I’ve been building PRISM - a self-hosted OSINT toolkit you run yourself instead of pasting investigation targets into someone else’s web service.

Give it a domain, IP, email, phone, or username and it runs 22+ modules in parallel into one dashboard: WHOIS, DNS, crt.sh subdomains, GeoIP, threat intel (Shodan/VirusTotal/AbuseIPDB/Censys), breach data, username search across 3000+ sites (Blackbird + Maigret), dark-web mirror checks, and more. Results come with an entity graph, a GeoIP map, an OPSEC exposure score (0–100), and HTML/PDF/CSV/Markdown exports.

14 of the 22 modules work with zero API keys (missing keys degrade gracefully instead of erroring).

Stack: FastAPI + Next.js 14, runs with one docker compose up. MIT licensed.

Demo: https://getprism.su/ Github: https://github.com/NovaCode37/Prism-platform

Built it solo - feedback welcome, especially on which modules you’d want added.

  • ArcaneSlime@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 months ago

    So I have an interest in self hosting things in the future (nextcloud, chatmail), but for now I’m scared of opening my network to attacks, and also I don’t have a network right now I just hotspot from my phone when needed and torrent things at my friend’s house.

    That said how would I go about using this? I’m guessing something to do with docker or porteus (maybe? The other one that wasn’t vulnerable to that recent thing), then when I want to check out X website I just “spin up the docker container” (still not 100% what that means but I’ve heard the verbiage), hotspot the pc (for now), and run it through the program? Am I understanding that right?

    Sorry I’m so green, gotta start somewhere! I feel like a grandma calling an Xbox a “Nintendo” haha.

    • irmadlad@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      3 months ago

      Sorry I’m so green, gotta start somewhere!

      We all started at green. No shame.

      So, yes OP is using Docker. Once you install Docker on your server, you ‘spin up’ the docker container using the Docker compose file:

      https://github.com/NovaCode37/Prism-platform/blob/main/docker-compose.yml

      …and the associated .env file that houses all your environmental variables:

      https://github.com/NovaCode37/Prism-platform/blob/main/.env.example

        • irmadlad@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          3 months ago

          Give it a go man. What’s the worst that can happen? …you have to drop back and do some studyin’. That’s pretty much how I learn. Read, Do, Fuck it up ad nauseam until it clicks, then I write that shit down.

            • FauxLiving@lemmy.world
              link
              fedilink
              English
              arrow-up
              1
              ·
              3 months ago

              Putting yourself into the position of trying to solve a practical problem is the best way to learn.

              If you fail completely, you can always restore your system and try again (you have a backup, right?)

              • ArcaneSlime@lemmy.dbzer0.com
                link
                fedilink
                English
                arrow-up
                2
                ·
                3 months ago

                Yes, but I’d still prefer not to have to spend the like ~2h reinstalling and replacing my files.

                That said this seems like a pretty low stakes trial which is why I’m looking at it first. Worst case a reboot (or recovery through live booting) should fix most issues, I think, if I understand correctly. I don’t plan to autostart the docker container so if it fucks my system up a reboot should put me back to normal if starting it breaks my sys right?

                I do have some old laptops and an unopened router waiting for me to figure out openWRT. I could install some linux OS (deb?) on one of those and use that for docker, get off my ass and install openWRT on the router, and then use that to connect both devices (and I’d have to figure out which to hotspot but that is easy), if that’d be significantly safer for my daily driver. Then I’d have to figure out how to point my browser to that too though.