Reference Registry — OSINT
Propósito
Esta nota estandariza las referencias para la rama OSINT.
Usala para: - mantener las notas OSINT vinculadas a fuentes prácticas y de alta señal - evitar sprawl débil de listas de herramientas - mantener la rama enfocada en investigación de fuentes públicas, calidad de evidencia, ética y reporting - ayudar a agentes futuros a elegir referencias consistentes
Regla de fuente de verdad
Para notas OSINT, este registry es la fuente de verdad primaria.
Usalo junto con: - OSINT Index - Reference Registry — Offensive Security - Reference Registry — Attack Surface Mapping
Política de selección de referencias
Prioridad de fuentes
- documentación oficial de buscadores, herramientas y providers de datos públicos
- toolkits y fuentes metodológicas OSINT establecidas
- guías de testing/security cuando OSINT conecta con exposición
- investigación de alta señal y metodología investigativa
- fuentes secundarias solo cuando agregan valor práctico claro
Target por nota
- mínimo 2 referencias
- ideal 3 referencias
- evitar dumps largos de tools dentro de notas atómicas
Etiquetas
Usar: - Fundamental - Docs oficiales de herramienta - Testing / Lab - Investigación / Deep Dive - Ética / Seguridad
Mapa de temas OSINT
osint
Referencias preferidas: - Fundamental: OSINT Framework — https://osintframework.com/ - Fundamental: Bellingcat Online Investigation Toolkit — https://bellingcat.gitbook.io/toolkit - Fundamental: OWASP WSTG information gathering — https://owasp.org/www-project-web-security-testing-guide/latest/
osint-triage
Referencias preferidas: - Fundamental: Bellingcat Online Investigation Toolkit — https://bellingcat.gitbook.io/toolkit - Fundamental: OSINT Framework — https://osintframework.com/ - Fundamental: OWASP WSTG information gathering — https://owasp.org/www-project-web-security-testing-guide/latest/
search-engine-operators
Referencias preferidas: - Docs oficiales de herramienta: Google Search Help: refine searches — https://support.google.com/websearch/answer/2466433/refine-web-searches - Docs oficiales de herramienta: Google Advanced Search Help — https://support.google.com/websearch/answer/35890 - Fundamental: Bellingcat Online Investigation Toolkit — https://bellingcat.gitbook.io/toolkit
google-dorking
Referencias preferidas: - Docs oficiales de herramienta: Exploit-DB Google Hacking Database — https://www.exploit-db.com/google-hacking-database - Docs oficiales de herramienta: Google Search Help: refine searches — https://support.google.com/websearch/answer/2466433/refine-web-searches - Fundamental: OWASP WSTG information gathering — https://owasp.org/www-project-web-security-testing-guide/latest/
breach-and-leak-intelligence
Referencias preferidas: - Docs oficiales de herramienta: Have I Been Pwned API documentation — https://haveibeenpwned.com/API/v3 - Fundamental: OSINT Framework — https://osintframework.com/ - Fundamental: OWASP WSTG information gathering — https://owasp.org/www-project-web-security-testing-guide/latest/
social-media-osint
Referencias preferidas: - Fundamental: Bellingcat Online Investigation Toolkit — https://bellingcat.gitbook.io/toolkit - Fundamental: OSINT Framework — https://osintframework.com/ - Ética / Seguridad: EFF Surveillance Self-Defense — https://ssd.eff.org/
email-and-phone-osint
Referencias preferidas: - Fundamental: OSINT Framework — https://osintframework.com/ - Docs oficiales de herramienta: Have I Been Pwned API documentation — https://haveibeenpwned.com/API/v3 - Ética / Seguridad: EFF Surveillance Self-Defense — https://ssd.eff.org/
image-and-location-osint
Referencias preferidas: - Fundamental: Bellingcat Online Investigation Toolkit — https://bellingcat.gitbook.io/toolkit - Docs oficiales de herramienta: ExifTool by Phil Harvey — https://exiftool.org/ - Fundamental: OSINT Framework — https://osintframework.com/
company-osint
Referencias preferidas: - Fundamental: OSINT Framework — https://osintframework.com/ - Investigación / Deep Dive: ProjectDiscovery recon 101 — https://projectdiscovery.io/blog/reconnaissance-a-deep-dive-in-active-passive-reconnaissance - Fundamental: OWASP WSTG information gathering — https://owasp.org/www-project-web-security-testing-guide/latest/
osint-reporting
Referencias preferidas: - Fundamental: Bellingcat Online Investigation Toolkit — https://bellingcat.gitbook.io/toolkit - Fundamental: OWASP WSTG information gathering — https://owasp.org/www-project-web-security-testing-guide/latest/ - Fundamental: OSINT Framework — https://osintframework.com/
Reglas de uso del registry
- elegí el set más chico de referencias fuertes para la nota exacta
- preferí metodología y docs oficiales de tools por encima de listicles genéricos
- evitá convertir notas en catálogos de herramientas; listá workflows y decisiones de evidencia
- incluí referencias de ética/seguridad cuando haya personas, cuentas o datos personales sensibles involucrados