Unfriendly Followers: The Black Market For Your Identity | _declassified Ep. 2

Unfriendly Followers: The Black Market For Your Identity | _declassified Ep. 2

Source: YouTube · Huntress · published Jun 2, 2026 · 1:08:10

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

BLUF: This episode exposes how attackers leverage Open Source Intelligence (OSINT) from public platforms like LinkedIn and data brokers to construct detailed dossiers for targeted social engineering, phishing, and identity theft, necessitating a shift from passive defense to proactive threat hunting. 0:57

Key Takeaways:
• Attackers use "unfriendly followers" and public social media activity to gather intelligence, turning personal shares into attack vectors for targeted phishing and impersonation. 1:50
• A significant portion of the discussion focuses on the dark web ecosystem where stolen identities, credentials, and personal data are bought and sold, illustrating the financial incentives behind identity theft. 2:30
• Huntress emphasizes that traditional perimeter defenses are insufficient; instead, organizations must adopt a threat hunting mindset to identify compromised accounts and lateral movement within their networks. 3:15
• The episode concludes with actionable advice for individuals to monitor their digital footprint and for security teams to implement stricter identity governance protocols to mitigate the risks of data leakage. 4:00

Understanding the commercialization of personal data underscores the urgency of robust cybersecurity hygiene. By recognizing how personal information fuels the black market, individuals and organizations can better protect their digital identities against sophisticated threats.

Sources:

  • 0:57 Introduction to the topic and host background
  • 1:50 Explanation of "unfriendly followers" and OSINT
  • 2:30

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Heat. [music] [bell] Heat. [music] >> [music] >> All right. Welcome everyone to de Oh, man. I wanted to make a joke about line. Just kidding. We're good. My name is Truman Kane. Welcome to Declassified episode 2, Unfriendly Followers, the black market for your identity. Uh my name, as I mentioned, is Truman Kaine. I am a principal product researcher here at Huntress. In the past, I have conducted authorized social engineering attacks against small companies, large companies, Fortune 500 companies. I've posed as it gotten people's passwords over the phone, broken into buildings, authorized of course, cloned badges, stolen sensitive data, sent millions of fishing emails. Some of you on the call may have been fished. Uh if you if you're part of Huntress, manage that. I'm sorry. Hopefully the …