Do you enjoy the reconnaissance part of a penetration testing? Want to discover issues on your network, assets or applications proactively? Would you like to learn some new OSINT based recon tools and techniques? Follow the rabbit hole and find exploitable critical vulnerabilities in the Panama Papers law firm and politics both American and international including Trump and the DNC. Analyse network and email configurations for entry points and exploits with FOCA, Maltego, Nmap/ZenMap, and Spiderfoot. Learn how to use advanced searches, alternative search engines that don't respect robots.txt., intel tools, and leak databases. Open source intelligence gathering (OSINT) and web-based reconnaissance is an important part of penetration testing and proactive defense. The more connected we are, the more information is held about everything. Yummy, juicy information for both a penetration tester or a malicious actor. Learning what sources of are available to start your search is an important first step in learning about reconnaissance and how the information could be utilized or resold. Both issues you or your client need to know. All of the tools and techniques in this book can be ninjafied with Python, Ruby or PowerShell.Initially, this book began as a presentation at the Cyber Senate Industrial Control Cybersecurity Nuclear Summit in Warrington, UK 2016. Originally, I intended to use some of the same techniques to target a nuclear power plant or someone in a nuclear regulatory capacity. After submitting my original talk idea. Daesh, otherwise known as ISIS, began publicly threatening the European nuclear industry. Due to the threats, we decided it wasn't in anyone’s best interest to give a how to target nuclear installations and changed the target instead to the law firm behind the Panama Papers fiasco. The project expanded to include additional targets with mostly a political slant. 2016 was a very tumultuous year in politics. Brexit, Trump, and the rise of the interesting politics and coups in Turkey, Netherlands, Germany, Russia, Bulgaria and the Philippines. It’s a lot more fun to learn about a topic in an empowering way. Also, only politicians like politicians. They make a fun target.Learning a new technique is easier when it’s fun. I chose targets and case studies which gave me a happy hacker smile.
"synopsis" may belong to another edition of this title.
Chris Kubecka, founder and CEO of HypaSec, is a decorated U.S. Air Force aviator and Space Command veteran whose path into technology began early. At the age of ten she hacked the U.S. Department of Justice and the FBI, a preview of the advanced technical instincts that would define her career.
She helped restore global business operations at Saudi Aramco after one of the largest cyberattacks in history, working with an exceptional team under immense pressure. She has since advised governments, militaries, and international institutions on cyber defence, artificial intelligence, drone warfare, offensive technology, and the protection of critical infrastructure.
When Russia invaded Ukraine, Chris helped organize an OSINT-driven evacuation effort. After fleeing Kyiv herself, she aided the rescue of a prominent basketball player targeted for ransom and then coordinated the safe passage of thousands of foreign students in occupied areas. She and her team guided caravans, tracked routes, managed humanitarian shipments, leveraged diplomatic back channels, and distributed intelligence in real time.
Her investigative work includes exposing vulnerabilities in Boeing's 737 MAX systems through responsible disclosure and later serving as a whistleblower when the company retaliated. She has served as Distinguished Chair in Cybersecurity and Emerging Technologies at the Middle East Institute and was recruited for the U.S. Defense Science Board as a subject-matter expert on generative AI and cyberwarfare, a role placed on hold by executive order in 2025.
Chris has been recognized with high military decorations, the Order of Thor, and other professional honours. Her research on post-quantum cryptography ranked in the top two percent of global publications on ResearchGate in 2024. Today she continues to publish under the name SecEvangelism, delivering unfiltered analysis, technical breakdowns, and sharp commentary across IG, X, Substack, Medium, BlueSky, and Rumble.
"I didn't know there were so many OSINT tools out there now." - Cigar loving expert on Twitter
"I didn't know they still printed books." - Random person
"This is the greatest book you will ever read." - My husband when he wants something...
Do you enjoy the reconnaissance part of a penetration testing? Want to discover issues on your network, assets or applications proactively? Would you like to learn some new OSINT based recon tools and techniques? Follow the rabbit hole and find exploitable critical vulnerabilities in the Panama Papers law firm and politics both American and international including Trump and the DNC.
Analyse network and email configurations for entry points and exploits with FOCA, Maltego, Nmap/ZenMap, and Spiderfoot. Learn how to use advanced searches, alternative search engines that don't respect robots.txt, intel tools, and leak databases.
Down the Rabbit Hole: An OSINT Journey takes the reader deep into the world of open source intelligence and digital reconnaissance. The book shows how much information is exposed online, often by accident, and how that data can be collected, analyzed, and weaponized.
This book began as a presentation at the Cyber Senate Industrial Control Cybersecurity Nuclear Summit in Warrington, United Kingdom. The original plan was to use examples that targeted nuclear power facilities, but after public threats from ISIS it became clear that demonstrating those methods could do more harm than good. The target shifted to Mossack Fonseca, the law firm at the center of the Panama Papers. What followed was an extraordinary dive into digital negligence and political scandal.
The investigation revealed that Mossack Fonseca's systems were riddled with vulnerabilities. Their servers leaked sensitive data onto the public internet. Their email configurations exposed weaknesses anyone could exploit. Their web applications showed flaws that should have been caught by even basic testing. The research did not involve breaking into systems or using illegal tools. It was all visible with a browser, search engines, and standard reconnaissance techniques.
The results were explosive. The findings were published, debated, and referenced around the world. They later appeared as Exhibit 1-1 in a U.S. federal court case, Doe v. Germany, concerning stolen data and state secrets. The project demonstrated how open source intelligence can influence politics, law, and global accountability.
Inside this book you will find detailed explanations and practical exercises that teach you how to:
* Use FOCA, Maltego, Nmap and ZenMap, Spiderfoot, and other tools to map networks and locate exposed assets
* Conduct advanced searches and use alternative search engines that ignore robots.txt restrictions
* Explore leak databases and repositories of exposed information
* Analyze network and email configurations for exploitable weaknesses
* Track vulnerabilities in IT, IoT, and industrial control systems including SCADA networks
* Understand how reconnaissance forms the foundation for penetration testing and proactive defense
The book covers political case studies including the Trump campaign, the Democratic National Committee, and multiple governments caught with glaring weaknesses. It examines how OSINT can uncover poor encryption practices, insecure smart appliances, and failures in critical infrastructure. It also shows how intelligence can be "ninjafied" with scripting languages such as Python, Ruby, and PowerShell.
Down the Rabbit Hole is written to be both instructional and entertaining. The tone reflects the reality that learning new techniques is easier when the examples are engaging. Politicians, institutions, and corporations all make effective case studies because their mistakes are often both serious and absurd. The book uses these examples to show how reconnaissance can reveal truths that are otherwise hidden.
Readers will come away with not only a toolkit of OSINT methods but also a clear sense of how exposed our digital world has become. The more connected we are, the more information is available to anyone who knows how to look. This book makes that information accessible, teaching how it can be used for investigation, defense, or in the wrong hands for exploitation.
Down the Rabbit Hole: An OSINT Journey is not a theoretical exercise. It is a record of real investigations, real vulnerabilities, and real consequences. It is a guide for penetration testers, journalists, investigators, and anyone interested in understanding how the digital landscape exposes the secrets of governments, corporations, and individuals.
"About this title" may belong to another edition of this title.
Seller: World of Books (was SecondSale), Montgomery, IL, U.S.A.
Condition: Good. Item in good condition. Textbooks may not include supplemental items i.e. CDs, access codes etc. Seller Inventory # 00107704316
Seller: GreatBookPrices, Columbia, MD, U.S.A.
Condition: New. Seller Inventory # 29829015-n
Seller: BargainBookStores, Grand Rapids, MI, U.S.A.
Paperback or Softback. Condition: New. Down the Rabbit Hole an Osint Journey: Open Source Intelligence Gathering for Penetration Testing. Book. Seller Inventory # BBS-9780995687547
Seller: GreatBookPrices, Columbia, MD, U.S.A.
Condition: As New. Unread book in perfect condition. Seller Inventory # 29829015
Seller: California Books, Miami, FL, U.S.A.
Condition: New. Seller Inventory # I-9780995687547
Seller: GreatBookPricesUK, Woodford Green, United Kingdom
Condition: As New. Unread book in perfect condition. Seller Inventory # 29829015
Quantity: Over 20 available
Seller: GreatBookPricesUK, Woodford Green, United Kingdom
Condition: New. Seller Inventory # 29829015-n
Quantity: Over 20 available
Seller: THE SAINT BOOKSTORE, Southport, United Kingdom
Paperback / softback. Condition: New. This item is printed on demand. New copy - Usually dispatched within 5-9 working days. Seller Inventory # C9780995687547
Quantity: Over 20 available
Seller: moluna, Greven, Germany
Condition: New. Seller Inventory # 899124056
Quantity: Over 20 available
Seller: AHA-BUCH GmbH, Einbeck, Germany
Taschenbuch. Condition: Neu. Neuware. Seller Inventory # 9780995687547
Quantity: 2 available