Background
Shodan is a search engine that lets the user find specific types of computers connected to the internet using a variety of filters. Some have also described it as a search engine of service banners, which are metadata that the server sends back to the client.
Using Shodan.IO to map an organisation’s external facing assets is a great way to see what devices and systems are publicly visible and accessible.
To get started, enter the organisation’s name or IP address into the search bar on Shodan.IO. Once the results are populated, you can explore the different devices and systems that are visible.
Exercise
Use shodan.io to passively map an organisation’s external facing assets.
Create a spreadsheet to record suspicious, dangerous or vulnerable assets identified. Your spreadsheet should include information such as:
- Identification Date
- Target Organisation
- Third Party Integration Organisation
- IP address
- Hostname
- Open Port
- Service Running on Open Port
- Additional Service Information