Founder, CEO @ OSINTBASTION OSINT Specialist, OSINT Investigator

Joined April 2021
17 Photos and videos
Naz Dane retweeted
📷 The Easiest Way to Discover Live Cameras around the World OSINT investigations often involve searching for public cameras manually in a specific area… Different tabs. Different datasets 👀 But combining everything into one view changes how fast you can understand a situation. When I’m doing geospatial OSINT, one of my favorite approaches is using platforms that merge multiple live data sources into a single map 🗺️ Because context matters just as much as raw data. Here’s what this type of tool can show 👇 📹 Live public cameras around the world ✈️ Real-time aircraft tracking 🚢 Maritime vessel movements 🌍 Interactive 3D globe visualization 🧩 Additional intelligence layers through plugins 🎯 Real-life example: Imagine you’re investigating an incident near a coastal city or airport. Instead of checking separate platforms, you: • View nearby live cameras • Check aircraft activity overhead • Monitor vessel traffic in real time 🔗 Tool: demo.worldwideview.dev/ What’s your favorite OSINT tool for geospatial or real-time analysis? P.S. ♻️ Repost if you found this helpful.
3
39
219
9,280
Naz Dane retweeted
🔎 How I Check if an Email is Linked to a PGP Key Most investigators stop after searching breach databases. That's a mistake. Sometimes the most valuable clue isn't in a data leak... It's hiding in a public PGP key 🔐 When I'm investigating an email address, one of my favorite pivots is checking whether it's associated with a PGP key. Why? Because a single PGP key can reveal: 📧 Additional email addresses 👤 Usernames and aliases 🔑 Key fingerprints 📚 Historical activity 🌐 New investigation paths Real-world example 👇 Imagine you're investigating an email address found in a data breach. You search for the email and discover it's linked to a public PGP key. From there, you may find the same key referenced in: • Mailing lists • Code repositories • Archived discussions • Technical forums • Public key servers 🎯 Suddenly, a simple email address becomes a gateway to a much larger digital footprint. Many investigators overlook this step. But sometimes a PGP key is the missing link that connects multiple online identities together. 🔗 Tool: keys.openpgp.org/ Have you ever used PGP keys as part of an OSINT investigation? P.S. ♻️ Repost if you found this helpful.
12
63
3,094
Naz Dane retweeted
threatactorusernames.com by @CTI__Updates Input a username and locate active forum accounts, very useful for your OSINT research or finding posts shared on X
9
76
489
27,773
Naz Dane retweeted
Is Nexonwallet.net a scam? Our investigators took a closer look at the platform and uncovered a number of concerning findings. Watch the video to learn more, or read our full investigation here: cybertrace.com.au/is-nexonwa…
1
1
44
Naz Dane retweeted
🚨 Chicago Teen, 19, Linked to International "Scattered Spider" Hacking Ring, Prosecutors Say A young cybercriminal known online as "Bouquet" allegedly lived a globe-trotting lifestyle, bouncing between Dubai, Thailand, and New York while flaunting designer jewelry, wads of cash, and stays at luxury hotels, according to federal authorities. That run has come to an end, prosecutors say. Court records reviewed by the Tribune identify "Bouquet" as Peter Stokes, a 19-year-old dual citizen of the United States and Estonia. He was taken into custody earlier this month at a Finnish airport as he prepared to board a flight bound for Japan. chicagotribune.com/2026/04/2…
48
65
715
99,702
Naz Dane retweeted
WireTapper is a wireless #OSINT tool that passively detects and maps Wi-Fi, Bluetooth, CCTV cameras, vehicles, headphones, TVs, IoT devices, and cell towers, turning nearby radio signals into clear situational intelligence github.com/h9zdev/WireTapper
7
191
868
36,916
What initially appeared as a series of isolated leak posts linked to the name HellCat gradually revealed a more structured pattern when examined through StealthMole. The activity traced back to a shared onion-based infrastructure, supported by multiple communication channels and a recurring set of forum actors operating in close proximity to one another.
HellCat Ransomware Group: Infrastructure, Affiliations, and Activity on the Dark Web stealthmole-intelligence-hub… To access the unmasked report or full details, please reach out to us separately. Contact us: support@stealthmole.com
2
11
61
6,906
Naz Dane retweeted
175 million Telegram messages. 2 million channels. Not indexed by Google. 🔎 @Deaddrop searches a scraped Telegram archive - surfacing content that normal search engines will never find. Free for recent data. A solid Telegago alternative: deaddrop.theosintconsultants…
👋 Issue 100 of The OSINT Newsletter is out now! 🎉 📰 Public GitHub repositories 🔎 Changes to Google programmable search 🛰️ Losing access to critical datasets 🛠 WireTapper 📡 Deaddrop - scraped Telegram archives 📂 LootBin - data from Termbin dumps osintnewsletter.com/p/100
8
99
653
55,400
Naz Dane retweeted
‼️ BREAKING: The threat actors behind the recent supply chain attacks are imploding. Nearly every member has been kicked from the group and their operations are severely disrupted. 👀 They're apparently having some kind of rodent infestation problem.
10
28
445
44,141
Naz Dane retweeted
@GangExposed_RU Great work My friend 🚨 Handala Exposed: I have the names, connections, and photos of key participants. Following the recent hack of the FBI Director, I have identified 14 direct participants of the Handala group - including hackers, operators, and a coordinator-curator (in addition to Ali Bermoudeh, Morteza Aftabifar, Yahya Hosseini Panjaki, Mousa Bermoudeh). I have a full dossier on these participants, including real names, connections, and even photos of several of them. I am ready to provide these materials in full. But there is a condition. @FBI, you are required to publicly issue official charges against the key participants of Conti Ransomware and LockBit, the materials for which I already made publicly available many months ago: - Kvitko - Kurashov - Bondarenko - Sergey Khitrov - Kamensky - Dementyev (LockBit leader) The materials were complete and fully documented. During this time, there has not been a single public indictment, a single official statement, or any visible procedural action on these cases. Here is all the evidence: justpaste.it/iw99v justpaste.it/lmbkf justpaste.it/mxfxz justpaste.it/il812 justpaste.it/dz1qv justpaste.it/hsq7e justpaste.it/abwwp justpaste.it/jnmqv justpaste.it/ie84p justpaste.it/dmy4j justpaste.it/huh1t justpaste.it/bz6nt justpaste.it/iipya justpaste.it/ilpg5 justpaste.it/u/gangexposed I demand that you fulfill your direct obligations to American taxpayers, who fund the work of the FBI. A year of inaction despite ready evidence is no longer a question of resources or priorities. It is a question of competence and principled approach to work. I have been publishing exposes for over a year. I am capable of tracking the most hidden hackers in the world; my materials have repeatedly proven accurate. Now it is time to show that the justice system is able to respond to verified facts. I await an official response. #Conti #LockBit #Handala #FBI

1
1
14
1,957
Naz Dane retweeted
Feds sure seem capable of taking down telegram channels and websites fast when it comes to one of their own. I wonder why these rules don't apply to other telegram channels/groups such as the ones run by NVE's/RMVE's/etc. which can stay up for months at a time🤔
10
18
152
11,702
Naz Dane retweeted
Replying to @YourAnonCentral
What do you think Kash Patel's password was? x.com/1776coldbeers/status/2…

Iran hacked FBI director Kash Patel's gmail.
8
6
38
5,023
Naz Dane retweeted
> be iranian threat actors > compromise FBI directors personal email > fast forward like, 5 hours > $10,000,000 bounty on head Opinion: I think Kash Patel is extremely mad
If you have information on Iranian malicious cyber actors, such as Parsian Afzar Rayan Borna, Handala, or associated groups or individuals, contact us with any information, such as names, online personas, and locations.
72
515
5,596
181,579
Anatomy of a Supply Chain Breach: How a Pirated Game Exposed Jollibee Food Corporation. by @jaypeelita medium.com/p/anatomy-of-a-su… OSINT BASTION 🤝Soros Services Inc. (ConXIntel)!!! Collaboration again this one hits different!!!🔥🔥
2
85
Naz Dane retweeted
When Hackers Get Fedded
3
10
82
10,430
Naz Dane retweeted
‼️ ShinyHunters leaks BreachForums version 5. They say the following of the leak: "BreachForums has been run by many fakes, but by us, following the FBI seizure on 10 Oct 2025. Maintaining such an ecosystem is a waste of our time. There was an unauthorised leak on 9 Jan 2026. Ever since then, false personas going by “N/A“ and “Indra“ were successfully able to restore a similar-looking “legitimate“ forum. All the current forums are fake [ .sb, .ac, .fi, .bf, .us, ect.]. If they continue to exist, we'll leak all the BF backups, including every private message, emails, IP addresses, posts, ect. We have exploits for all 1.8 versions of MyBB."
14
30
157
62,904
Naz Dane retweeted
‼️ Handala Hack, the hacktivist group behind the mass data Intune wipe of the company Stryker and the data leak of senior employees of Lockheed Martin, is now claiming a security breach of the FBI.
60
474
1,542
74,400
Naz Dane retweeted
Some beef. Conti Ransomware - jordanconti@protonmail.com LockBit - 3778638546435689276444486582@protonmail.com Beast Ransomware - MNSTR@sector.city Wing Ransomware - blackhuntdev@tuta.io Qilin Ransomware - seemnahelene@gmail.com RTM Locker - mail165@mail.com CryptNet RaaS - abasfedya@tuta.io Bl00dy Ransomware - jeansmoove4@gmail.com Phobos Ransomware - qwertgfdsa123qw@proton.me LummaStealer - work888hard@proton.me UBUD Ransomware - IsEmptyOrNull@protonmail.com Meduza Stealer - MeduzaCod@proton.me CraxsRAT/XWorm - pradarosemerindama@gmail.com Reference: ddanchev.blogspot.com/2026/0…

5
18
157
20,303
Naz Dane retweeted
‼️ Footage of the LeakBase domain administrator getting arrested in Taganrog, Russia. techcrunch.com/2026/03/25/ru…
30
109
913
301,044