The Internet Detective who finds the unfindable and
recovers what others can't.
Hacked. Stalked. Extorted. When the police can't help and your IT team has run out of options — I take over. Elite Dutch Cyber Threat Intelligence, OSINT & Incident Recovery for individuals, executives and enterprises worldwide.
Report an Incident →What We Do
Personal Protection
From anonymous stalkers to drained crypto wallets, catfish scams to hijacked accounts — I investigate, trace and resolve the digital crises that upend people's lives. Every case is treated with total discretion.
Corporate & Executive Security
Corporate espionage, insider threats, brand impersonation and executive digital exposure — I deliver court-ready evidence and strategic risk assessments for companies and the people who run them.
Dark Web & Threat Intelligence
Continuous monitoring of leak markets, underground forums and ransomware chatter — turning the deep and dark web into actionable intelligence before damage is done.
Incident Response & Recovery
Ransomware containment, network forensics, decryption sourcing and post-incident hardening. When the fire is already burning, I bring calm, proven, decisive action.
How We Work
Every case follows a proven four-phase methodology. Transparent, fast, relentless.
Contact
Reach out via the secure form, encrypted email or phone. I respond within hours — minutes for active emergencies.
Triage
Free, confidential 30-minute assessment. We map the situation, contain immediate damage and define mission scope.
Operate
OSINT collection, forensic analysis, dark-web hunting, takedown coordination — whatever the case demands.
Resolve
Court-ready evidence, recovered assets, hardened systems and a clear path forward. You get your life back.
Is This Happening To You?
You are not paranoid, and you are not alone. Most people lose money, sleep, and peace of mind because they didn't know who to call. Now you do.
Who We Work With
Learn more about our services for
Two Decades in the Field
I'm Joe Shenouda — a Dutch elite Cyber Threat Intelligence specialist, SOC architect and OSINT investigator. For two decades I have hunted threat actors across the surface web, deep web and dark web. I've defended Fortune-500 networks and personally pulled victims out of digital nightmares the police never had the tools to solve. I operate where ordinary investigators stop — and I do it discreetly.
Total Discretion, Global Reach
Based in the Netherlands, operating worldwide — for individuals, SMBs, enterprises, law firms and select government clients across Europe, the US, the Middle East and beyond. Every engagement is confidential by default: formal NDAs on request, encrypted case infrastructure, and court-ready evidence when it matters.
Real Operations. Real Outcomes.
A selection of cases — client identities and sensitive details are anonymised. The results are verified.
Anonymous Stalker Identified in 11 Days
Eight months of terror. Anonymous threats across multiple platforms targeting a family. Police stood down. OSINT revealed the person lived 200 meters away.
Mid-Market ERP Restored in 4 Days
Ransomware locked the entire ERP stack of an EU manufacturer. Full containment, negotiation to 30% of demand, clean recovery with hardened infrastructure.
€180K Crypto Fraud — Partial Recovery
"Investment opportunity" drained six figures via a fake exchange. Cross-chain tracing through 2 mixers, 3 chains. Forensic report used to recover a substantial portion.
Discretion is Non-Negotiable
Names and details are anonymised. The words are theirs.
"For 8 months an anonymous account terrorised my family. The police said there was 'nothing they could do.' Joe identified the person in 11 days. He lives 200 meters from us."
"Ransomware locked our entire ERP. Joe coordinated containment, negotiated a 70% reduction, and delivered the keys with a clean recovery plan. We were back online in 4 days."
"I lost €180K to a 'crypto investment.' Joe traced the funds across 3 chains and 2 mixers, and produced a forensic report my lawyers used to recover a substantial portion."
Contact Us
- Our typical response time is minutes to a few hours for active emergencies.
- We treat all provided information as strictly confidential.
- If you are being actively attacked, extorted, or your business is mid-incident, write "EMERGENCY" in the subject.
- Website: www.shenouda.nl · Based in the Netherlands · Worldwide operations.
Active emergency?
Whether you're a worried parent, a CEO at 3 AM watching your network burn, or a victim no one else has been able to help — you've reached the right person.