CheatSheet

Shodan1 Cheat Sheet

 

1.0 Usage2

1.1 Filters

  • city: find devices in a particular city

  • country: find devices in a particular country

  • geo: you can pass it coordinates

  • hostname: find values that match the hostname

  • net: search based on an IP or /x CIDR

  • os: search based on operating system

  • port: find particular ports that are open

  • before/after: find results within a timeframe

  • org: Search by organization

  • hash: Search based on banner hash

  • has_screenshot:true: Filter search based on a screenshot being present

  • title: Search based on text within the title

1.2 Examples

  • Find Apache servers in San Francisco:

apache city:"San Francisco"

  • Find Apache Servers with specific Version:

product:"Apache" version:2.4.50

  • Find Nginx servers in Germany:

nginx country:"DE"

  • Find GWS (Google Web Server) servers:

"Server: gws" hostname:"google"

  • Find Cisco devices on a particular subnet:

cisco net:"216.219.143.0/24"

2.0 Hints

3.0 References

Footnotes

  1. https://www.shodan.io/

  2. https://help.shodan.io/the-basics/search-query-fundamentals