Best Threat Intelligence portals you sho ...

Best Threat Intelligence portals you should know for find sensitive Informations

Aug 04, 2024

Hello guys , Namashkaram for all who reading this blog. This is praveenarsh again.

In this Blog will help you in to find a sensitive informations about the organizations or a target if the target info leaked . ok start with description

Buy me Coffee: https://buymeacoffee.com/praveenarsh0xx0

What is open source threat intelligence:

Open source threat intelligence is a proactive approach to cybersecurity that involves gathering, analyzing, and exchanging information about cyber threats, vulnerabilities, and malicious actors using publicly available data and resources instead of closed, proprietary systems.

Here i share my tools for findings which i use personally,

(I)OTX Alien Vault

  • This is one of the known web based tool to find the sensitive endpoint , emails , mobile numbre and the other sensitive informations of the target.

  • Go to this site create a account for further analysis, you can’t use this tool by searching the input, soo you use this path https://otx.alienvault.com/api/v1/indicators/domain/Target.com/url_list?limit=100&page=2

  • put your target on domain/target.com/ and you can see the next page by changing the value of &page=3,4

image

Here i used my target as “tealium.com” and found some juicy mails and tokens and also reported :) (don’t try)

(II) ProxyNova:
https://www.proxynova.com/

  • This is a tool where you can find a username , passwords which was leaked in data breach.

Search the world’s largest dataset of leaked passwords

In February of 2021, the largest dataset of leaked credentials (emails, usernames, and passwords) named COMB (Combination Of Many Breaches) was leaked to the public. It was the largest data leak of all time, containing over 3.2 billion credentials combined across from various other data breaches over the years from services such as Netflix, LinkedIn and many others. The purpose of this tool is to make that massive dataset of leaked usernames and passwords easily searchable, and to encourage better security practices by giving people an ability to check if their credentials were leaked and thus exposed to hackers.

image

If you found like this , it may use for your further attacks and also you can report it to the organization like this.

Credits: @randyrishi27

Example Report: — — — — -##dont misuse the domain which in this eg report.

Introduction: I hope this message finds you well. I am reaching out to bring to your attention a issue that has been identified during my recent assessment, The details of the vulnerability can be found in the comprehensive report provided below.

Description: Hello team hope you well and while i testing i heard about the data breach in 2021.

Description:
In February of 2021, the largest dataset of leaked credentials (emails, usernames, and passwords) named COMB (Combination Of Many Breaches) was leaked to the public. It was the largest data leak of all time, containing over 3.2 billion credentials combined across from various other data breaches over the years from services such as Netflix, LinkedIn and many others. The purpose of this tool is to make that massive dataset of leaked usernames and passwords easily searchable, and to encourage better security practices by giving people an ability to check if their credentials were leaked and thus exposed to hackers.

Summary:
In this database i found a some sensitive username and passwords which contain keyword “ meteoblue.com”

Security Impact:

Mediam

Step to reproduce:
* go to this URL” https://www.proxynova.com/tools/comb
* and type “@meteoblue” or “@meteoblue.com”
* see the credentials

Exposed Data’s:

[email protected]:83415
[email protected]:439zjE2
[email protected]:croquette14
[email protected]:hyteqtop
[email protected]:123456
[email protected]:82122504596t
[email protected]:leonard
[email protected]:marina
[email protected]:clochette
[email protected]:croquette14
[email protected]:hyteqtop
[email protected]:123456
[email protected]:82122504596t

If you find yourself on this list — change your password immediately, and always enable two factor authentication whenever possible. Your searches are not logged nor ever stored on our servers.

(III)Leakix:

  • This tool also used to find a common security Misconfiguration by searching the “keywords” like: server-status , it will search the keyword ”server-status” on the internet and give you the vulnerable servers.

  • it gather information on the Internet on the most common security misconfiguration currently open like a “shodan”

image

  • I search “ server-status” and got some juicy results , one of the results I found a vulnerable link called “https://autosoftwares.com/server-status” and its show the server status (sensitive).

  • ### DONT MAKE VIOLENCE WITH THIS EXAMPLE DOMAIN .

image

OK Guys this is the time for leaving from this blog , we’ll connect on next blog thank you for spent your interest with this blog.

Keep Following

¿Te gusta esta publicación?

Comprar Praveenarsh0xx0 un café

Más de Praveenarsh0xx0