All tags

HOME
Company News OSINT OSINT Case Study OSINT Events OSINT News OSINT Tools Product Updates SL Crimewall SL Professional for i2 SL Professional for Maltego Use Сases

SL Professional for Maltego Update #6

Over the years, SL Professional for Maltego has evolved into something we are truly proud of. However, we are relentlessly working to tweak it, add new features, and generally improve the overall functionality. To this end, February has proved itself to be a very productive month, with a host of great new transforms being added:

  • New TikTok search methods let you analyze music from videos;
  • An innovative Facebook transform can find hidden friends (surprise);
  • A Bitquery add-on has been introduced for analyzing cryptocurrency activities;
  • A totally new data source has been added: the popular game distributor Steam.

So, let’s take a closer look!

TikTok

We have introduced a new TikTok transform allowing users to extract and explore the music content of a given video. This means you can establish a range of interesting connections such as videos that share the same musical content as well as details of the music itself.

How it works: Let’s say our starting point or initial input data is the TikTok alias of a famous blogger. Our first step is to drag an alias entity onto the Maltego graph area and enter the title in question. Then, by running [TikTok] Get Profile, we can unpack the subject’s profile and view the connected posts.

Fig. 1.1. Results of the transform TikTok [Get Profile] showing all posts published by the subject, as well as entities for the extracted music and video

This means we can now isolate the music and explore it as a separate entity. We have added new transforms so that you can now run transforms from ‘the music ID’ of a post to determine a host of connected data such as track name, track artist, and other posts which share the same music.

Fig 1.2. Expanded results showing the new entity for the music ID

To view posts which share the same track we simply export the music ID entity into a new graph then run the transform [TikTok] Get Posts.

Fig 1.3. A new graph with a music ID as the source entity. The results show all connected post from running the transform [TikTok] Get Posts

Facebook

Hidden Friends

As you probably know, Facebook has a ‘hide friends’ feature which enables users to mask individuals from their friend list, so they cannot be viewed by other users.
This has been an issue for open-data extraction tools which have essentially been blind to these hidden connections. Until now. We have developed an innovative new transform, designed to get around this specific issue.

How it works: First we need to drag an appropriate entity onto the Maltego graph space, into which we copy and paste the link to the Facebook profile in question. From here we run the transform [Facebook] Get Entity to extract the profile.

Next, we just run the transform [Facebook] Get Hidden And Visible Friends, which will take a little longer than normal transforms (it's okay). After two minutes you should have received a deferred entity to which you then apply the transform [Facebook] Get Hidden And Visible Friends (Delayed). This will give you a subject’s entire friend list including those which are hidden.

Fig. 2.1. Result from running [Facebook] Get Hidden And Visible Friends. The hourglass symbol is the ‘deferred’ entity
Fig 2.2 Results from running [Facebook] Get Hidden And Visible Friends (Delayed) showing all friends including those which were hidden

BitQuery

By connecting our service to the Bitquery provider, we are now able to offer users a range of new transforms for exploring blockchain activities involving cryptocurrencies such as Bitcoin, Etherium, Elgorand, Binance and Cardano. With $150 billion in cryptocurrency circulation, these transforms are of crucial value to anyone investigating fraud, money laundering and illicit trade.

How it works: An example of how to approach a search is to first drag a cryptocurrency entity onto the Maltego graph space into which we then copy and paste the address in question. From the entity we can then run a range of cryptocurrency transforms.

Fig 3.1. The transform menu from the cryptocurrency entity

By running the top (and most popular) transform from the menu [Bitquery] Address Details, the system returns three results of different crypto wallets. By opening the properties tab connected to these wallets you will be able to view essential information such as the currency, account balance, and number of transactions.

Fig. 3.2. The results from running [Bitquery] Address Details showing three separate cryptocurrency wallets

This is just one possible type of search but you could easily run other transforms to extract other crucial data. For example, all money transfers, balances, ether final destination, ether initial source, and top receivers and senders.

Steam

Great news! We have brought a completely new data source to SL Professional for Maltego: the popular video game distribution service Steam. With the brand new transform [Steam] Get Profile a host of information can be extracted including friends, groups and favorite games, and more. Steam accounts are often useful in cases of fraud and money laundering.

How it works: To begin with, we need to drag a Steam ID from the entity palette to the graph space. Next, we enter the copied link, ID or Alias of the profile of interest from the Steam page and run the transform [Steam] Get Profile.

Fig. 4.1 The new Steam entity from running the transform Steam [Get Profile]

From this new entity we can now run a number of transforms to extract a variety of data including friends, groups and favorite games.

Fig 4.2. The Steam transform menu


That's all for February’s updates and we hope these new features are of real value in helping you achieve your investigative goals!

💡
If you need any product assistance or would like to leave feedback on SL PProfessional for Maltego we'd always be happy to hear from you. Contact us at support@sociallinks.io or book a product demonstration by filling a short form below.
Share this post

You might also like

You’ve successfully subscribed to OSINT Blog by Social Links | OSINT Investigations
Welcome back! You’ve successfully signed in.
Great! You’ve successfully signed up.
Success! Your email is updated.
Your link has expired
Success! Check your email for magic link to sign-in.