fosstodon.org is one of the many independent Mastodon servers you can use to participate in the fediverse.
Fosstodon is an invite only Mastodon instance that is open to those who are interested in technology; particularly free & open source software. If you wish to join, contact us for an invite.

Administered by:

Server stats:

10K
active users

#maltego

0 posts0 participants0 posts today

🤓 I’ve been using Maltego Graph for a while, and it’s one of the best tools for visualizing investigations and pivoting!

One of the best feature is the use of Machines to automate pivoting and enrichment! 🤖

🔍 For example, you can create a Machine to automatically enrich an IP address with WHOIS info and then pivot through associated email addresses with a single click.

I have created a cheat sheet you can refer to when using Maltego 👇

I’m curious — how many of you have already created Maltego automation with Machines?

@Maltego @maltegohq #threatintel #investigation #malware #IOCS #graphs #maltego

Maltego Telegram

Модуль Maltego для Telegram позволяет индексировать стикеры и эмодзи в канале, а также устанавливать создателей наборов стикеров/эмодзи с помощью их уникального идентификатора (UID).

Для этого нужно сделать API-запрос, извлечь "ID" и выполнить битовое смещение вправо, после чего UID конвертируется в логин через бота tgdb, что помогает раскрыть профиль пользователя.

Кроме того, модуль может деанонимизировать автора канала, который не оставил контакты, путём сканирования канала и поиска его наборов стикеров с применением аналогичной методики.

Для настройки модуля необходимо клонировать репозиторий, установить зависимости, указать соответствующие API-данные в конфигурационном файле и импортировать нужные файлы в Maltego для тестирования работоспособности.

src: github.com/vognik/maltego-tele

GitHubGitHub - vognik/maltego-telegram: Maltego module for working with TelegramMaltego module for working with Telegram. Contribute to vognik/maltego-telegram development by creating an account on GitHub.

Администраторов Telegram каналов теперь можно деанонимизировать по кастомным стикерам и эмоджи.

Уязвимость заключается в том, что UID стикер-пака позволяет извлечь ID его создателя, что помогает раскрыть профиль пользователя.

Авторы Telegram-каналов заказывают у дизайнеров фирменные наклейки и «регистрируют» их в мессенджере с помощью бота Stickers, не подозревая о том, что это раскрывает их аккаунт всем.

Для популярной OSINT-утилиты Maltego даже уже разработали модуль позволяющий автоматизировать данную задачу.

src: github.com/vognik/maltego-tele

GitHubGitHub - vognik/maltego-telegram: Maltego module for working with TelegramMaltego module for working with Telegram. Contribute to vognik/maltego-telegram development by creating an account on GitHub.

How can you gather the most information for your #PersonOfInterest investigations? Use the convenient out-of-the-box access to a growing number of data sources included in #Maltego Data! Follow the steps in the updated cheat sheet to map out the digital footprint of your suspect NOW: maltego.com/blog/how-to-conduc

Just like other major events, the #Olympics lead to a significant increase in social media engagement from both legitimate users and threat actors. This surge in online activity often includes the spread of genuine opinions but also #disinformation!

Discover how you can effectively monitor social media activities, understand public sentiment, and identify emerging threats early using real-time #OSINT data and AI-driven analysis with #Maltego Monitor: youtu.be/SUPbJGfhdTc?si=Vn1H_K

Events like Pride Month, the Olympics, and European football championships trigger strong interactions on social media, filled with supportive messages but also heated debates. Identifying genuine viewpoints versus those with harmful intentions can be challenging.

Join our deep dive on July 16th at 4 PM CET and learn how to capture the pulse of public sentiment and spot hostile patterns using #Maltego: maltego.com/event-registration

CTI investigations face complex challenges, making robust solutions for data integration and analysis vital for navigating vast data and countering sophisticated attacks. Our latest blog, "Incident Readiness with Maltego," explores the future of CTI, key challenges, essential capabilities, and how #Maltego ensures your team is always ready for threats.

Stay ahead with actionable intelligence: maltego.com/blog/incident-read

In 2023, the average cost of data breaches surged to $4.45 million, making a 15% increase over three years. To mitigate this impact on your organization, use #Maltego to examine and analyze vulnerabilities, visualizing internal data and #IoCs within a single user interface. Our playbook demonstrates how to efficiently conduct a data breach investigation using Maltego, breaking down the process into five stages with mock-up graphs and detailed explanations. Learn more: maltego.com/blog/investigating

make this shorter: Since 2008, #Maltego has been the trusted #OSINT platform for cyber threat intelligence. Now, we're launching new Professional and Organization plans to enhance your investigative capabilities.

Learn more about how our new plans can transform your investigations: maltego.com/blog/introducing-m

www.maltego.comIntroducing Maltego Professional and Organization PlansIn May 2024, we officially introduce the Maltego Professional and Organization plans to provide existing and new users with even more investigative capabilities, data, and services.

Dealing with a potential seller of stolen goods? Discover how you can find traces of your #PersonOfInterest online, map the extent of their illegal activities, and understand their patterns to catch them red-handed. All within a couple of clicks in #Maltego using the ready workflow!

Start investigating with Maltego NOW: get.maltego.com/maltego-organi