OSINT
Open Source Intelligence
OSINT is the gaining of insights from freely and publicly accessible sources — websites, registers, social media, technical databases and more. It is legal and uses exclusively what is openly available anyway. Both defenders and attackers conduct OSINT — only with reversed signs.
History & facts. For attackers, OSINT is the first step (reconnaissance): from what is publicly findable — employee names and e-mail patterns, exposed services, metadata in documents, details in social networks — the material for targeted phishing (spear phishing) and for the selection of attack paths emerges. For defenders, the same discipline is a powerful tool: it shows one's own attack surface from the adversary's perspective, supports investigations and feeds threat intelligence. Specialised tools and search techniques (such as advanced search queries or services that index internet-connected devices) make the research systematic.
Outlook & recommendation. Organisations should regularly check their own „OSINT footprint“: which information about technology, employees and structures is publicly findable — and does it facilitate attacks? Data minimisation, awareness of metadata and training against social engineering reduce the attack surface. At the same time, OSINT, conducted cleanly and in compliance with the law, is part of the firm repertoire of Digital Forensics and Incident Response (DFIR) and threat intelligence. Important is the boundary: OSINT uses only what is openly available — the unauthorised intrusion into protected systems is something fundamentally different and punishable.