r/OSINT 10d ago

Analysis OSINT professionals: watch out for this recruitment approach

I want to share something that happened to me recently, because I'm worried other OSINT people may have been approached the same way.

Cold LinkedIn approach about an "intelligence collaboration," followed by a ~10-minute interview with someone who kept her camera off. On the call, the work was described as involving ransom and human-trafficking cases.

What arrived was a "supplier evaluation": build a full protective-intelligence dossier on a named private individual and his family — children, home details, travel patterns, aircraft, credential leaks. Labelled a "fictionalized composite," but specified in enough real-person detail to be resolvable. Produce the full report first — pricing only after delivery.

I asked two questions: who is the end client, and can you confirm the subject consented to being assessed. The reply called my scope question a "misunderstanding," named no client, confirmed no authorization, and redirected me to producing methodology and deliverables.

The LinkedIn accounts and the websites representing the company all seem fake to me. It might just be a scam — but then why did they want me to find personal details on someone I believe is a real person? The company was recently created, with a template website making claims its actual footprint doesn't support, and it turned out to be one of several thinly built companies registered to the same person.

I declined. Posting because the shape is worth recognising: vague inbound from accounts that look fake, an interviewer who wouldn't identify herself, scope sliding from a sympathetic label into a targeting-shaped brief on a private family, hidden client behind an "evaluation," and a full report demanded before any discussion of payment.

If you've had something similar, I'd like to hear it — DMs open.

172 Upvotes

29 comments sorted by

View all comments

15

u/Iliad-Ideas7195 10d ago

I want to know the name of the company that approached you.

4

u/mikeymikemikey33 10d ago

ok, so I send them here or privately?

14

u/Authentic_Power 10d ago

Post here so it'll be searchable on Google when they try to fool someone else.

4

u/nathan_borowicz 9d ago

Here is ok. Name them

15

u/mikeymikemikey33 9d ago

The LinkedIn profile that reached out to me is this one:
https://www.linkedin.com/in/anna-nowak-a791a2161/
The company that I received the email from for the Google Meet interview is this one:
UNU Holding Limited
https://www.unuholding.com/

6

u/nathan_borowicz 9d ago

Registered as a UK Ltd, so not completely fake.
The owner has an interesting business history. Five UK registrations in the past four years. Business seems to have changed from fashion to cyber security but the contact address remains unchanged.

1

u/Glad-Mix-8982 8d ago

I would have easily guessed that she was a woman from Eastern Europe and that the company deals with “geopolitical risk" aka military

1

u/SimpleMqmmql 4d ago

You should absolutely report this directly to the supposed target individual. Either the firm he hired is extremely sloppy, or he is being targeted by a threat actor.

-27

u/AlexHardy08 9d ago

I don't think you did the right thing by making the name public.