1 00:00:00,110 --> 00:00:04,730 Twitter is the next leaked database that I would like to show you. 2 00:00:04,760 --> 00:00:13,790 It contains over 200 million Twitter profiles, and these profiles were scraped by attackers by misusing 3 00:00:13,820 --> 00:00:18,800 a Twitter API to match email addresses with Twitter profiles. 4 00:00:19,220 --> 00:00:26,210 So there is high probability that you'll be able to find someone's username in this leaked database. 5 00:00:26,600 --> 00:00:33,590 The information that have been leaked are email addresses, names, social media profiles, and usernames. 6 00:00:34,160 --> 00:00:39,170 So if you were able to find someone's username in this leaked database, this means that you will be 7 00:00:39,200 --> 00:00:43,460 able to find their email address and by having their email address. 8 00:00:43,460 --> 00:00:50,810 This means that you have their unique identifier because this email address belongs only to this person. 9 00:00:50,840 --> 00:00:57,350 And in the next section, you will learn some methods and tactics to find more information about an 10 00:00:57,350 --> 00:00:58,400 email address. 11 00:00:58,820 --> 00:01:02,570 All right so let's download Twitter leak database. 12 00:01:02,570 --> 00:01:02,590 Is. 13 00:01:02,620 --> 00:01:09,340 My favorite method is by going to Google and then searching for this data leak by typing Twitter. 14 00:01:09,340 --> 00:01:15,430 And then since I know that 200 million profiles were leaked, I'm going to say 200 million like this 15 00:01:15,430 --> 00:01:17,200 into two quotation marks. 16 00:01:17,200 --> 00:01:24,130 And then I'm going to add another search term, which is magnet, and then colon, and then question 17 00:01:24,130 --> 00:01:26,140 mark and then a quote. 18 00:01:26,740 --> 00:01:31,450 This will show me this search term Twitter 200 million and magnet. 19 00:01:31,450 --> 00:01:37,360 And we already know that magnet is a linked format that is used to download through torrent. 20 00:01:37,540 --> 00:01:39,640 So I'm going to hit enter. 21 00:01:39,910 --> 00:01:43,450 And as you can see we have got three search results. 22 00:01:43,600 --> 00:01:50,290 You can open any search results and dig in because every situation is going to be different because 23 00:01:50,290 --> 00:01:53,380 these websites might get shut down in the future. 24 00:01:53,380 --> 00:01:59,650 So it's always good to search within all search results to find if there is any link to download this 25 00:01:59,650 --> 00:02:00,550 database. 26 00:02:00,820 --> 00:02:08,370 Now, in my case, I have opened the first search result And I have got a magnet link, so I'm going 27 00:02:08,370 --> 00:02:09,510 to copy it. 28 00:02:10,170 --> 00:02:17,160 If we scroll up, we can see that somebody has posted this link claiming that this is the database. 29 00:02:17,310 --> 00:02:18,960 So I've copied the link. 30 00:02:18,990 --> 00:02:20,100 The torrent link. 31 00:02:20,130 --> 00:02:23,910 Then I'm going to open my torrent client which is Utorrent. 32 00:02:24,420 --> 00:02:31,980 And then I'm going to go to torrent and I'm going to say add torrent and then add the link in here. 33 00:02:32,040 --> 00:02:34,260 And then I can click on Add Torrent. 34 00:02:34,290 --> 00:02:36,150 In my case I've already added. 35 00:02:36,150 --> 00:02:43,080 But what I have realized is that it starts downloading and then once it reaches one gigabyte, it's 36 00:02:43,080 --> 00:02:44,670 going to stop downloading. 37 00:02:44,700 --> 00:02:50,910 I don't know why, but this is a lesson for you just to know that some links might not work all the 38 00:02:50,910 --> 00:02:51,630 time. 39 00:02:52,080 --> 00:02:59,130 So what I'm going to do is just to go to this website that I've opened, and then I'm going to search 40 00:02:59,130 --> 00:03:05,070 for Twitter 200 million, because I might be able to find another link. 41 00:03:06,530 --> 00:03:10,820 And we can see here that there is a link or a search result. 42 00:03:10,820 --> 00:03:16,400 I'm going to click on it, and then I'm going to scroll up and go to the first page. 43 00:03:18,230 --> 00:03:23,600 And here we can see that there is someone who posted this data link. 44 00:03:23,600 --> 00:03:27,620 And it seems to be that this one is a client link database. 45 00:03:27,620 --> 00:03:33,440 And if we scroll down, we can see that if we want to view this content, we need to create an account. 46 00:03:33,440 --> 00:03:35,780 So let me go and register. 47 00:03:35,900 --> 00:03:40,280 Now of course you are not going to use your real email address or username. 48 00:03:40,280 --> 00:03:42,650 So I'm going to type anything. 49 00:03:42,860 --> 00:03:47,420 And then I'm going to type any email address to see if this works. 50 00:03:48,260 --> 00:03:54,980 And then I'm going to type a certain password then say agree and then register. 51 00:03:56,150 --> 00:03:59,570 And you can see that now my registration is complete. 52 00:03:59,570 --> 00:04:02,990 And it didn't send me any link to activate my account. 53 00:04:02,990 --> 00:04:07,550 So I'm going to the page again or to the post again. 54 00:04:07,550 --> 00:04:08,640 Here it is. 55 00:04:09,630 --> 00:04:16,410 Let me go to the first page again, and you can see here that I need to click on like before viewing 56 00:04:16,410 --> 00:04:17,520 the hidden data. 57 00:04:17,730 --> 00:04:20,970 So I'm going to scroll down and here is the like button. 58 00:04:21,330 --> 00:04:24,540 I've liked it and I'm going to say download. 59 00:04:24,900 --> 00:04:25,860 So here is the file. 60 00:04:25,860 --> 00:04:28,170 It's called Twitter full BF. 61 00:04:28,200 --> 00:04:31,800 I'm going to say download or I think it's written in Russian. 62 00:04:31,800 --> 00:04:33,840 So I'm going to click on this icon. 63 00:04:33,840 --> 00:04:36,690 And now it's going to start downloading. 64 00:04:36,720 --> 00:04:40,950 Now as you can see the database is 12.3GB. 65 00:04:40,950 --> 00:04:45,210 And once you extract it it's going to be 60GB. 66 00:04:45,360 --> 00:04:48,330 So I've already downloaded this linked database. 67 00:04:48,330 --> 00:04:50,610 So I'm going to cancel the download. 68 00:04:51,450 --> 00:04:56,760 So here is the leaked database I'm going to right click on it and then say extract all. 69 00:04:56,760 --> 00:05:00,150 Once you click on Extract all you will get this folder. 70 00:05:00,240 --> 00:05:05,010 So I'm going to go to it and then go again to data. 71 00:05:05,010 --> 00:05:08,190 And we can see that we have seven txt files. 72 00:05:08,220 --> 00:05:12,860 In my case I don't need to open each file and search for Rishi Kabra username. 73 00:05:12,860 --> 00:05:19,910 Instead, I can right mouse click and then go to show more options and then open agent transaction. 74 00:05:19,940 --> 00:05:23,480 That will allow me to search within all of these files. 75 00:05:23,510 --> 00:05:29,750 Now to save some time, I have already searched for Rishi Kabra username and I wasn't able to find it 76 00:05:29,750 --> 00:05:31,610 in this league database. 77 00:05:31,610 --> 00:05:35,570 But that's fine because this is something that's going to happen to you. 78 00:05:35,600 --> 00:05:36,680 It's very normal. 79 00:05:36,680 --> 00:05:43,550 You might search in multiple league databases and not find anything, but you always need to stay consistent 80 00:05:43,550 --> 00:05:49,400 and use the information that you have to find more information, which is what you are learning in this 81 00:05:49,400 --> 00:05:50,210 course. 82 00:05:50,270 --> 00:05:58,400 So to show you a real life example, I'm going to copy Zaid username on Twitter, and then I'm going 83 00:05:58,400 --> 00:06:01,580 to search for it within this league database. 84 00:06:01,580 --> 00:06:07,790 So I'm going to put the username and then turn off this option to turn match case off because we don't 85 00:06:07,790 --> 00:06:08,600 need this. 86 00:06:08,630 --> 00:06:11,390 And then I'm going to click on start. 87 00:06:11,420 --> 00:06:18,790 Now as I said before, the program is going to start searching within multiple TXT files that are over 88 00:06:18,790 --> 00:06:21,820 60GB, so this could take some time. 89 00:06:22,330 --> 00:06:24,760 Now as you can see, we have got a match. 90 00:06:24,760 --> 00:06:26,320 I'm going to pose it. 91 00:06:26,410 --> 00:06:29,020 We can see that in this file. 92 00:06:29,050 --> 00:06:30,040 Hit seven. 93 00:06:30,070 --> 00:06:35,410 We have got an email address and a username which does not belong to Zaitzevi. 94 00:06:35,740 --> 00:06:38,620 So I'm going to go to the next file. 95 00:06:39,280 --> 00:06:47,950 And here we are going to see that username and his email address that he used to register on Twitter. 96 00:06:48,400 --> 00:06:50,860 So now we have his email address. 97 00:06:50,860 --> 00:06:57,460 And by possessing the email address, we can perform more Osint methods to find more information about 98 00:06:57,460 --> 00:06:58,390 this person. 99 00:06:59,740 --> 00:07:07,180 So in this lecture, you have learned how to download Twitter Leak database that contains over 200 million 100 00:07:07,180 --> 00:07:13,990 Twitter profiles and how you can search within this leak database to find email addresses.