

Offensive OSINT
@elementalsouls
Safe
Operational arsenal for external red-team and bug-bounty reconnaissance. Concrete wordlists (28 Swagger paths, 13 GraphQL paths, 35 high-risk ports, 6 missing-header findings, 15 always-on HTTP checks, 5 SAML paths, cloud bucket permutations, JS guess-paths, vendor product fingerprints for Citrix/F5
APIauthenticationmachine-learning
4.5800
Updated May 20, 2026
OSINT Methodology
@elementalsouls
Safe
Comprehensive OSINT methodology for external red-team operations and authorized attack-surface assessments. Covers the 5-stage recon pipeline, asset-graph discipline, severity rubric, confidence upgrade workflows, time budgeting, identity-fabric mapping, breach×identity correlation, detectability ta
authenticationdata-engineering
4.4408
Updated May 20, 2026