Maltego

Maltego is a unique platform developed to deliver a clear threat picture to the environment that an organization owns and operates. Maltego’s unique advantage is to demonstrate the complexity and severity of single points of failure as well as trust relationships that exist currently within the scope of your infrastructure. Download Maltego Community Edition 3.1.1.2621 from our website for free. This free program is an intellectual property of Paterva. The software lies within Development Tools, more precisely Database Tools. The most popular versions of the Maltego Community Edition 3.1 and 3.0. Maltego Community Edition is developed for Windows XP/Vista/7/8/10. Maltego (and its little brother CaseFile) is a powerful investigative tool and especially in the OSINT context. Maltego makes use of transforms to discover and search for information, but.

You have been redirected from paterva.com. Maltego.com is the new home for all information regarding Maltego products. Read more about this in a message from the Paterva team and in this blog post and FAQ. close

Your browser doesn't support JavaScript.
Certain features requires JavaScript to be enabled.

Your OSINT and graphical link analysis tool.

Join us on August 26 to learn how to use Maltego to research malware and explore IOCs that would lead to potential risk.

Download the list of top 13 threat intelligence providers now and read the detailed comparisons to select the most suitable option for your SOC team.

Download our Google Dorks cheat sheet to get the full list of useful Google search operators and learn how they make OSINT and person-of-interest investigations easier.

The NIST National Vulnerability Database is now queryable in Maltego! With the free Transforms, you can explore all CVE, CPE, and CWE cataloged by NIST to assess threat exposure.

Join us on August 26 and deep dive into our research of live malware in the wild, exploring IOCs that would lead to potential risk.

Meet the Maltego team in Siegburg, Germany and join our presentation “AI-supported analysis and visualization of Darknet and OSINT information” on Sep 2, 2021!

Meet Maltego in Berlin and join our presentation “AI: Technologies for Security Authorities” on Sep 14, 2021!

Transforms are small pieces of code that automatically fetch data from different sources and return the results as visual entities in the desktop client. Transforms are the central elements of Maltego which enable its users to unleash the full potential of the software whilst using a point-and-click logic to run analyses.

Maltego-trx

Explore step-by-step. Transforms are designed to build on each other, so you can create complex graphs.
Automate in a click. Execute a set of Transforms in a pre-defined sequence to automate routines and workflows.
Create your own queries. Use the Transform Development Toolkit to write and customize your own Transforms, and to integrate new data sources.
Maltego comes with a built-in hub of hundreds of Transforms from over 30 partners.
At the German Federal Criminal Police Office, we started using Maltego in 2016 and have kept adding more seats ever since. We consider Maltego as an indispensable tool to fight crime for the new generation of policemen.
Community
Mirko Manske
German Federal Criminal Police Office (Bundeskriminalamt)
Maltego tutorial
A great strength of Maltego is the ease of gaining insights from multiple, disparate data sets. In the past couple of years, Maltego has been increasingly developed towards a relevant market place for data and I am excited to see how this will evolve in the future.
Maltego
Keith Gilbert
Maltego is the first tool I'd install on any researchers laptop, and the first I open any time I'm starting a new investigation. From the ability to access many different data sources through one tool, to the advanced visualisations, its an absolutely essential part of modern cybercrime research
Robert McArdle
Simply smart, powerful and efficient tool! As a seconded researcher of Trend Micro to INTERPOL and some of my co-researchers, Maltego is essential in our day to day cybercrime investigation for the purpose of chasing down the threat actors and revealing their modus operandi and infrastructure.
Paul Pajares
Maltego allows us to quickly pull data from profiles, posts, and comments into one graph, where we can conduct text searches and see connections. In just a few minutes, we can narrow initial research to a handful individuals using variations of aliases connected to suspected local traffickers. We would not have been able to do that without Maltego.
4theONE Foundation
I have been an avid user and advocate of Maltego for many years, using it especially for internet infrastructure mapping. However, its automated search and graphing capabilities make it perfectly suited for creating cryptocurrency transaction maps. If you are looking for a low cost entry into address identification, I highly recommend it.
Nick Furneaux, MD
Maltego is a wonderful aggregator of interfaces to various OSINT databases. The company behind Maltego has even formed its own OSINT ecosystem. Maltego can scan a target website, but then it lets its users effortlessly apply what it calls “Transforms” from its ecosystem to connect the web information to various databases. I’ve been blogging about infosec for years, and even I’m nervous about Maltego’s capabilities. With OSINT, knowledge is truly power.

Maltego Tutorial

Andy Green

Maltego Data Sources

Integrate data from public sources (OSINT), commercial vendors, and internal sources via the Maltego Transform Hub. All data comes pre-packaged as Transforms ready to be used in investigations.

Overview

Metagoofil

The DomainTools API is organized into distinct products with queries that follow a RESTful URL structure wherever possible. Each product offers free, un-authenticated access for the sample URLs listed with each product. If you haven't already, you may want to review the getting started document to learn about authentication and response formats.

The Whois Lookup API provides the ownership record for a domain name or IP address with basic registration details. The API is optimized to respond quickly and is designed to handle a high volume of parallel requests. This is the ideal product to use if you have a busy web site or a long list of domains that you need to process.

The response includes the most recent Whois record we have for the domain name or IP address you provided in the URL. This ensures a consistently fast response without a dependency on external servers and usually returns a record updated within the last few days. You can use the date property in the whois response node to check the age of the record and confirm it was updated recently enough for your needs.

In rare cases, you may request a domain for which no recent Whois record is available. If that occurs, the system will respond with an error.

Maltego 3

Sample Response:

Note that not all data elements in the response will be available for all domains. What is available depends on the Whois record returned for that domain.

You must provide your API credentials to use this API.

Sample Queries

Maltego 4

[HTML][JSON][XML]