IT Forensics · OSINT
Analysing email headers using OSINT – Conducting a forensic analysis of technical sender information
Email headers contain technical information about the route a message has taken, which can be supplemented with publicly available additional information to provide a comprehensive overview.
As part of investigations into existing phishing or fraud cases, we analyse the available email headers in a structured manner and supplement them with publicly available technical information.
Why LanCologne?
Since its foundation, LanCologne has specialised in professional IT forensics. Our staff have decades of experience in the field of information technology and assist companies, solicitors, private individuals and, on a regular basis, the courts in the technical investigation of complex digital matters.
Our OSINT investigations are always carried out as a complementary component to existing IT forensic, legal or internal corporate enquiries. Every step of the investigation and every piece of digital evidence found is documented and, where technically possible, archived to ensure traceability even if the original online content is subsequently altered or deleted.
Our services
We carry out a technical analysis of the email headers provided and conduct forensic investigations into publicly available supplementary information relating to the 1TP27 details contained therein.
Typical areas of application
This is how an email header analysis works
The complete email header is analysed technically; any IP addresses and 1TP27 details it contains are researched using Shodan and other publicly available sources, and the results are documented.
Why is the analysis of email headers relevant in a forensic context?
A technical analysis of the email’s route can provide important clues as to the actual origin of a suspicious email.
When combined with investigations into the attacker’s infrastructure, this can help to provide a more comprehensive picture of a phishing or fraud attempt.
Frequently Asked Questions
LanCologne – IT Forensics OSINT Cologne
Do you require a professional OSINT investigation into „analysing email headers using OSINT"? LanCologne can assist you with the transparent, documented analysis of publicly available digital sources to support your IT forensic, legal or internal corporate enquiries.
Related to this topic
- Analysing document metadata using OSINT – utilising hidden document information for forensic purposes
- Searching public code repositories using OSINT – Forensically tracing accidentally published source code
- Identifying exposed databases using OSINT – forensically tracing publicly accessible databases
- Identifying IoT devices using OSINT – Forensically tracing publicly accessible connected devices