OSINT Fans is a security research website focused on open-source intelligence investigations, phishing, and cybercrime infrastructure analysis. The crawled content shows articles covering topics such as Gumtree and Australia Post credit card scams, an investigation into the BulletProftLink phishing service, and self-hosted VPN for OSINT. It is not a firewall, EDR, email gateway, or threat intelligence platform in the traditional sense; instead, it publishes investigation workflows, chains of evidence, and IOCs in blog format.
In terms of “protection type,” it mainly provides threat intelligence and OSINT research references, with particular strength in breaking down phishing pages, credential collection endpoints, domain registration clues, social accounts, and hosting infrastructure. The articles list large numbers of URLs, email addresses, domains, and communication accounts, which can be used for anti-phishing analysis or imported into other security systems as detection rules.
For deployment, OSINT Fans itself is consumed as a website/RSS content source. The articles mention tfvpn, a self-hosted VPN automation project for OSINT investigations, but there is no evidence that the site offers SaaS, an enterprise console, or hosted protection services. Compliance certifications, APIs, SIEM integrations, permission management, and alerting mechanisms are not disclosed.
The crawled text does not show OSINT Fans charging readers, nor does it mention subscription pricing. As a content-based site, it has a low barrier to use: readers can directly read articles and extract IOCs. However, enterprises that want continuous monitoring, automated alerts, ticket workflows, or threat intelligence operations will still need to combine it with tools such as MISP, SIEM, TIP, urlscan.io, VirusTotal, and Censys for practical implementation.
Its strengths are detailed case studies and relatively complete investigation chains, covering practical elements such as phishing pages, brand impersonation, Google Cloud Storage hosting, Cloudflare-hidden origins, passive DNS, and social media correlations. This gives it methodological value for security researchers. The drawbacks are also clear: it is not a productized protection service and lacks SLA, team support, compliance certifications, and automation capabilities. Based on the crawled content, the update frequency appears limited, with the latest article from 2022.
It is suitable for OSINT investigators, anti-phishing teams, threat intelligence analysts, and security research learners, but not as an enterprise’s sole security protection system. The text does not provide information on access from China, and payment details are not disclosed. If access or data sources are restricted, alternatives or complementary tools such as MISP, Maltego, SpiderFoot, VirusTotal, urlscan.io, Censys, and Maltiverse may be considered.
⚠ This review is compiled from public sources and does not constitute a purchase recommendation. Verify all facts on the vendor's official site. Verify on osint.fans official site.
osint.fans is an Unknown Cybersecurity provider. TG4G tracks its product information, an overall rating of 5.0/10, and a China-accessibility score of Workable. Click "Visit Official Site" to reach osint.fans directly.