Shodan.io
This guide contains the answer and steps necessary to get to them for the Shodan.io room.
Table of contents
Filters
- How do we find Eternal Blue exploits on Shodan?
Click for answer
vuln:ms17-010
Google & Filtering
- What is the top operating system for MYSQL servers in Google's ASN?
asn:AS15169 product:MYSQL
Click for answer
5.6.40-84.0-log
- What is the 2nd most popular country for MYSQL servers in Google's ASN?
Click for answer
Netherlands
- Under Google's ASN, which is more popular for nginx, Hypertext Transfer Protocol or Hypertext Transfer Protocol with SSL?
asn:AS15169 product:nginx
Click for answer
Hypertext Transfer Protocol
- Under Google's ASN, what is the most popular city?
asn:AS15169 country:"US"
Click for answer
Mountain View
- Under Google's ASN in Los Angeles, what is the top operating system according to Shodan?
asn:AS15169 city:"Los Angeles"
Click for answer
PAN-OS
- Using the top Webcam search from the explore page, does Google's ASN have any webcams? Yay / nay.
webcam asn:AS15169
Click for answer
Nay
Shodan Monitor
In this task we will look at a premium Shodan feature called Shodan Monitor.
- What URL takes you to Shodan Monitor?
Unfortunately, this feature is paid, so I am not able to check it out for myself. In addition the images in the room of this feature have been deleted as well.
The answer can, fortunately, be found in the text itself.
Click for answer
https://monitor.shodan.io/dashboard
Shodan Dorking
- What dork lets us find PCs infected by Ransomware?
For this we can either look at the text or look at the search examples on Shodan and use the following search query:
Click for answer
has_screenshot:true encrypted attention