Free CT Log Certificate Search Tool from Sectigo (formerly Comodo CA)

Test On Your Security Posture. SOCRadar LABS is a new and developing platform which informs users about existing and possible cyber threats with the help of several cyber threat intelligence services.

NEW

Your weekly dose of OSINT Updates every Wednesday. A free OSINT newsletter delivering what people want to read. Click to read OSINT Updates, by OSINT Ambition, a Substack publication with thousands of subscribers.

Quickly check if your email has been sold. Report the GDPR-violator, then learn how to prevent this from happening again by scrolling down.

Instagram viewer and downloader.

Worldwide live positions of trains, busses, trams and other public transport vehicles. Find out if your train is on time and see where it is located right now.

Criminal IP is an OSINT-based Cyber Threat Intelligence Search Engine. Discover everything about cybersecurity, including IP addresses, URLs, IoT devices, C2 servers, CVE vulnerabilities, exploits, and data integration into Criminal IP API.

Find anyone online with FaceCheck.ID's facial recognition search engine. Search for people in photos and see if they're real.

URLhaus is a project from abuse.ch with the goal of sharing malicious URLs that are being used for malware distribution.

Censys helps organizations, individuals, and researchers find and monitor every server on the Internet to reduce exposure and improve security.

An IP address blacklist for webmasters and sysadmins to report IP addresses engaging in abusive behavior on their networks, or check the report history of any IP.

A free malware analysis service for the community that detects and analyzes unknown threats using a unique Hybrid Analysis technology.

Image Hunter is a one-stop-shop for all your imagery and elevation data needs. These short videos will help you make the most of our search engine, from saving imagery searches to submitting your quote. If you have any questions that are not answered here, please send us an email at sales@apollomapping.com.

Fast people search by name, phone, or address on Radaris. Search people directory and learn about people - background check, phone, address, email, reverse phone lookup, people's reviews, and public records.

Illuminate the reputation behind an email address.

This site displays telemetry from Amateur Radio high-altitude balloon launches, using the SondeHub-Amateur database.

A curated list of amazingly awesome OSINT.

Check if your email address is in a data breach. Have I Been Pwned allows you to search across multiple data breaches to see if your email address or phone number has been compromised.

Free people search engine. Find Addresses, Phones, Emails, and Much More!

People search engine and free white pages finds phone, address, email, and photos. Find people by name, email, address, and phone for free.

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

Free VIN lookup. Learn the vehicle history, mileage, inspections, damage, thefts, archive photos! Get a free VIN lookup with autoDNA. Get your VIN lookup for free and see what your vehicle hides

RansomLook is an open-source project aimed at assisting users in tracking ransomware-related posts and activities across various sites, forums, and Telegram channels.

Grab the helm and go on an adventure in Google Earth.

Compare the network coverage of mobile operators and check their performance at home !

Universal VIN Decoder. Decipher VIN number. Specifications, equipment, analysis of the correctness of the VIN number.

The DNA test for websites.

Ransomwhere is the open, crowdsourced ransomware payment tracker. Browse and download ransomware payment data or help build our dataset by reporting ransomware demands you have received.

PeekYou's best free people search engine allows you to find and contact anyone online. Find social links, photos, work history, alumni info, family and more.