Investigate — OSINT Investigation and Forensic Trail
Visual graph investigation (Maltego-style, straight from the browser) with transforms that run over the platform’s own OSINT data.
Overview
Each transform expands an entity (e-mail address, domain, IP, company registration number, person) into related sub-entities. The per-case workspace keeps isolation, a timeline and forensic export.
Capabilities
- Interactive graph with transforms (Maltego-style pivots)
- Fully wired into OODA search (same indices and engines)
- Isolated workspace per case (scoped to the organization)
- Auto-built timeline and versioned annotations
- Immutable export (chain of custody)
Use Cases
- Map an actor’s infrastructure (domain → IP → subdomains → e-mail addresses)
- Forensic investigations and complex fraud cases
- Structured threat hunting with cross-module pivots
- Enriching IOCs in a visual graph
Integrations
- OODA Search / Leaks / Threat Intel
- TheHive, MISP
- STIX 2.1, Autopsy, FTK
SLA & Guarantees
Isolation per case · WORM export