Home >Unlabelled > New search engine: heaven for skiddies
New search engine: heaven for skiddies
Posted on 30 Mei 2010 by c0decstuff
There's a new search called SHODAN, which can look for servers, routers and printers using your search query, and get their response banners.
This is what you can search for:
* country:2-letter country code
* hostname:full or partial host name
* net:IP range using CIDR notation (ex: 18.7.7.0/24 )
* port:21, 22, 23 or 80
As you can see, anyone can easily find vulnerable hosts just by looking through all the banner responses which the searched sites output. This is really dangerous as many skiddies would just scan hosts anonymously day and night looking for a particular version of apache/ftpd/ssh whatever to exploit.
This is what you can search for:
* country:2-letter country code
* hostname:full or partial host name
* net:IP range using CIDR notation (ex: 18.7.7.0/24 )
* port:21, 22, 23 or 80
As you can see, anyone can easily find vulnerable hosts just by looking through all the banner responses which the searched sites output. This is really dangerous as many skiddies would just scan hosts anonymously day and night looking for a particular version of apache/ftpd/ssh whatever to exploit.
Total Pageviews
Labels
- Android (1)
- Aplication (14)
- ARP (1)
- Backdoored (2)
- Browser (1)
- Cloud (1)
- Exploitation (1)
- Exploits (7)
- Facebook (2)
- forensics (3)
- Hacking (11)
- Hijacking (1)
- Honeypot (1)
- HTML5 (1)
- ios (2)
- Jailbreak (2)
- Linux (1)
- Malware (5)
- metasploit (2)
- Meterpreter (1)
- Movie (1)
- Networking (1)
- News (2)
- password attack (2)
- Penetration Test (2)
- Python (1)
- reverse engineering (1)
- Rootkits (1)
- Security (12)
- shellcode (2)
- Stuxnet/Duqu (2)
- Uncategories (1)
- Virus (1)
- Vulnerability (8)
- Web (5)
- Wifi (1)
- Windows (5)
Blog Archive
-
▼
10
(67)
-
▼
Mei
(10)
- New search engine: heaven for skiddies
- Cracking Wep Wpa Wireless Network
- ipv6hackit
- PenTBox : simple n smart security tools
- "The Finger Server" execute shell commands
- Mail Crawler
- effective SQL Injection Tool (mysql&mssql)
- HowTo: Windows XP VPN Into Remote Location
- BruteMonkey Gmail Bruteforce/Dictionary Attack
- securing Web with application firewall
-
▼
Mei
(10)
Friendlist
Security Resources
-
-
-
This feed contains no entries
-
-
-
-
-
-
-
-
-