Summary
In this chapter, we covered a number of open source intelligence (OSINT) topics, specifically focusing on the ICS space. We looked at Google-Fu and how we research our customer to discover industry details and possible users. To dig deeper, we turned to LinkedIn to see if any of the employees listed on it published sensitive information in relation to their employer and the technology being used.
Next, we looked at Shodan.io for technology that is sitting on publicly accessible networks and to see if this technology belongs to our customer. After that, we moved over to ExploitDB to see if there is any publicly provided code that exploits vulnerabilities on the technology that we discovered in the previous steps. Finally, we looked directly at the NVD to see which vulnerabilities exist on systems that we gathered. With this information collected and documented, we have a well-rounded understanding of our customers' industries, people, processes, and technologies. ...