Download Article
Learn how to search for internet connected devices in the Shodan search engine
Download Article

Shodan is a type of search engine that allows users to search for Internet-connected devices and explicit website information such as the type of software running on a particular system and local anonymous FTP servers. Shodan can be used much in the same way as Google, but indexes information based on banner content, which is meta-data that servers send back to hosting clients. For the best results, Shodan searches should be executed using a series of filters in a string format.[1]

  1. Navigate to the Shodan website at http://www.shodanhq.com/.
  2. Advertisement
  3. Shodan will send you a verification email.
  4. The Shodan login screen will open in a new window of your browser.
  5. For example, if you want to locate all Internet-connected devices in the United States that are currently using default passwords, enter “default password country: US.”
  6. The Web page will refresh and display a list of all devices, or banners that match your search terms.
  7. Common search filters include the following:
    • City: Users can limit search results to devices located by city. For example, “city:sacramento.”
    • Country: Users can restrict search results to devices by country using the two-digit country code. For example, “country:US.”
    • Hostname: Users can limit search results to devices by the value in their hostname. For example, “hostname:facebook.com.”
    • Operating system: Users can search for devices based on operating system. For example, “microsoft os:windows.”
  8. Most listings will display explicit information about systems that include their IP address, latitude and longitude, SSH and HTTP settings, and server name.
  9. Advertisement

Expert Q&A

Ask a Question
200 characters left
Include your email address to get a message when this question is answered.
Submit
Advertisement

Tips

  • Narrow down your search using additional filters by purchasing add-ons from Shodan. Click on “Buy” at the top right corner of your current Shodan session to purchase and gain access to additional filters for search.
  • If you are in charge of system administration for your business or company, use Shodan to ensure that your system is set up in a manner that can’t be easily hacked by malicious third parties. For example, search for your system using string terms that include “default password” to verify that your system is not using default passwords, which could compromise your system’s security.
Submit a Tip
All tip submissions are carefully reviewed before being published
Thanks for submitting a tip for review!
Advertisement

You Might Also Like

Advertisement

About This Article

wikiHow is a “wiki,” similar to Wikipedia, which means that many of our articles are co-written by multiple authors. To create this article, volunteer authors worked to edit and improve it over time. This article has been viewed 92,277 times.
How helpful is this?
Co-authors: 5
Updated: May 27, 2022
Views: 92,277
Categories: Search Engines
Thanks to all authors for creating a page that has been read 92,277 times.

Is this article up to date?

Advertisement