You are on page 1of 49

_INIT

_OSINT
Hacker Investigador
(alunos) _ENGENHARIA SOCIAL

_VANTAGEM DESLEAL

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Hacker Investigador (alunos)
1. _INIT
1.1. $ cat instrucoes.txt_

1.1.1. > welcome_

1.1.2. 1 Recado

1.1.2.1. Pessoal do Instagram

1.1.2.1.1. Tira um print

1.1.2.1.2. Marca nos stories (te marco de volta)

1.1.2.1.3. IG: @igdotdi

1.1.3. "Conteúdo Extra"

1.1.3.1. NO FINAL ᕦ(ò_óˇ)ᕤ

2. _OSINT
2.1. Definição?

2.1.1. Open Source Intelligence (OSINT)

2.1.1.1. Inteligência de Fontes Abertas

2.1.1.2. Involves the collection and analysis of publicly


available information.

2.1.2. *

2.1.2.1. É bem "amplo"

2.1.2.1.1. Passivo

2.1.2.1.1.1. Ativo

2.1.2.1.2. Crescimento

2.1.2.1.2.1. Threat Intelligence

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.1.2.1.2.1.1. Threat Intelligence é fornecer a
capacidade de reconhecer e atuar em tempo hábil
sobre indicadores de comprometimento

2.1.2.1.2.1.2. Threat intelligence is information


about the potential attacks an organization may
face and how to detect and stop those attacks.

Link: https://clavis.com.br/servicos/threat-
intelligence/

2.1.2.1.2.1.3. Threat Intelligence

Link: https://clavis.com.br/servicos/threat-
intelligence/

2.1.2.1.2.1.4. What Are the Different Types of


Cyberthreat Intelligence?

Link: https://securityintelligence.com/what-are-
the-different-types-of-cyberthreat-intelligence/

2.2. No mundo hoje

2.2.1. Uso

2.2.1.1. Investigação Criminal

2.2.1.1.1. Auxiliar a descobrir os autores de determinado


crime ou comprovar a inocência de uma pessoa sob
investigação.

2.2.1.1.1.1. Kyle Rittenhouse

2.2.1.1.1.1.1. .

2.2.1.1.1.1.2. .

2.2.1.1.1.1.3. .

2.2.1.1.1.1.4. .

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.2.1.1.1.1.5. .

2.2.1.1.1.1.6. Veredito

2.2.1.1.1.1.6.1. 'Self-defense is not illegal': Kyle


Rittenhouse tells Fox News after not-guilty verdict

Link:
https://edition.cnn.com/2021/11/19/us/kyle-
rittenhouse-trial-friday/index.html

2.2.1.1.1.1.7. Prosecutors

2.2.1.1.1.1.7.1. https://youtu.be/JG8PhtFrO0Y?
t=836

2.2.1.1.2. Localizar fugitivos

2.2.1.1.2.1. Most Wanted | Federal Bureau of


Investigation

Link: https://www.fbi.gov/wanted

2.2.1.1.2.2. Caso

2.2.1.1.2.2.1. John Doe

2.2.1.1.2.2.1.1. .

2.2.1.1.2.2.1.2. .

2.2.1.1.2.2.1.3. Seeking Information in Child


Sexual Exploitation Investigation

Link: https://www.youtube.com/watch?
v=PmkklnR3TwQ

2.2.1.1.2.2.1.4. OSINT

2.2.1.1.2.2.1.4.1. Caminho 1

2.2.1.1.2.2.1.4.1.1. .

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.2.1.1.2.2.1.4.1.1.1. .

2.2.1.1.2.2.1.4.2. Caminho 2

2.2.1.1.2.2.1.4.2.1. Turkish flash

2.2.1.1.2.2.1.4.2.1.1. outro "padrão"...

2.2.1.1.2.2.1.4.2.1.1.1. .

2.2.1.1.2.2.1.4.2.1.1.1.1. turkey
trash bean - Google Search

Link:
https://www.google.com/search?
q=turkey+trash+bean&source=lnms&t

2.2.1.1.2.2.1.4.2.1.2. outro "padrão"...

2.2.1.1.2.2.1.4.2.1.2.1. .

2.2.1.1.2.2.1.4.2.1.2.1.1.
http://www.grosfillexturkiye.com/en/referen

Link:
http://www.grosfillexturkiye.com/en/refe

2.2.1.1.2.2.1.4.2.1.2.1.1.1.
"Lugares Modelos"

2.2.1.1.2.2.1.4.2.1.3. outro "padrão"...

2.2.1.1.2.2.1.4.2.1.3.1. o "chão"

2.2.1.1.2.2.1.4.2.2. Mapear dimensão

2.2.1.1.2.2.1.4.2.2.1. Software: sketchup

2.2.1.1.2.2.1.4.2.2.2. Mapeamento

2.2.1.1.2.2.1.4.2.2.2.1. 1.5m

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.2.1.1.2.2.1.4.2.2.2.1.1. .

2.2.1.1.2.2.1.4.2.3. Listagem e Analise

2.2.1.1.2.2.1.4.2.3.1. TOP 10 destinos em


Turkey

2.2.1.1.2.2.1.4.2.3.1.1. entrando em
cidades e navegando

2.2.1.1.2.2.1.4.2.3.1.1.1. Side

2.2.1.1.2.2.1.4.2.3.1.1.1.1. Hoteis
em Side

2.2.1.1.2.2.1.4.2.3.1.1.1.1.1.
Booking.com

Link:
https://www.booking.com/hotel/tr/p
hane-garden.en-gb.html?
aid=356980;label=gog235jc-
1DCAso5AFCFHByaW1hc29sLWhhb

2.2.1.1.2.2.1.4.2.3.1.1.1.1.1.1.
.

2.2.1.1.2.2.1.4.2.3.1.1.1.1.1.1.1
*Primasol Hane*

2.2.1.1.2.2.1.4.2.3.1.1.1.1.1.1
The Primasol Hane
Family Hotel.

2.2.1.1.2.2.1.4.2.3.1.1.1.1.
.

2.2.1.1.2.2.1.4.2.4. O Hotel

2.2.1.1.2.2.1.4.2.4.1. The Primasol Hane


Family Hotel
Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50
2.2.1.1.2.2.1.4.2.4.1.1. Ele mudou?

2.2.1.1.2.2.1.4.2.4.1.1.1. Cache

2.2.1.1.2.2.1.4.2.4.1.1.2.
Reviews/Social/Fotos ?

2.2.1.1.2.2.1.4.2.4.1.1.2.1.
PrimaSol Hane Family (Evrenseki)
• HolidayCheck (Türkische Riviera
| Türkei)

Link:
https://www.holidaycheck.de/hi/prima
hane-family/62dfaca2-2db1-
3cef-a6d2-f6ad2cf916d9

2.2.1.1.2.2.1.4.2.4.1.2. Quando?

2.2.1.1.2.2.1.4.2.4.1.2.1. .

2.2.1.1.2.2.1.4.2.4.1.2.1.1. .

2.2.1.1.3. Coleta de evidências

2.2.1.1.3.1. O Missel R9X

2.2.1.1.3.1.1. Noticias

2.2.1.1.3.1.1.1. Al Qaeda confirms leader killed by


drone strike in Syria

Link: https://www.reuters.com/article/us-
mideast-crisis-qaeda-leader-idUSKBN16924L

2.2.1.1.3.1.1.2. Secret U.S. Missile Aims to Kill


Only Terrorists, Not Nearby Civilians

Link: https://www.wsj.com/articles/secret-u-s-
missile-aims-to-kill-only-terrorists-not-nearby-
civilians-11557403411

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.2.1.1.3.1.1.3. U.S. Used Missile With Long
Blades to Kill Qaeda Leader in Syria (Published
2020)

Link:
https://www.nytimes.com/2020/06/24/world/middleea
qaeda-r9x-hellfire-missile.html

2.2.1.1.3.1.2. .

2.2.1.1.3.1.3. OSINT

2.2.1.1.3.1.3.1. .

2.2.1.1.3.1.3.1.1. .

2.2.1.1.3.1.3.2. Ataques

2.2.1.1.3.1.3.2.1. https://t.co/VyquiabgdP?
amp=1

2.2.1.1.3.2. O Voo MH17

2.2.1.1.3.2.1. Voo da Malaysia Airlines foi derrubado


por míssil na Ucrânia, diz relatório

Link:
http://g1.globo.com/mundo/noticia/2015/10/investigaca
conclui-que-voo-mh17-foi-derrubado-por-missil-
na-ucrania.html

2.2.1.1.3.2.2. OSINT

2.2.1.1.3.2.2.1. Putin visitando uma base militar


russa

2.2.1.1.3.2.2.2. Investigação Bellingcat

Link: https://www.bellingcat.com/news/uk-and-
europe/2014/11/08/origin-of-the-separatists-
buk-a-bellingcat-investigation/

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.2.1.1.3.3.

2.2.1.1.3.3.1. TikTok

Link: https://www.tiktok.com/@wlfdllinha

2.2.1.1.4. Obras de Arte

2.2.1.1.4.1. National Stolen Art File — FBISubmit


SearchHomeFacebook IconEmail IconTwitter
IconYoutube IconFlickr IconLinkedIn IconInstagram
IconSubmit SearchSubmit Search

Link: https://www.fbi.gov/investigate/violent-
crime/art-theft/national-stolen-art-file

2.2.1.1.4.2. Search

Link: https://www.lootedart.com/search2.php

2.2.1.2. Identificar Ameaças

2.2.1.2.1. Protestos e Eventos

2.2.1.2.1.1. Pré

2.2.1.2.1.1.1. tamanho?

2.2.1.2.1.1.2. tao planejando algo?

2.2.1.2.1.1.3. oq esperar?

2.2.1.2.1.1.4. vai ser pacifico?

2.2.1.2.1.2. Live

2.2.1.2.1.2.1. The one million tweet map

Link: https://onemilliontweetmap.com/?
center=25.505,-0.09&zoom=2&search=&timeStep=0&

2.2.1.2.1.2.2. https://www.trendsmap.com/map

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://www.trendsmap.com/map

2.2.1.2.1.3. Pós

2.2.1.2.1.4. Talibã Checkpoints

2.2.1.2.1.4.1. Taliban Checkpoints by


MappingInsurgencies · MapHub

Link:
https://maphub.net/MappingInsurgencies/taliban-
checkpoints

2.2.1.2.2. Proteção Executiva / Diplomática

2.2.1.3. Jornalismo

2.2.1.4. Traçar Perfil

2.2.1.4.1. Investigar redes sociais

2.2.1.4.1.1. Curtidas, fotos, comentários, localizações,


eventos, compartilhamentos

2.2.1.4.1.2. Nome, aniversário, email, carreira,


educação, histórico

2.2.1.4.1.3. Conexões. Amigos, quem segue, familia...

2.2.1.4.1.4. Comunidades, grupos

2.2.1.4.2. Resultados de buscas

2.2.1.5. Espionagem Industrial

2.2.1.6. Cybersecurity

2.2.1.6.1. Análise Não Binária

2.2.1.6.1.1. Firewall / IDS / IPS

2.2.1.6.1.2. Mas...

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.2.1.6.1.2.1. Porque eu sou o alvo?

2.2.1.6.1.2.1.1. É um grupo?

2.2.1.6.1.2.1.2. Quais os motivos?

2.2.1.6.1.2.2. Qual o poder de fogo? Qual a


ferramenta?

2.2.1.6.1.2.3. É direcionado?

2.2.1.6.2. Pentest

2.2.1.6.2.1. Conhecer o alvo

2.2.1.6.2.2. Identificar tecnologias / estruturas

2.2.1.6.2.2.1. Certificações

2.2.1.6.2.2.2. Vagas de Emprego

2.2.1.6.2.3. Junior? Senior?

2.2.1.6.2.4. Já sofreu ataque?

2.2.1.6.2.5. Leaks

2.2.1.6.3. Monitoramento

2.2.1.7. Detetives

2.2.1.8. Prevenção do suicídio

2.2.1.9. ....

2.3. Ambiente de OSINT

2.3.1. O objetivo é ISOLAR o ambiente de OSINT do nosso perfil


pessoal (identidade).

2.3.1.1. Atividades executadas

2.3.1.1.1. Interações humanas

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.3.1.1.1.1. comunicação/escrita

2.3.1.1.1.2. comportamento

2.3.1.1.1.3. hábitos

2.3.1.1.2. Contas

2.3.1.1.2.1. Email

2.3.1.1.2.2. Telefone

2.3.1.1.2.3. Username

2.3.1.1.2.3.1. Computador

2.3.1.1.2.3.2. Documentos

2.3.1.1.2.4. Redes Sociais

2.3.1.1.2.5. ...

2.3.1.1.3. Navegador

2.3.1.1.3.1. Cookies

2.3.1.1.3.2. Sessões

2.3.1.1.3.3. Fingerprint

2.3.1.1.4. Computador

2.3.1.1.5. Internet

2.3.1.2. Sock Puppet

2.3.1.2.1. .

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.3.1.2.1.1. Sock puppets are nothing but detailed
created fake social media accounts to research in
OSINT without giving up the true identity. Sock Puppets
are basically aliases, fictitious persona profiles created
by someone else with specific goals in mind and is part
of an OSINT Social Engineering technique. These type
of accounts can be used by anyone like investigators,
detectives, hackers, police, journalists, it can be
anyone who wants to impersonate someone else.

2.3.1.2.2. Guias

2.3.1.2.2.1. The Art Of The Sock

Link: https://www.secjuice.com/the-art-of-the-sock-
osint-humint/

2.3.1.2.2.2. How to Make Sock Puppet Accounts for


OSINT in 2021 | Hacker Noon

Link: https://hackernoon.com/how-to-make-sock-
puppet-accounts-for-osint-in-2021-12r33gs

2.3.1.2.2.3. r/OSINT - My process for setting up


anonymous sockpuppet accounts.

Link:
https://www.reddit.com/r/OSINT/comments/dp70jr/my_proc

2.3.1.2.3. Criação

2.3.1.2.3.1. Explorando o Mercado de Ads

2.3.1.2.3.1.1. compra e evenda

2.3.1.2.3.1.2. "estratéginas"

2.3.1.2.3.1.2.1. site:trello.com esteira de


aquecimento

2.3.1.2.3.2. Serviços de email


Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50
2.3.1.2.3.2.1. Gmail

2.3.1.2.3.3. Compra de dominio

2.3.1.2.3.3.1. Buy a domain name - Register cheap


domain names from $0.99 - Namecheap

Link: https://namecheap.com

2.3.1.2.3.4. Dicas

2.3.1.2.3.4.1. Conexão

2.3.1.2.3.4.1.1. não usei vpn na criação

2.3.1.2.3.4.1.1.1. redes públicas

2.3.1.2.3.4.1.1.2. hotel

2.3.1.2.3.4.1.1.3. cafe

2.3.1.2.3.4.1.2. AWS EC2

2.3.1.2.3.4.1.2.1. Digital Ocean

2.3.1.2.3.4.2. e-mail corporativo é melhor

2.3.1.2.3.4.2.1. privacidade

2.3.1.2.3.4.2.2. menos bloqueio

2.3.1.2.3.4.2.2.1. *se não for novo

2.3.1.2.3.4.3. telefone

2.3.1.2.3.4.3.1. chip pré-pago (revendedores)

2.3.1.2.3.4.3.1.1. Amazon.com: Mint Mobile


See for Yourself Kit | Verify Compatibility with
Our Talk, Text & Data Plans (3-in-1 GSM SIM
Card) : Cell Phones & Accessories

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://www.amazon.com/Mint-Mobile-
Starter-Verify-Compatibility/dp/B0786RD524

2.3.1.2.3.4.3.2. hoteis

2.3.1.2.3.4.4. Seja real

2.3.1.2.3.4.4.1. How Many of Me

Link: http://howmanyofme.com/

2.3.1.2.3.4.4.2. uso da conta

2.3.1.2.3.4.4.2.1. Entre em grupos

2.3.1.2.3.4.4.2.2. Culturas, jogos, eventos

2.3.1.2.3.4.4.2.3. comente

2.3.1.2.3.4.4.3. Dados

2.3.1.2.3.4.4.3.1. uma pessoa pode analisar

2.3.1.2.3.4.4.3.2. escolaridade, onde mora, oq


curti...

2.3.2. "O Setup"

2.3.2.1. Máquina Virtual

2.3.2.1.1. Kali Linux

2.3.2.1.1.1. VMWARE

2.3.2.1.2. Linux Mint

2.3.2.2. Navegador

2.3.2.2.1. Chrome/Chromium

2.3.2.2.2. Firefox

2.3.2.3. VPN

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.3.2.3.1. ProtonVPN

2.3.2.4. Note-taking

2.3.2.4.1. Notion

2.3.2.5. Gravar a Tela

2.3.2.5.1. OBS

2.3.2.6. Monitoramento de Rede

2.3.2.6.1. Wireshark

2.3.2.6.2. Glasswire

Link: https://www.glasswire.com/

2.3.2.6.3. Little Snitch

Link:
https://www.obdev.at/products/littlesnitch/index.html

2.3.2.7. Burners

2.3.2.7.1. Home - MySudo

Link: https://mysudo.com/

2.3.2.7.2. Mobile Technology for Law Enforcement - Callyo

Link: https://callyo.com/

2.3.2.7.3. Secure email: ProtonMail is free encrypted


email.

Link: https://protonmail.com/

2.3.2.8. GIMP

2.3.2.9. Audicity

2.4. Buscas

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.4.1. Buscadores

2.4.1.1. Find search engines worldwide with Search Engine


Colossus

Link: https://www.searchenginecolossus.com/

2.4.1.2. Google

2.4.1.2.1. Dorks (operadores)

Link: https://www.google.com/advanced_search

2.4.1.2.1.1. Mastering Google Search Operators in 67


Easy Steps

Link: https://moz.com/blog/mastering-google-
search-operators-in-67-steps%20

2.4.1.2.2. Exemplos

2.4.1.3. Bing

2.4.1.3.1. Alles nur Fassade?

Link: https://www.bing.com/

2.4.1.3.2. https://www.compass-
security.com/fileadmin/Research/White_Papers/2017-
01_osint_cheat_sheet.pdf

2.4.1.4. Advangle: advanced web-search in Google and Bing

Link: http://advangle.com/

2.4.1.5. BVSG

2.4.1.5.1. Bing vs. Google

Link: http://bvsg.org/

2.4.1.6. Yahoo

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.4.1.6.1. Yahoo | Mail, Weather, Search, Politics, News,
Finance, Sports & Videos

Link: https://www.yahoo.com/

2.4.1.7. Yandex

2.4.1.7.1. https://yandex.com/

2.4.1.8. Millionshort

2.4.1.8.1. Million Short

Link: https://millionshort.com/

2.4.2. Cache / Históricos

2.4.2.1. OSINT - start.me

Link: https://start.me/p/b56xX8/osint

2.4.2.2. Internet Archive: Digital Library of Free &


Borrowable Books, Movies, Music & Wayback Machine

Link: https://archive.org/

2.4.2.3. Google Cached Pages of Any Website - CachedView

Link: http://cachedview.com/

2.4.2.4. Cached Pages - Get the cached page of any URL |

Link: http://www.cachedpages.com/

2.4.2.5. GitHub - hartator/wayback-machine-downloader:


Download an entire website from the Wayback Machine.

Link: https://github.com/hartator/wayback-machine-
downloader

2.4.2.6. GAU

2.4.2.6.1. instalar o go
Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50
2.4.2.6.2. GitHub - lc/gau: Fetch known URLs from
AlienVault's Open Threat Exchange, the Wayback
Machine, and Common Crawl.

Link: https://github.com/lc/gau

2.4.3. Dark Web

2.4.3.1. AHMIA

2.4.3.1.1. Ahmia — Search Tor Hidden Services

Link: https://ahmia.fi/

2.4.3.2. DarkSearch

2.4.3.2.1. DarkSearch - The 1st Dark Web search engine

Link: https://darksearch.io/

2.4.4. WiFI / Redes

2.4.4.1. WiGLE: Wireless Network Mapping

Link: https://wigle.net/

2.5. Identificadores

2.5.1. Nomes

2.5.1.1. Spokeo - People Search | White Pages | Reverse


Phone Lookup

Link: https://www.spokeo.com/

2.5.1.2. Buscadores

2.5.1.2.1. Google

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


“John Doe” “resume” filetype:doc OR
filetype:docx OR filetype:pdf

·“John Doe” “Resume”

·“John Doe” “Curriculum Vitae”

·“John Doe” “CV”

·“John Doe” “Resume” filetype:doc

·“John Doe” “Curriculum Vitae” filetype:doc

·“John Doe” “CV” filetype:doc

·“John Doe” “Resume” filetype:pdf

·“John Doe” “Curriculum Vitae” filetype:pdf

·“John Doe” “CV” filetype:pdf

·“John Doe” “Resume” site:docs.google.com

·“John Doe” “Curriculum Vitae”


site:docs.google.com

·“John Doe” “CV” site:docs.google.com

2.5.2. E-mail

2.5.2.1. Buscadores

2.5.2.2. LinkedIn

2.5.2.3. theHarvester

2.5.2.4. hunter.io

2.5.2.5. Email Lookup

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://tools.epieos.com/email.php

2.5.3. Usernames

2.5.3.1. WhatsMyName Web

Link: https://whatsmyname.app/

2.5.3.2. Namechk - Username and Domain Name Checker -


Search All Domain Names and User Names to see if they're
available

Link: https://namechk.com/

2.5.3.3. Sherlock

Link: https://github.com/sherlock-project/sherlock

2.5.4. Telefones

2.5.4.1. PhoneInfoga

2.5.4.1.1. GitHub - sundowndev/phoneinfoga: Information


gathering & OSINT framework for phone numbers

Link: https://github.com/sundowndev/PhoneInfoga

2.5.5.

2.5.5.1. Consulta

2.5.5.1.1. Serviços de background check

2.5.5.1.2. ...

2.5.5.1.2.1. Telegram

2.5.5.1.2.1.1. ###

2.5.5.1.2.1.2. ####

2.5.5.1.2.1.3. ###

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6. Redes Sociais

2.6.1. Twitter

2.6.1.1. Operadores

2.6.1.1.1. GitHub - igorbrigadir/twitter-advanced-search:


Advanced Search for Twitter.

Link: https://github.com/igorbrigadir/twitter-advanced-
search

2.6.1.2. Archive

2.6.1.2.1. Wayback MachineInternet Archive's 25th


Anniversary LogoInternet Archive logoSearch iconSearch
iconUpload iconUser iconWeb iconTexts iconVideo
iconAudio iconSoftware iconImages iconDonate
iconEllipses iconHamburger iconDonate icon

Link: https://web.archive.org/web/*?twitter.com/user

2.6.1.3. Tweetdeck

2.6.1.4. Ferramentas

2.6.1.4.1. Mentiomapp

Link: http://analytics.mentionmapp.com/?v=free

2.6.1.4.2. Twitter Analytics by Foller.me

Link: https://foller.me/

2.6.1.4.3. tinfoleak | Free dossier of a twitter user

Link: https://tinfoleak.com/

2.6.1.4.4. Twitonomy: Twitter #analytics and much more...

Link: https://twitonomy.com/

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6.1.4.5. Twiangulate: analyzing the connections
between friends and followers

Link: https://twiangulate.com/search/

2.6.1.4.6. Followerwonk: Tools for Twitter Analytics, Bio


Search and More

Link: https://followerwonk.com/

2.6.1.4.7. Sleeping Time

Link: https://sleepingtime.org/

2.6.1.4.8. The one million tweet map

Link: https://onemilliontweetmap.com/

2.6.1.4.9. Spoonbill

Link: https://spoonbill.io/

2.6.1.4.10. TweetBeaver - Home of Really Useful Twitter


Tools

Link: https://tweetbeaver.com/

2.6.1.4.11. https://www.trendsmap.com/

Link: https://www.trendsmap.com/

2.6.1.4.12. OmniSci Tweetmap

Link: https://www.omnisci.com/demos/tweetmap

2.6.1.5. TWINT Project

Link: https://github.com/twintproject

2.6.2. Instagram

2.6.2.1. Objetivos

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6.2.1.1. Telefone

2.6.2.1.2. Postagens

2.6.2.1.2.1. horários

2.6.2.1.2.1.1. taken_at_timestamp

2.6.2.1.2.2. locais

2.6.2.1.3. username / id

2.6.2.2. URLs

https://www.instagram.com/USER/channel/

https://www.instagram.com/explore/tags/keyword/

https://www.instagram.com/USER/tagged/

https://www.instagram.com/USER/?__a=1

2.6.2.3. Operadores

2.6.2.3.1. site:instagram.com “target name”

2.6.2.3.2. site:instagram.com “@username”

2.6.2.3.3. site:instagram.com "username" "keyword"

2.6.2.3.4. site:instagram.com "username1" "username2"

2.6.2.3.5. site:twitter.com “username” “instagram.com/p”

2.6.2.4. Ferramentas

2.6.2.4.1. Searchmy.bio - Search Instagram bio text. Find


influencers, brand ambassadors and collabs.

Link: https://www.searchmy.bio/

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6.2.4.2. Track and Chart Twitter Followers over Time -
Followerwonk

Link: https://followerwonk.com/track

2.6.2.4.3. Instadp - View Insta dp at full size - Instagram


profile picture downloader

Link: https://www.instadp.com/

2.6.2.4.3.1. og:image

2.6.2.4.4. Download Instagram Stories and Highlights -


Online,Free Views

Link: https://www.instafollowers.co/download-
instagram-stories

2.6.2.4.5. GitHub - althonos/InstaLooter: Another API-less


Instagram pictures and videos downloader.

Link: https://github.com/althonos/InstaLooter

2.6.2.4.6. GitHub - Datalux/Osintgram: Osintgram is a


OSINT tool on Instagram. It offers an interactive shell to
perform analysis on Instagram account of any users by its
nickname

Link: https://github.com/Datalux/Osintgram

2.6.3. TikTok

2.6.3.1. URL

https://tiktok.com/@username
https://tiktok.com/tag/keyword
https://www.tiktok.com/@username/video/ID

2.6.3.2. Identificadores

2.6.3.2.1. uniqueid

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6.3.2.2. userid

2.6.3.2.3. nickname

2.6.3.3. Buscas

2.6.3.3.1. site:tiktok.com/tag keyword

2.6.3.3.2. site:tiktok.com intext:keyword

2.6.3.3.3. inurl:https://m.tiktok.com/h5/share/usr
filetype:html keyword

2.6.3.3.4. =Wayback MachineInternet Archive's 25th


Anniversary LogoInternet Archive logoSearch iconSearch
iconUpload iconUser iconWeb iconTexts iconVideo
iconAudio iconSoftware iconImages iconDonate
iconEllipses iconHamburger iconDonate icon

Link:
https://web.archive.org/web/*/https://www.tiktok.com/@usern

2.6.3.4. Ferramentas

2.6.3.4.1. TikTok Quick Search | OSINT Combine

Link: https://www.osintcombine.com/tiktok-quick-
search

2.6.3.4.2. download tiktok video in mp4 & mp3 formats


free at ttdown.org

Link: https://ttdown.org/

2.6.3.4.3. GitHub - bravoTF117/berserkparser: Dirty script


written to parse TikTok JSON files

Link: https://github.com/bravoTF117/berserkparser

2.6.4. LinkedIn

2.6.4.1. $
Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50
2.6.4.2. Analise

2.6.4.3. Buscas

2.6.4.3.1. site:http://linkedin.com/in ""

2.6.4.4. Operadores

2.6.4.4.1. headline:”open to work”.

2.6.4.4.2. (NOT geo:brazil) spokenlanguage:portuguese

2.6.4.5. Ferramentas

2.6.4.5.1. Discoverly

Link:
https://chrome.google.com/webstore/detail/discoverly/dijhcpb
utm_source=chrome-ntp-icon

2.6.4.5.2. GitHub - eth0izzle/the-endorser: An OSINT tool


that allows you to draw out relationships between people
on LinkedIn via endorsements/skills.

Link: https://github.com/eth0izzle/the-endorser

2.6.5. Facebook

2.6.5.1. Sistema de Buscas

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


All: https://www.facebook.com/search/top/?q=busca

Posts: https://www.facebook.com/search/posts/?
q=busca

People: https://www.facebook.com/search/people/?
q=busca

Photos; https://www.facebook.com/search/photos/?
q=busca

Photos; https://www.facebook.com/search/photos/?
q=busca

Videos: https://www.facebook.com/search/videos/?
q=busca

Marketplace:
https://www.facebook.com/search/marketplace/?
q=busca

Pages: https://www.facebook.com/search/pages/?
q=busca

Groups: https://www.facebook.com/search/groups/?
q=busca

Apps: https://www.facebook.com/search/apps/?
q=busca

Events: https://www.facebook.com/search/events/?
q=busca

Links: https://www.facebook.com/search/links/?
q=busca

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6.5.2. URLs de perfil

Timeline: https://www.facebook.com/zuck

About: https://www.facebook.com/zuck/about

Employment: https://www.facebook.com/zuck/about
?section=work

Education: https://www.facebook.com/zuck/about?
section=education

Locations: https://www.facebook.com/zuck/about?
section=living

Contact Info: https://www.facebook.com/zuck/about?


section=contact-info

Basic Info: https://www.facebook.com/zuck/about?


section=basic-info

Relationships: https://www.facebook.com/zuck/about
?section=relationship

Family
Members: https://www.facebook.com/zuck/about?
section=family

Bio: https://www.facebook.com/zuck/about?
section=bio

Life Events: https://www.facebook.com/zuck/about?


section=year-overviews

Friends: https://www.facebook.com/zuck/about?
section=friends

Profile
Photos: https://www.facebook.com/zuck/about?
section=photos

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Photo
Albums: https://www.facebook.com/zuck/about?
section=photos_albums

Videos: https://www.facebook.com/zuck/about?
section=videos

Check-Ins: https://www.facebook.com/zuck/about?
section=places_recent

Sports: https://www.facebook.com/zuck/about?
section=sports

Music: https://www.facebook.com/zuck/about?
section=music

Movies: https://www.facebook.com/zuck/about?
section=movies

TV Shows: https://www.facebook.com/zuck/about?
section=tv

Books: https://www.facebook.com/zuck/about?
section=books

Likes: https://www.facebook.com/zuck/about?
section=likes

Events: https://www.facebook.com/zuck/about?
section=events

Facts: https://www.facebook.com/zuck/about?
section=facts

Reviews: https://www.facebook.com/zuck/about?
section=reviews

Notes: https://www.facebook.com/zuck/about?
section=notes

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.6.6. Snapchat

2.6.6.1. ...

2.6.6.1.1. live

Link:
https://map.snapchat.com/@41.335703,-95.590514,2.00z

2.6.7. Dating

2.6.7.1. Dating apps and hook-up sites for investigators -


start.me

Link: https://start.me/p/VRxaj5/dating-apps-and-hook-up-
sites-for-investigators

2.6.7.2. Location Guard – Get this Extension for Firefox (en-


US)

Link: https://addons.mozilla.org/en-
US/firefox/addon/location-guard/

2.6.8. OSINT Tools - Practical OSINT Tools - free of charge -


Aware Online

Link: https://www.aware-online.com/en/osint-tools/

2.7. Arquivos

2.7.1. Metadados

2.7.1.1. Exiftool

2.7.1.2. FotoForensics

Link: https://fotoforensics.com/

2.7.2. Conteúdo

2.7.2.1. Fotos

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.7.2.1.1. Busca Reversa

2.7.2.1.1.1. Google Images

Link: https://images.google.com/

2.7.2.1.1.2. „Ein neuer Atemzug“

Link: https://bing.com/images

2.7.2.1.1.3. TinEye Reverse Image Search

Link: https://tineye.com/

2.7.2.1.1.4. https://images.yandex.com/

2.7.2.1.1.5. Reverse Image Analyser | OSINT Combine

Link: https://www.osintcombine.com/reverse-image-
analyzer

2.7.2.1.1.6. Ferramentas

2.7.2.1.1.6.1. Search by Image

Link:
https://chrome.google.com/webstore/detail/search-
by-image/cnojnbdhbhnkbcieeekonklommdnndci

2.7.2.1.1.6.2. RevEye Reverse Image Search

Link:
https://chrome.google.com/webstore/detail/reveye-
reverse-image-
sear/keaaclcjhehbbapnphnmpiklalfhelgf?hl=en

2.7.2.1.2. Forensically, free online photo forensics tools

Link: https://29a.ch/photo-forensics/#forensic-
magnifier

2.7.2.1.3. Rostos

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.7.2.1.3.1. PimEyes: Face Recognition Search Engine
and Reverse Image Search |

Link: https://pimeyes.com/en

2.7.2.1.4.
https://somerandomstuff1.wordpress.com/2019/02/08/geoguess
the-top-tips-tricks-and-techniques/

2.7.2.2. Documentos

2.7.2.3. Código-fonte

2.7.3. Nomenclaturas

2.7.3.1. dump/filename-fingerprinting.md at master ·


s0md3v/dump

Link:
https://github.com/s0md3v/Dump/blob/master/static/filename-
fingerprinting.md

2.8. Mapas, Satelites, Cameras

2.8.1. Mapas

2.8.1.1. Google Maps

2.8.1.2. Apple Maps

2.8.1.3. Bing Maps

2.8.1.4. https://yandex.com/maps/

2.8.1.4.1. Areas que empresas americanas "ocultam"

2.8.2. Satalites

2.8.2.1. Google Earth

Link: https://earth.google.com/web/

2.8.2.2. Earth Versions – Google Earth

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://www.google.com/earth/versions/

2.8.2.2.1. Google Earth Hacks - Fun stuff for Google Earth

Link: https://www.gearthhacks.com/

2.8.2.3. Zoom Earth | LIVE weather, storm tracker, wildfire


maps

Link: https://zoom.earth/

2.8.2.4. https://apps.sentinel-hub.com/

2.8.2.5. World Imagery Wayback

Link:
https://livingatlas.arcgis.com/wayback/#active=42403

2.8.3. Cameras

2.8.3.1. https://www.insecam.org/

2.8.4. Hands-on

2.8.4.1. 1

2.8.4.2. 2

2.8.4.2.1. Foto

2.8.4.2.1.1. SunCalc sun position- und sun phases


calculator

Link: https://www.suncalc.org/

2.8.4.2.2. Quem? Onde? Quando?

2.8.4.2.2.1. ☀

2.8.4.2.2.2. Uniforme

2.8.4.2.2.2.1. Camopedia

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://www.camopedia.org/

2.8.4.2.2.2.2. ICUS Camouflage Index

Link:
https://camouflageindex.camouflagesociety.org/index-
2.html

2.8.4.2.2.3. Badge

2.8.4.2.2.3.1. List of comparative military ranks -


Wikipedia

Link:
https://en.wikipedia.org/wiki/List_of_comparative_militar

2.8.4.2.2.3.2. http://www.uniforminsignia.org/

2.8.5. GeoGuessr- The Top Tips, Tricks and Techniques

Link:
https://somerandomstuff1.wordpress.com/2019/02/08/geoguessr-
the-top-tips-tricks-and-techniques/

2.9. Buckets, Código-fonte, Pastes

2.9.1. Github

2.9.2. Open Buckets

2.9.2.1. Public Buckets by GrayhatWarfare

Link: https://buckets.grayhatwarfare.com/

2.9.3. Pastes

2.10. Ferramentas de Trabalho

2.10.1. Trello

2.10.2. Cloud

2.10.3. ...

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.11. Leaks

2.11.1. Domain Seizure

Link: https://weleakinfo.com/

2.11.2. GitHub - Greyjedix/Profil3r: OSINT tool that allows you


to find a person's accounts and emails + breached emails

Link: https://github.com/Greyjedix/Profil3r

2.11.3. Snapchat

Link: https://archive.org/download/SnapChat.7z

2.11.4. LinkedIn

Link: https://archive.org/details/LIUsers.7z

2.11.5. DEHASHED

2.12. Transporte

2.12.1. Barcos

2.12.1.1. MarineTraffic: Global Ship Tracking Intelligence |


AIS Marine Traffic

Link:
https://www.marinetraffic.com/en/ais/home/centerx:-12.0/cente

2.12.1.2. Bosphorus Observer

Link: https://bosphorusobserver.com/

2.12.1.3. IUU Vessel List

Link: https://iuu-vessels.org/Home/Search

2.12.1.4. GFW | Map

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://globalfishingwatch.org/map/?
latitude=19&longitude=-30&zoom=1.5&start=2021-08-
17T00%3A00%3A00.000Z&end=2021-11-
17T00%3A00%3A00.000Z

2.12.1.5. OSINT

2.12.1.5.1. Suez Canal: Satellite Clues on a Stricken Cargo


Ship - bellingcat

Link:
https://www.bellingcat.com/resources/2021/03/26/suez-
canal-satellite-clues-on-a-stricken-cargo-ship/

2.12.2. Aviões

2.12.2.1. Live Flight Tracker - Real-Time Flight Tracker Map |


Flightradar24

Link: http://flightradar24.com/

2.12.2.2. c/ militar

2.12.2.2.1. ADS-B Exchange - tracking thousands of


aircraft

Link: https://globe.adsbexchange.com/

2.12.2.3. A Beginner's Guide To Flight Tracking - bellingcat

Link: https://www.bellingcat.com/resources/how-
tos/2019/10/15/a-beginners-guide-to-flight-tracking/

2.12.2.4. ODINT

2.12.3. Trem

2.12.3.1. OpenRailwayMap - OpenStreetMap Wiki

Link:
https://wiki.openstreetmap.org/wiki/OpenRailwayMap

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.12.3.2. Maps for Mobility | geOps

Link: https://mobility.portal.geops.io/world.geops.transit?
baselayers=world.geops.travic,ch.sbb.netzkarte,ch.sbb.netzkar

2.13. Dominios

2.13.1. whois

2.13.2. DNSdumpster.com - dns recon and research, find and


lookup dns records

Link: https://dnsdumpster.com/

2.13.3. Buscadores

2.14. Mortos

2.14.1. Start Your Family Tree - Search Genealogy Archives

Link: https://www.familysearch.org/en/

2.15. Carteiras BTC, ETH,

2.15.1. Como "pesquisa"

2.16. Projetos

2.16.1. GitHub - jivoi/awesome-osint: A curated list of


amazingly awesome OSINT

Link: https://github.com/jivoi/awesome-osint

2.16.2. OSINT Framework

Link: https://osintframework.com/

2.16.3. The Ultimate OSINT Collection - start.me

Link: https://start.me/p/DPYPMz/the-ultimate-osint-collection

2.16.4. SHODAN

2.16.5. MALTEGO

2.17. Crie um Processo

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


2.17.1. Documente / Template

3. _ENGENHARIA SOCIAL
3.1. Definição

3.1.1. “Any act that influences a person to take an action that


may or may not be in their best interest”.

3.1.2. Quem usa?

3.1.2.1. Hackers

3.1.2.1.1. Black Hat

3.1.2.1.2. White Hat

3.1.2.1.3. Human Hackers

3.1.2.1.3.1. coletar informações

3.1.2.1.3.2. espionagem industrial

3.1.2.1.3.3. estabelecer conexões

3.1.2.1.3.4. crimes

3.1.2.1.3.5. Human Hackers Event

Link: https://humanbehaviorcon.com/

3.1.2.2. Pentest

3.1.2.3. Espionagem / Detetives

3.1.2.4. Scammers

3.1.2.5. Vendedores

3.1.2.6. Governos

3.1.2.6.1. comunicação

3.1.2.6.2. opinião pública

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


3.1.2.6.3. moeada

3.1.2.6.4. controle de alimentos

3.1.2.6.4.1. allAfrica.com: South Africa: Food Used as


Election Weapon, Say Monitors (Page 1 of 1)

Link: https://www.social-
engineer.org/wiki/archives/Governments/Governments-
FoodElectionWeapon.html

3.1.2.7. "Negociadores"

3.1.2.8. Humanos :)

3.1.2.8.1. crianças

3.1.2.8.2. pais

3.1.2.8.3. jornalistas

3.1.2.8.4. medicos

3.1.2.8.5. policiais

3.1.2.8.6. ...

3.2. "No Mundo Real"

3.2.1. PESQUISA

Link: https://www.social-engineer.org/social-
engineering/social-engineering-infographic/

3.2.2. Phishing

3.2.2.1. Fake Invoice Scam

3.2.2.2. Account Upgrade Scam

3.2.2.3. Google Doc Scam

3.2.2.3.1. Dropbox

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


3.2.2.4. Senha Expirou

3.2.2.5. Atividade Suspeita

3.2.2.6. Itau

3.2.2.6.1. BB

3.2.2.7. Netflix

3.2.3. Vishing

3.2.3.1. Técnicos, suporte....

3.2.3.2. Twitter, 2020

3.2.3.2.1. Analyzing the 2020 Twitter Attack

Link: https://www.social-engineer.com/analyzing-the-
2020-twitter-attack/

3.2.3.2.2. “we need you to reset your password.”

3.2.3.3. GoDaddy, 2020

3.2.3.3.1. GoDaddy Employees Used in Attacks on


Multiple Cryptocurrency Services – Krebs on Security

Link: https://krebsonsecurity.com/2020/11/godaddy-
employees-used-in-attacks-on-multiple-cryptocurrency-
services/

3.2.3.4. COVID

3.2.3.4.1. .

3.2.3.5. India

3.2.3.5.1. SHOWING A SCAMMER HIS OWN WEBCAM ON


MY COMPUTER!

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://www.youtube.com/watch?v=o2ixj0m4F_E

Video:
http:https://www.youtube.com/embed/o2ixj0m4F_E?
start=0

3.2.3.5.2. What Scammers Do When You Have $2,000,000

Link: https://www.youtube.com/watch?v=daHVD9a_rJU

Video:
http:https://www.youtube.com/embed/daHVD9a_rJU?
start=0

3.2.3.6.

3.2.3.6.1. .

3.2.3.6.1.1. .

3.2.4. SMiShing

3.2.4.1. cartões, numeros de segurança, transações, tokens

3.2.5. Impersonation

3.2.5.1. Shark Tank

3.2.5.1.1. Barbara Corcoran

3.2.5.1.1.1. USD 400,000

3.2.5.1.1.1.1. A cybercriminal impersonated her


assistant and sent an email to the bookkeeper
requesting a renewal payment related to real estate
investments. He used an email address similar to
the legitimate one.

3.2.5.2. Entregadores

3.2.5.2.1. Man posing as delivery person in San Francisco


hides resume in box of donuts

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


Link: https://abc7ny.com/postmates-sf-job-search-
marketing-donut-delivery/1545729/

3.2.5.3. Inspeção

3.2.5.4. Encanador, Eletrecista, bombeiro... (profissões que


tem/precisam de acesso)

3.3. Porque funciona

3.3.1. Explora falhas humanas

3.3.1.1. Comunicação

3.3.1.2. Falso coronel de policia

3.3.1.2.1. Falso coronel conta o que fez para enganar


tanta gente por tanto tempo

Link: https://www.youtube.com/watch?v=6cAk6xdgueI

Video:
http:https://www.youtube.com/embed/6cAk6xdgueI?
start=0

3.3.1.2.2. VIPS

3.3.1.2.2.1. O Maior Picareta do Brasil - Marcelo


Nascimento da Rocha

Link: https://www.youtube.com/watch?
v=wfJ3OXwSfDU

Video:
http:https://www.youtube.com/embed/wfJ3OXwSfDU?
start=0

3.3.1.3. Microexpressões

3.3.1.3.1. .

3.3.1.4. Rapport

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


3.3.1.4.1. Rapport é um conceito do ramo da psicologia
que significa uma técnica usada para criar uma ligação
de sintonia e empatia com outra pessoa.

3.3.1.4.2. Instante Rapport

3.3.1.4.2.1. Controle

3.3.1.4.2.1.1. The Trump handshake

Link: https://www.youtube.com/watch?
v=iUmo8Y1LRYE

Video:
http:https://www.youtube.com/embed/iUmo8Y1LRYE?
start=0

3.3.1.4.2.2. Comunicação não verbal

3.3.1.4.2.3. Pedindo Ajuda

3.3.1.4.2.4. Empatia

3.3.1.4.2.5. Ego

3.3.1.4.2.6. Perguntas chaves

3.3.1.4.2.6.1. como?quando?porque?

3.3.1.4.2.7. Dar informação

3.3.1.4.2.8. *gatilhos mentais*

3.3.1.5. Human Buffer Overflow

3.3.1.5.1. Buffer Overflow é uma situação em que um


programa em execução tenta gravar dados além do que o
buffer de memória permite, sobrecarregando assim o
sistema.

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


3.3.1.5.1.1. Os estouros de buffer (Buffer Overflow)
podem até executar outros programas ou comandos
maliciosos, resultando assim na execução arbitrária de
códigos.

3.3.1.5.2.

3.3.1.5.2.1. Mas calma

3.3.1.5.2.1.1. a gente fala 150 palavras por minuto


mas nosso cerebro pode processar 500-600

3.3.1.5.2.1.1.1. não vamos fazer um estouro de


memória falando rápido.

3.3.1.5.2.2. O Alvo

3.3.1.5.2.2.1. Comandos de Decisões/Conclusões

3.3.1.5.2.2.1.1. Nosso cerebro toma decisões em


7 segundos no subconciente

3.3.1.5.2.2.1.1.1. "Aqui na Coréia todos os


carros tem cameras, até o meu"

3.3.1.5.2.2.1.1.1.1. eu estou na coreia

3.3.1.5.2.2.1.1.1.2. na coreia tem carros

3.3.1.5.2.2.1.1.1.3. eu tenho carro

3.3.1.5.2.2.1.1.1.4. camera nos carros

3.3.1.5.2.2.1.2. Exemplos

3.3.1.5.2.2.1.2.1. No Marketing

3.3.1.5.2.2.1.2.1.1. Compre Agora

3.3.1.5.2.2.1.2.1.2. Assim que você


confirmar o pagamento, você já recebe os
dados de acesso no e-mail.
Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50
3.3.1.5.2.2.1.2.1.3. Assim que você comprar
de mim, eu vou pessoalmente te entregar. Já
está embalado.

3.3.1.5.2.2.1.2.2. ...

3.3.1.5.3. Entrevistas/Interrogatórios

3.3.1.6. Gatilhos Mentais

3.3.1.6.1. Autoridade

3.3.1.6.2. Reciprocidade

3.3.1.6.3. Escassez

3.3.1.6.4. Prova Social

3.3.1.6.5. Gatilhos Mentais: o que são, 25 tipos e


melhores exemplos! [2020]

Link: https://rockcontent.com/br/blog/gatilhos-
mentais/

3.3.1.7. Elicitação

3.3.1.7.1. Ato de provocar uma resposta ou reação em


algo ou alguém.

3.3.1.7.2. Interrogatório/Quesitonário

3.3.1.7.2.1. Manual CIA

3.3.1.7.2.1.1. InTERRORgation: The CIA's Secret


Manual on Coercive Questioning

Link:
https://whatreallyhappened.com/RANCHO/POLITICS/CIA_

3.3.1.7.3. ..

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


3.3.1.7.3.1. "I heard they have seventeen cameras,
twelve guards and a fingerprint scanner in their lobby.
They say that place is like Fort Knox! Nobody can get
in."

3.3.1.8. Pretexting

3.3.1.8.1. Pretexting is a type of social engineering attack


that involves a situation, or pretext, created by an
attacker in order to lure a victim into a vulnerable
situation and to trick them into giving private information,
specifically information that the victim would typically not
give outside the context of the pretext.

3.3.1.8.1.1. .

4. _VANTAGEM DESLEAL
4.1. Hacking + OSINT + Engenharia Social

4.1.1. Coleta de Informação

4.1.1.1. Shoulder surfing

4.1.1.2. Dumpster diving

4.1.1.3. Tail Gating

4.1.1.4. OSINT

4.1.1.5. Interações

4.1.1.6. Acesso Indevido

4.1.2. Phishing

4.1.2.1. Direcionado

4.1.2.1.1. Spear Phising

4.1.2.1.2. Hiper Spear Phishing

4.1.2.2. Coleta de Informação


Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50
4.1.2.3. Hands-on

4.1.2.3.1. #1

4.1.2.3.1.1. Direcionado

4.1.2.3.1.2. Website cloner

4.1.2.3.1.3. Email

4.1.2.3.1.3.1. lookalike

4.1.2.3.2. #2

4.1.2.3.2.1. Gatilhos

4.1.2.3.3. #3

4.1.2.3.3.1. Phishing

4.1.2.4. PhishStats

Link: https://phishstats.info/

4.1.3. Vishing

4.1.3.1.

4.1.4. SMiShing

4.1.4.1.

4.1.5. "Ask"

4.1.5.1. Camera

4.1.5.2. Geolocalização

4.1.5.3. Microfone

4.1.5.4. ....

4.1.6. IoT

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50


4.1.6.1. SHODAN

4.1.7. Trojan/Malwares

4.1.7.1. ANDROID

4.1.7.2. WINDOWS

Paulo Henrique Pfitzner - cientistaphp@gmail.com - CPF: 056.274.547-50

You might also like