1. Introduction
Shodan is a search engine that can be used for casing detection, and has its own unique side on the internet for querying flags. This search engine primarily indexes the information found in port 80, and also retrieves the telnet, SSH, and FTP flags.
For Shodan Home:
Find Internet device information through Shodan, which can be queried by IP address and hostname, or by geographical location. It has an advanced feature that imports the results into an XML file, but requires a certificate to be purchased before it can be used.
2. Filtration Technology
Some filtering techniques can simplify and refine the search results, and most filters are in a similar filter format: searchterm filter:{filterterm}
; for example, enter "IIS 7.0 Country:us" in the Search box to query (searches with filter criteria require registration).
Several important filters are listed below:
- NET: Use IP/CIDR notation (EG:127.0.0.1/24) to set the IP address range to query whether all devices match correctly, whether there are vulnerable hosts or servers, whether they can be accessed externally, etc.
- City: Limits the search to cities.
- Country: Restrict network equipment to national scope.
- Port: Specify the ports.
- OS: The operating system that is included in the search process.
Penetration testing of search engine Shodan detection