Back to Talks 2017
Talk

Using DFIR Orchestration and Automation Tools and Playbooks For OSINT and Recon

Recon Village @ DEF CON 2528th, 29th and 30th July 2017

Abstract

Everyone has probably heard about orchestration and automation tools in DFIR but what if we took the same concepts from DFIR and apply that to OSINT? In this talk we will discuss how to use DFIR tools and concepts for reconnaissance, investigations, and OSINT data gathering.

We will work through an automated playbook to gather evidence on things like domains, organizations and people, then discuss using integrations like

Intrigue.io

, Pipl, DataSploit, and more all in parallel and finally wrapping up by storing the evidence, contacting, liberating and helping others by responding with the evidence, or simply just having some fun.

Speaker