this post was submitted on 17 Jul 2023
117 points (100.0% liked)

Technology

58017 readers
3690 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
 

Google is a search engine for human readable content. Shodan does the same for machine readable content.

You can:

  • search for specific IP addresses, and it will show you the active ports, and running services.
  • search for a specific response header in the set of countries
  • browse through the screenshots of open VNC & RDP
  • open webcams
  • and more...

The free accounts can use any feature, but the list of results is limited. But if you really want to look under the deck of the internet, the subscription is worth it.

https://account.shodan.io/billing/member

top 33 comments
sorted by: hot top controversial new old
[–] weedazz@lemmy.world 33 points 1 year ago (1 children)

Is this an ad? Good news everyone we're becoming more like Reddit every day!

[–] deafboy@lemmy.world 4 points 1 year ago

I'm not affiliated with the company in any way, there's not even a reflink. I just find the service useful and fun.

At first I wasn't sure whether to post it here or not, but since it's certainly more tech related than the business model of twitter and reddit, which is being discussed here pretty often, I decided to go for it.

[–] NukeminHerttua@sopuli.xyz 20 points 1 year ago (3 children)

Stupid question, but what's Shodan and why should I get it?

[–] LeylaaLovee@lemmy.fmhy.ml 18 points 1 year ago (1 children)

Shodan is good for violating other people's privacy without them knowing it lol

[–] deafboy@lemmy.world 2 points 1 year ago* (last edited 1 year ago) (1 children)

Well, if you buy a cheap insecure camera, and point it to a giant satellite dish in some kind of space observatory, you can't be surprised that people will want to have a look. At that point, you're basically asking for it. /s

Yeah... that was a good find. I sent the link to a friend immediately, and we were yelling like children "it's turning, it's turning!" every time it was repositioned.

[–] LeylaaLovee@lemmy.fmhy.ml 1 points 1 year ago

That's cool AF. Shodan shows lots of cool things that I don't think anybody minds being seen, but it also gives search results that could be used nefariously. It's probably the coolest and creepiest tech product I've ever seen.

[–] deafboy@lemmy.world 15 points 1 year ago (2 children)

Well, if you ever asked yourself "How can I nmap the whole internet without wasting months of my life?" Shodan is for you. Otherwise, it's probably not.

If you're still curious anyway, I'm not the best person to pitch it to you... but I know just the right guy - Viss, and his DefCon presentation. Shodan is a tool that can help you find stuff that he talks about.

TOTES MCGOATS©

[–] PipedLinkBot@feddit.rocks 16 points 1 year ago (1 children)

Here is an alternative Piped link(s): https://piped.video/watch?v=5xJXJ9pTihM

Piped is a privacy-respecting open-source alternative frontend to YouTube.

I'm open-source, check me out at GitHub.

[–] NukeminHerttua@sopuli.xyz 4 points 1 year ago

5 bucks for network monitoring made it a deal for me. Thanks 🙂

[–] feedum_sneedson@lemmy.world 1 points 1 year ago* (last edited 1 year ago) (1 children)

I believe it was the fictional artificial intelligence that became self-aware and tried to take over the world in the game System Shock, and later System Shock 2.

[–] NukeminHerttua@sopuli.xyz 1 points 1 year ago

That one I knew, but thanks anyway 🙂

[–] housepanther@lemmy.goblackcat.com 6 points 1 year ago (1 children)

Well, for one they don't make it easy to be able to block them. For another, they basically advertise intrusion vectors to would-be nefarious actors.

[–] NatoBoram@lemmy.world 9 points 1 year ago

Being connected online is advertising intrusion vectors to would-be nefarious actors

[–] elvith@feddit.de 5 points 1 year ago (1 children)

I rarely use shodan, so I'd probably never pay for a subscription. Especially since I've never really hit any limit in the free plan. But I got the lifetime membership two years ago for $0.99. Even for the current $5 that's a no brainer.

[–] aurelian@lemmy.ml 1 points 1 year ago (1 children)

Same here and the network monitoring isn't a bad bonus.

[–] gdrhnvfhj@lemmynsfw.com 2 points 1 year ago

Whats that?

Look at you, hacker

[–] MeowdyPardner@kbin.social 3 points 1 year ago

One random use I found years ago was that I could instantly search for Comcast business boxes and then export the IPs as a csv, run a headless browser script to try default login creds, then scrape the wireless Mac, ssid, and password which I could plot on a map using wigle wifi wardriving data. It's pretty cool. Maybe the monitoring service will come in handy if it ever notifies me of anything I should be concerned about on any of my IPs, hard to turn down a $5 lifetime pass.

[–] EliteCow@lemmy.dbzer0.com 2 points 1 year ago (1 children)

Awh man! 10:22 my time and the deal is over.

[–] tarjeezy@lemmy.ca 1 points 1 year ago* (last edited 1 year ago)

Well crap. I was waiting until the end of the day to buy it. That's too bad..

Edit: I guess that information was in the image, but would have been nice if it was in the post text too..

[–] wholeofthemoon@lemmy.world 2 points 1 year ago (1 children)

Website must be getting hammered, because I can't navigate anywhere.

[–] DarkenLM@kbin.social 4 points 1 year ago

Shodan getting hug-of-death'ed.

[–] AdventureSpoon@kbin.social 2 points 1 year ago

Yeah that was an instant purchase. Thanks OP!

[–] imPastaSyndrome@lemm.ee 2 points 1 year ago

Is this a honeypot?

[–] housepanther@lemmy.goblackcat.com 2 points 1 year ago (1 children)

I really hate Shodan and Censys.

[–] Mythnubb@lemm.ee 1 points 1 year ago (2 children)

Well I guess I got it during that last sale because I'm already a member. Cool

I don't think I've actually ever used it though

[–] deafboy@lemmy.world 4 points 1 year ago (1 children)

Same thing happened to me few years back. I forgot I got the membership last time there was a promotion :D

I've used it in the past to pirate foreign broadcast TV, but lately I just occasionally check my own stuff, or our customers stuff when there's a problem. It's nicer than nmap, and good enough for the initial part of the analysis.

[–] speff@melly.0x-ia.moe 3 points 1 year ago (1 children)

pirate foreign broadcast TV

I wish to subscribe to your newsletter. I'm guessing a search for open RTMP ports, geolocation, and a few other criteria?

[–] deafboy@lemmy.world 2 points 1 year ago

I was running tvheadend with dvb-t usb stick at the time, and one day wondered, who else might be running it. There were quite a few all over the world.

[–] procrastinator@lemmy.world 1 points 1 year ago

That's how they get ya

[–] chicken@lemmy.world 1 points 1 year ago

awesome, thanks for sharing!

load more comments
view more: next ›