I collect and synthesize a wide spectrum of sources using HUMINT and OSINT to produce finished threat intel. Currently tracking threats at Cyble.
Apurv Singh Gautam is Lead, Research and Intelligence at Cyble, where he directs cybercrime and dark-web investigations that turn raw signal into finished intelligence that organizations act on. He previously worked as a Security Analyst on anti-scraping investigations at Meta, protecting products and users from large-scale automated abuse and AI-enabled threats.
He leads research and intelligence efforts across cybercrime and dark-web threats, combining hands-on investigation with automation and AI tooling that turn raw signal into finished decision-ready intelligence.
Apurv has contributed to the latest SANS Institute's course FOR589 on Cybercrime Intelligence and is a contributing member of Curated Intel. He has delivered talks & workshops at national and international conferences like SANS OSINT Summit, SANS Cyber Defense Forum, DEFCON Blue Team Village, BSides Singapore, RootCon and others. Apurv is featured in major podcasts like ITSPMagazine, Tech Talks with Singh, etc. He is passionate about giving back to the community and helping others get into this field, and has delivered many talks and workshops in schools and colleges. In the past, he has volunteered with StationX to help students navigate into Cybersecurity, and also volunteered as a Darknet researcher at CTI League and EBCS Darknet Analysis group. He holds a master's degree in Information Security from Georgia Institute of Technology, USA.
He looks forward to the end of the day to play and stream one of the AAA games, Rainbow 6 Siege.


A deep dive into HUMINT tradecraft on cybercrime forums — and the open-source tooling behind it.
An AI-powered tool for dark web OSINT investigations — using LLMs to refine queries, filter results from dark web search engines, and produce an investigation summary.
Leading research and intelligence efforts across cybercrime and dark-web threats — from investigation through automation to decision-ready reporting.
Detecting and disrupting scraping operations at scale — analyzing large datasets, building automation, and running OSINT-driven investigations to drive high-impact enforcement against automated abuse.
Delivered tactical and operational intelligence on client RFIs, served as SME for Generative-AI threat-intel projects, and curated OSINT/SOCMINT/HUMINT investigations into actionable, IOC- and TTP-enriched deliverables.
Ran surface and dark web investigations, profiled threat actors and ransomware groups, and built Python automation that cut data-collection time by 40%.
Deep-dived malicious data from dark web forums and markets, applied NLP (LDA, CatE) to large unstructured datasets, and generated six threat-intelligence metrics.
Performed OSINT and HUMINT across 20+ dark web forums and markets, and designed an automated Scrapy-based scraping tool feeding Elasticsearch.