OSINT Directory
OSINTDIRECTORY
Back to directory
PLAYBOOK · NEW

Threat intelligence

Aggregate dark web chatter, leak databases, and TTP monitoring feeds for comprehensive threat analysis.

RECOMMENDED TOOLS

Where to start.

INVESTIGATION STEPS

The walkthrough.

  1. 1

    Identify indicators of compromise (IOCs)

  2. 2

    Search threat intelligence databases and feeds

  3. 3

    Analyse dark web forums and leak sites

  4. 4

    Correlate findings with known threat actors

  5. 5

    Document TTPs and create threat reports

QUICK WINS

If you only do three things.

  • Check email addresses and domains in breach databases
  • Monitor threat intelligence feeds for emerging threats
  • Use MISP to share and correlate threat indicators