funsec mailing list archives

Re: SHODAN - Computer Search Engine


From: <Toralv_Dirro () McAfee com>
Date: Tue, 24 Nov 2009 18:46:20 -0600

Clearly the potential for abuse is there, as it was/is with the Google Hacking Database and other projects.

But also the potential for enhancing the current situation by making it easier for example for ISPs and Corps to find 
vulnerable boxes and fix them.


Just my $0.02,
Toralv


________________________________
From: funsec-bounces () linuxbox org [mailto:funsec-bounces () linuxbox org] On Behalf Of Technocrat
Sent: Wednesday, November 25, 2009 12:33 AM
To: funsec () linuxbox org
Subject: [funsec] SHODAN - Computer Search Engine

Just ran across this while drinking my coffee....talk about a botnet builder...

http://shodan.surtri.com/

SHODAN lets you find servers/ routers/ etc. by using the simple search bar up above. Most of the data in the index 
covers web servers at the moment, but there is some data on FTP, Telnet and SSH services as well.

-----------------------

Servers running PHP 5.1.1
http://shodan.surtri.com/?q=PHP+5.1.1

Servers running Telnet
http://shodan.surtri.com/?q=Telnet

Clearly this service could be used for very evil purposes....

-Technocrat

________________________________
Firmensitz: Muenchen
Amtsgericht: AG Muenchen
Handelsregister: HRB 144340
Geschaeftsfuehrer: Emmet Russell, Keith Krzeminski, Douglas Rice
Bankverbindung: ABN-Amro Bank N.V. Konto 671 211 9006
UST-ID: DE168122444
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: