{"id":103042,"date":"2017-03-09T14:10:57","date_gmt":"2017-03-09T19:10:57","guid":{"rendered":"http:\/\/countingpips.com\/?p=103042"},"modified":"2017-10-07T13:44:21","modified_gmt":"2017-10-07T17:44:21","slug":"interview-with-justin-seitz-author-creator-of-hunchly-online-investigation-tool","status":"publish","type":"post","link":"https:\/\/www.investmacro.com\/forex\/2017\/03\/interview-with-justin-seitz-author-creator-of-hunchly-online-investigation-tool\/","title":{"rendered":"Interview with Justin Seitz: Author &#038; Creator of Hunchly Online Investigation Tool"},"content":{"rendered":"<div id=\"inves-147522923\" class=\"inves-below-title-posts inves-entity-placement\"><div id =\"posts_date_custom\"><div align=\"left\">March 9, 2017<\/div><hr style=\"border: none; border-bottom: 3px solid black;\">\r\n<\/div><\/div><p><strong>By Zac Storella, CountingPips.com<\/strong><\/p>\n<h3><em><strong>An interview with a security specialist that created a tool to help with online security research, it can help with online investment research as well<\/strong><\/em><\/h3>\n<p><a href=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/hacker_PD_big.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-103124\" src=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/hacker_PD_big.png\" alt=\"\" width=\"550\" height=\"385\" \/><\/a><\/p>\n<p>Today I am very pleased to bring you my latest\u00a0interview with Justin Seitz, an online investigator, author, blogger and the creator of <a href=\"http:\/\/Hunch.ly\" target=\"_blank\" rel=\"noopener\">Hunch.ly<\/a>, a software tool for online investigators. Justin is the author of the programming books (<strong>Gray Hat Python<\/strong> and <strong>Black Hat Python<\/strong>),\u00a0has\u00a0been written up on\u00a0<a href=\"https:\/\/motherboard.vice.com\/en_us\/article\/this-tool-turns-your-online-investigations-into-a-searchable-case-file\" target=\"_blank\" rel=\"noopener\">Motherboard<\/a> (Vice) and contributes to the very popular investigation website <a href=\"https:\/\/www.bellingcat.com\/author\/justin-seitz\/\" target=\"_blank\" rel=\"noopener\">bellingcat.com<\/a>\u00a0as well at his own intelligence training site\u00a0<a href=\"http:\/\/www.automatingosint.com\/blog\/\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?hl=en&amp;q=http:\/\/automatingosint.com&amp;source=gmail&amp;ust=1489008513816000&amp;usg=AFQjCNF2UdzaAkIl96PnGJNZTHbs5pFl4A\">automatingosint.com<\/a>.<\/p>\n<p>I\u00a0 got to converse with Justin a little bit after discovering\u00a0his Hunch.ly program when I was looking for software that would help me organize\u00a0and contain my investment research ideas in one place instead of many, many hard to organize\u00a0places. Hunch.ly has proven to be\u00a0an enormous help in this regard and I would absolutely recommend finance professionals or other researchers to take a look at this software if they are in the same boat as me and trying to find a new way to catalog their ideas (and no, I am not getting paid to say this!).<\/p>\n<p>I hope you enjoy the interview below with my questions in bold. In the interview,\u00a0<strong>OSINT<\/strong>\u00a0refers to\u00a0open source intelligence.<\/p>\n<p><span class=\"im\"><strong>Q:\u00a0Can you give us a brief history of your background and what drove you to being an investigator?<\/strong><\/span><\/p>\n<p><a href=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/justin_seitz.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-103122 alignleft\" src=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/justin_seitz.png\" alt=\"\" width=\"216\" height=\"219\" \/><\/a>I spent about a decade in the computer security field doing offensive work. This means we were a group of people who were focused on breaking into things, and not defending them. A big part of our penetration tests were performing reconnaissance against a target which had a significant OSINT component. As part of that, I began to get more and more interested in looking at how I could apply OSINT in a more general sense and not just in the context of a penetration test.<br \/>\n<span class=\"im\"><br \/>\n<\/span><\/p><div id=\"inves-3544095533\" class=\"inves-in-content inves-entity-placement\"><hr style=\"border: 1px solid #ddd;\">\r\n<div id=\"inpost_ads_header\">\r\n<p style=\"font-size:10px; float:left; color:#666;\">Free Reports:<\/p><\/div>\r\n<div id=\"inpost_ads\"> \r\n<p style=\"font-size:15px; float:left;\"><a href=\"https:\/\/goo.gl\/1ApBOV\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/investmacro.com\/wp-content\/uploads\/2018\/06\/graph_techs_PD.png\" align=\"left\" width=\"80\"  height=\"55\"\/><\/a>\r\n\t     <a href=\"https:\/\/goo.gl\/1ApBOV\"><b><u>Get Our Free Metatrader 4 Indicators<\/u><\/b><\/a> - Put Our Free MetaTrader 4 Custom Indicators on your charts when you join our Weekly Newsletter<\/p><br><br>\r\n<br>\r\n<br>\r\n<p style=\"font-size:15px; float:left;\"><a href=\"https:\/\/goo.gl\/f3RrHX\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/investmacro.com\/wp-content\/uploads\/2019\/01\/cot_pie_80.png\" align=\"left\" width=\"80\"  height=\"55\"\/><\/a>\r\n\t    <a href=\"https:\/\/goo.gl\/f3RrHX\"><b><u>Get our Weekly Commitment of Traders Reports<\/u><\/b><\/a> - See where the biggest traders (Hedge Funds and Commercial Hedgers) are positioned in the futures markets on a weekly basis.<\/p><br><br>\r\n<\/div>\r\n<hr style=\"border: 1px solid #ddd;\">\r\n<br><\/div>\n<p><span class=\"im\"><strong>Q:\u00a0Did you have any specific success stories or investigations\u00a0that gave you an &#8220;ah-ha&#8221; moment, that maybe gave you the confidence in your skills and piqued your interest to keep going further?<\/strong><\/span><\/p>\n<p>There actually isn&#8217;t any one particular case that sticks out. I know that in my penetration tests there have been times where you find some really amazing pieces of information that you know you are going to be able to leverage for a successful attack. I often find with investigations that you can either find smoking guns, or very little. It&#8217;s pretty rare to get lukewarm leads in between. The cases with little information found, those are the ones that keep you up at night.<\/p>\n<p><strong>Q:\u00a0Can you tell us what <a href=\"http:\/\/Hunch.ly\" target=\"_blank\" rel=\"noopener\">Hunch.ly<\/a> is and what spurred you on to create this tool?<\/strong><\/p>\n<p>Hunchly was actually a tool that I had developed only for my own purposes. I had a big interest in counterterrorism research, and part of that was just me poking around and looking at various groups, social media profiles, forums, <a href=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/book.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-103047 alignleft\" src=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/book.png\" alt=\"\" width=\"234\" height=\"375\" \/><\/a>etc. At one point there was an event that occurred and, in my travels, I remembered seeing the folks involved with that event. When I went to go back and look at their social media profiles, the profiles were gone.<\/p>\n<p>At this point I realized that I hadn&#8217;t taken any screenshots or done any data capture. A huge fail. So I vowed to never make that mistake again and decided to build a tool that would automatically take full content snapshots of every page that I viewed. \u00a0Eventually I started using this tool during my consulting gigs, and people would often ask why I always seemed to know when to take a screenshot or capture information. I had to confess that I had this little tool I had built and that it did it for me.<\/p>\n<p>From there, Hunchly was born.<\/p>\n<p><strong>Q:\u00a0Who do you feel are the ideal candidates to use Hunch.ly?<\/strong><\/p>\n<p>There are a number of good candidates for Hunchly users. Although it is a tool built for investigators there are all kinds of people using it. I have travel bloggers, financial analysts, due diligence researchers, forensics practitioners, law enforcement, journalists, and even system administrators who use it to assemble their research when they are solving technical problems.<\/p>\n<p><strong>Q:\u00a0You have written two highly regarded books, Black Hat Python and Grey Hat Python, can you explain who the audience for those books is and what kind of skills one would expect to acquire reading those?<\/strong><\/p>\n<p>For both books they are written for hackers, reverse engineers, and pentesters. They do have a bit of a higher bar in terms of having some technical proficiency and some coding skills required to get through them.<\/p>\n<p><a href=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/books-1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-103128\" src=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/books-1.png\" alt=\"\" width=\"552\" height=\"336\" \/><\/a><a href=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/books.png\"><br \/>\n<\/a><br \/>\n<span class=\"im\"><strong>Q:\u00a0What do you feel are the most important skills one needs to become a good investigator?<\/strong><\/span><\/p>\n<p>Just being tenacious. Often the best investigators don&#8217;t always have the best tech or the newest tricks but they just keep chasing leads, keep reviewing evidence, and repeating this cycle until they find what they are looking for or exhaust all the possibilities.<\/p>\n<p>The more tenacious you are, the better your investigations will be.<\/p>\n<p><strong>Q:\u00a0With so many hacks and security issues in the news of recent years with more surely to follow, it would seem logical that the intelligence industry would be experiencing explosive growth. Do you see this as the case? What Trends do you see happening currently in security?<\/strong><\/p>\n<p>I think that the intelligence industry has been growing pretty steadily for the last 20 years or more and will continue to do so. There is more information, more people, and more online platforms popping up each year. I always hesitate to talk about trends or future events in security because sadly we only need to look backwards one calendar year to see the same things happening in our current times. Although IOT has been a hot topic in 2016-2017, it is really just a dead horse that was beaten a long time ago. Folks just didn&#8217;t listen.<\/p>\n<p><strong>Q:\u00a0In one of your posts, you use the python library sci-kitlearn (a machine learning library) for an investigation, is machine learning becoming a big part of the security field?<\/strong><\/p>\n<p>I think that as the really smart people doing the ML stuff begin to make it more accessible to those of us who don&#8217;t have a math background, we are going to see more and more tools that use it. I think we also need to continually remind ourselves that humans will always be the best analysts.<\/p>\n<p><a href=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/huncly_logo.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-103046\" src=\"http:\/\/countingpips.com\/articles-analysis\/wp-content\/uploads\/2017\/03\/huncly_logo.png\" alt=\"\" width=\"444\" height=\"94\" \/><\/a><\/p>\n<p><strong>Q:\u00a0Can you tell us what tools or resources, in addition to hunch.ly, you use to further your research and investigations?<\/strong><\/p>\n<p>It really depends from investigation to investigation. A few of my regular go to sites are IntelTechniques.com for the forum, EchoSec.net for geographic profiling and hands down DomainTools.com for doing any investigations related to websites or domains. Also everyone should bookmark <a href=\"http:\/\/osintframework.com\/\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?hl=en&amp;q=http:\/\/osintframework.com&amp;source=gmail&amp;ust=1489008513816000&amp;usg=AFQjCNHy6ZND455KJlbzP7AvcIz84pWeEg\">osintframework.com<\/a> as it is full of resources.<\/p>\n<p><strong>Q:\u00a0With <a href=\"http:\/\/automatingosint.com\/\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?hl=en&amp;q=http:\/\/automatingosint.com&amp;source=gmail&amp;ust=1489008513816000&amp;usg=AFQjCNF2UdzaAkIl96PnGJNZTHbs5pFl4A\">automatingosint.com<\/a> and <a href=\"http:\/\/hunch.ly\/\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?hl=en&amp;q=http:\/\/hunch.ly&amp;source=gmail&amp;ust=1489008513816000&amp;usg=AFQjCNEnnyIEuEwUMXCcxNenOqPNQQxRFQ\">hunch.ly<\/a> being such great resources on security and investigations, are there any other online security\/investgation websites out there that you would recommend for our readers?<\/strong><\/p>\n<p>I know I am missing a bunch of others, but <a href=\"http:\/\/Bellingcat.com\" target=\"_blank\" rel=\"noopener\">Bellingcat.com<\/a> is a fantastic place to see open source investigations take place by real pros.<\/p>\n<p><strong>Q:\u00a0For our interested readers, what would you suggest as the best way to follow along with what you are doing?\u00a0<\/strong><\/p>\n<p>Twitter: <a href=\"https:\/\/twitter.com\/jms_dot_py\" target=\"_blank\" rel=\"noopener\">@jms_dot_py<\/a><br \/>\nEmail: <a href=\"mailto:justin@hunch.ly\" target=\"_blank\" rel=\"noopener\">justin@hunch.ly<\/a><\/p>\n<p>Hunchly: <a href=\"https:\/\/www.hunch.ly\/\" target=\"_blank\" rel=\"noopener noreferrer\" data-saferedirecturl=\"https:\/\/www.google.com\/url?hl=en&amp;q=https:\/\/www.hunch.ly&amp;source=gmail&amp;ust=1489008513816000&amp;usg=AFQjCNFzDXYnBPvJnOUI__9lKmFnwWuBNA\">https:\/\/www.hunch.ly<\/a>\u00a0(use discount code\u00a0<strong>countingpips<\/strong> for 10% off)<br \/>\nOSINT Training: <a href=\"https:\/\/register.automatingosint.com\/\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?hl=en&amp;q=https:\/\/register.automatingosint.com&amp;source=gmail&amp;ust=1489008513816000&amp;usg=AFQjCNEJ6hxvSuhGNFGfsrZpxFcpfYZ8kw\">https:\/\/register.<wbr \/>automatingosint.com<\/a><\/p>\n<p><strong>Thank\u00a0you Justin for taking the time to share your story and insight with us. \u00a0<\/strong><\/p>\n<p><strong>To read more from Justin and his investigations here are a few very interesting articles:<\/strong><\/p>\n<ul>\n<li><a href=\"http:\/\/www.automatingosint.com\/blog\/2015\/05\/osint-python-analyze-bin-ladins-bookshelf\/\" target=\"_blank\" rel=\"noopener\">Analyzing bin laden&#8217;s bookshelf<\/a><\/li>\n<li><a href=\"https:\/\/www.bellingcat.com\/resources\/2016\/06\/02\/bait-and-switch-the-failure-of-facebook-advertising-an-osint-investigation\/\" target=\"_blank\" rel=\"noopener\">Bait and Switch: The Failure of Facebook Advertising<\/a><\/li>\n<li><a href=\"http:\/\/www.automatingosint.com\/blog\/2016\/01\/osint-automatically-finding-weapons-in-social-media-images-part-1\/\" target=\"_blank\" rel=\"noopener\">Automatically Finding Weapons in Social Media Images<\/a><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>By Zac Storella, CountingPips.com An interview with a security specialist that created a tool to help with online security research, it can help with online investment research as well Today I am very pleased to bring you my latest\u00a0interview with Justin Seitz, an online investigator, author, blogger and the creator of Hunch.ly, a software tool [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-103042","post","type-post","status-publish","format-standard","hentry","no-post-thumbnail"],"_links":{"self":[{"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/posts\/103042","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/comments?post=103042"}],"version-history":[{"count":5,"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/posts\/103042\/revisions"}],"predecessor-version":[{"id":114357,"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/posts\/103042\/revisions\/114357"}],"wp:attachment":[{"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/media?parent=103042"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/categories?post=103042"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.investmacro.com\/forex\/wp-json\/wp\/v2\/tags?post=103042"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}