All integrations
Blackbird logo
// Tentacle Tool · OSINT

Cracken + Blackbird

Cracken runs Blackbird to sweep a username across the WhatsMyName site list and check an email through its own set of OSINT sources. It reads the hits in the same turn and pivots into the accounts it confirms.

Get started
// 01

Connecting Blackbird

Connect with

No credentials — runs on your own Tentacle

Cadence

Runs on demand — installed on a Tentacle, then invoked during an operation (the agent can install and uninstall it mid-run)

Requires

A Tentacle running Linux or macOS. Free licence, nothing to purchase and no credentials to supply.

// 02

What Cracken gets from Blackbird

  • Per-site account hits: the site name and the profile URL where the username was found, across the WhatsMyName list of 600+ sites

  • Email-mode hits from Blackbird's own separate email sources

  • An AI behavioural and technical profile of the account owner, derived from the site names where hits landed (--ai)

  • PDF and CSV exports of the result set, with the AI profile included in the PDF

// 03

What Blackbird does not do

Blackbird checks the sites in the WhatsMyName database it ships with; a platform outside that list is never queried, and the search is username- or email-based only. Its AI profiling needs a key Cracken does not supply, so it stays off unless you configure it yourself.

// 04

How Cracken uses Blackbird

  1. 01

    Install Blackbird on a Tentacle

  2. 02

    Give Cracken a username or an email address

  3. 03

    Correlate the accounts that come back

  4. 04

    Confirm the Tentacle is ready

// 05

Frequently asked questions

Where does Blackbird run when Cracken uses it?

Blackbird runs on a Tentacle, a Kali-based container on infrastructure you control, where Cracken installs and drives it, never in a Cracken-hosted environment.

Does Blackbird send traffic to the organization being tested?

No; Blackbird checks a username against WhatsMyName platforms and an email against separate OSINT sources, so those requests hit external services, not the tested organization.

“I've been pretty impressed with how CrackenAGI is able to do its vulnerability discovery, enumeration, reconnaissance, as well as eventually being able to actually execute different exploitation paths.”

Cybersecurity Engineer, red team · test-and-measurement manufacturer

Attack with real Blackbird context.

See how Cracken runs Blackbird on a Tentacle you host, and proves what it finds end to end.