Risks of open-source intelligence escalating in crime

January 2026 Security Services & Risk Management, Residential Estate (Industry), Smart Home Automation

The risk of open-source intelligence (OSINT)-related crime continues to escalate, warns Community Monitoring Service (CMS) senior manager Gerrit van Heerden.

The caution comes amid a growing, increasingly clinical approach by criminals who use publicly available digital information to reduce the risks of perpetrating crime while, at the same time, identifying higher-quality victims. The beginning of the year, when back-to-school and work schedules are determined, is prime time for open-source intelligence revelations, but also a time to mitigate from the outset.

Van Heerden says that investigators at CMS have noted a sustained upward trajectory in pre-planned crimes. “We estimate that open source intelligence has played a role in at least 20 - 30% of robberies over the past 12 months. In cybercrime, global research consistently shows that many offences rely on some form of open-source data exploitation.”

Research has also shown that skilled OSINT users can often deduce or uncover identifying details about a significant proportion of anonymous online profiles. “Offenders are increasingly relying on publicly available digital information to plan and execute real-world crime,” says Van Heerden.

Open-source intelligence has long been a legitimate tool in cybersecurity, journalism and formal crime-fighting and investigative work. However, criminals are now gathering and applying the same intelligence techniques to identify marks and plan offences with greater precision.

“OSINT allows criminals to work smarter, not harder,” he adds. “They can determine when a home is likely to be empty, which entrances or areas on a property may be less monitored and how predictable a household’s movements are, all without being physically present.”

According to CMS, everyday digital behaviour is feeding this intelligence cycle. Location check-ins, real-time travel posts, visible routines and shared personal details allow criminals to infer occupancy patterns, identify predictable windows of opportunity and assess risk remotely. Whether you live in a residential estate, a boomed area or in an unsecured suburb, the risks are the same, because location influences a criminal approach.

“Available software allows much of this process to happen quickly,” van Heerden notes. “Even basic tools can aggregate data into usable profiles, and AI services can be manipulated to identify behavioural patterns with surprising accuracy. Even selfie backgrounds tell a story.”

The growing use of OSINT has also exposed children as an unintended vulnerability in household security. Posts related to school activities, sports schedules and family travel frequently reveal routine information that, when viewed over time, becomes actionable intelligence.

“A sustained lack of awareness is the real challenge,” van Heerden says. “This is particularly true among younger family members who share digitally, naturally and innocently. Criminals do not look at posts in isolation. They look for patterns, repetition and predictability.”

The rise of OSINT-driven crime fundamentally challenges traditional notions of security that focus almost exclusively on physical infrastructure such as walls, gates and alarm systems.

“There is a dangerous gap between how secure people feel and how exposed they actually are. You can invest heavily in physical security, but if your digital footprint tells a criminal exactly when you are away, you have already lowered the barrier to entry.

“By harvesting personal details and behavioural cues, criminals are able to create convincing pretexts that bypass suspicion and exploit trust. The success of many scams today has less to do with technical sophistication and more to do with how well the criminal understands their target.”

Security awareness goes well beyond the traditionally perceived elements of safety, such as locks, cameras, and response time, to include digital behaviour as a fundamental component of risk management. “This is not about telling people to stop using social media,” he says. “It is about understanding that digital behaviour increasingly forms part of the threat landscape. If that reality is ignored, people are simply exposing themselves. You do not want to be a sitting duck.”

In mitigation, van Heerden suggested households delay posting travel information until after returning home, regularly review privacy settings across all platforms, and educate family members about oversharing and treating online activity as an extension of physical security practices. Open-source intelligence has changed how crime is planned. Until people understand that what they share online shapes real-world risk, criminals will continue to exploit that gap.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Detect procurement fraud before losses escalate
Security Services & Risk Management News & Events Financial (Industry) Editor's Choice
Organisations need to move procurement fraud prevention closer to the point where suspicious activity occurs, rather than relying primarily on investigations after money has already been lost, according to SAS and FACTS Consulting.

Read more...
R45 billion private security sector’s growing liability gap
Security Services & Risk Management
Constitutional Court and appellate decisions shine a spotlight on the potentially massive civil liability that security companies could face for operational failures and, in certain circumstances, the conduct of employees – exposure often not covered by public liability insurance.

Read more...
AI fraud is outrunning banking defences
Security Services & Risk Management Financial (Industry)
South Africans are increasingly being targeted by AI-generated fraudsters who sound just like bank employees. However, many local banks are still struggling with legacy tech, slow change processes, and limited data visibility.

Read more...
AI assistants learn bad workplace habits
AI & Data Analytics Security Services & Risk Management
An employee under pressure at a logistics firm finds a productivity-boosting shortcut. Instead of manually parsing a 40-page supplier contract, they paste the confidential PDF into a public generative AI tool for a quick summary.

Read more...
Mining's critical controls are not the problem; execution is
Security Services & Risk Management Mining (Industry)
As Parliament considers amendments intended to strengthen managerial responsibility, employer accountability, enforcement and penalties under the Mine Health and Safety Act, Alvarez & Marsal warns that tougher rules must be matched by stronger execution at the rockface.

Read more...
Shadow AI: The next evolution of Shadow IT
AI & Data Analytics Security Services & Risk Management
Today, as AI gains traction in all aspects of life and business, African organisations face a new challenge, known as ‘Shadow AI’, where employees at all levels make use of AI without considering the potential impact.

Read more...
Free live travel risk map covering multiple countries
News & Events Security Services & Risk Management
Most widely cited travel risk maps are published once a year as static documents, but risk conditions do not follow a publishing calendar. The Sicuro map draws on official travel advisories from the ...

Read more...
Unrest readiness is built between crises, not during them
Technews Publishing Security Services & Risk Management
The 30 June marches passed largely peacefully, and that outcome was no accident. It was the result of preparation, and a level of cooperation between police, private security, communities and business that this country has not always managed.

Read more...
The line between locking residents out and restricting their access
News & Events Security Services & Risk Management Residential Estate (Industry)
A June 2026 High Court judgment has clarified one of the most contested issues in modern estate governance: when an HOA's digital access restrictions amount to unlawful self-help or spoliation, and when they do not.

Read more...
Modernise field communications with Push-to-Talk over Cellular
Products & Solutions Security Services & Risk Management
Sentiv is bringing Hytera’s Push-to-Talk over Cellular (PTToC) portfolio to organisations that need a more structured and controlled way to coordinate field teams, without extending a full private radio model to every team, site, or function.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.