Giter Site home page Giter Site logo

shodan-dorks's Introduction

Shodan Dorks


Most search filters require a Shodan account.

What makes this different from other dork/query lists?

This has tons of titles, info and categorisation a lot of other mass-lists don't have.

Also, every hour, it re-checks every query on here and updates their count. It also removes dorks that have 0 results.

Contents


Cameras

General camera search.
camera - 3,682,361 results

Hikvision IP Cameras.
product:"Hikvision IP Camera" - 2,722,696 results
Backdoor exploit at https://ipvm.com/reports/hik-exploit

Webcams running on IPCam Client.
title:"IPCam Client" - 60,500 results

Older webcams running on GeoVision.
server: GeoHttpServer - 40,844 results

Avigilion-brand camera/monitoring devices.
title:"Avigilon" - 19,045 results

Vivotek IP cameras.
server: VVTK-HTTP-Server - 15,573 results

DVR CCTV cameras accessible via http.
200 ok dvr port:"81" - 9,512 results

Netwave-make IP cameras.
Netwave IP Camera Content-Length: 2574 - 1,299 results

A UK-based IP camera provider.
WWW-Authenticate: "Merit LILIN Ent. Co., Ltd." - 1,208 results

Yet another WebCAM software.
product:"Yawcam webcam viewer httpd" - 625 results

UI3 - the HTML5 web interface for Blue Iris.
title:"ui3 -" - 493 results

Unsecured Linksys webcams.
title:"+tm01+" - 468 results

Various IP camera/video management system products.
ACTi - 394 results

Webcams with screenshots.
webcam has_screenshot:true - 198 results

Webcams running on webcamXP
server: webcamxp - 173 results

Webcams running on webcam 7.
server: "webcam 7" - 85 results

IP Webcams with screenshots.
has_screenshot:true IP Webcam - 80 results

Webcams running on Blue Iris.
title:"blue iris remote view" - 32 results

Canon-manufactured megapixel security cameras.
title:"Network Camera VB-M600" - 31 results

i-Catcher IP-based CCTV systems.
server: "i-Catcher Console" - 24 results

Linksys WVC80N cameras.
WVC80N - 23 results


Industrial Control Systems

EtherNet/IP
port:44818 - 537,463 results

S7
port:102 - 514,422 results

Modbus
port:502 - 508,741 results

BACnet
port:47808 - 45,448 results

Niagara Fox
port:1911,4911 product:Niagara - 9,252 results

Gas Station Pump Controllers
"in-tank inventory" port:10001 - 5,988 results
Find gas station pump controllers with accessible inventory data.

VNC Servers
"authentication disabled" "RFB 003.008" - 5,740 results
While not always 100% guaranteed to be a system, lots of embedded systems can show up here, along with personal systems.

More VNC Servers
"authentication disabled" port:5900,5901 - 5,664 results
Another search term for VNC servers - most are on port 5900 or 5901 as these are VNC display ports.

IEC 60870-5-104
port:2404 asdu address - 3,488 results

Siemens Industrial Automation
"Siemens, SIMATIC" port:161 - 2,966 results

Omron FINS
port:9600 response code - 1,840 results

DICOM Medical X-Ray Machines
"DICOM Server Response" port:104 - 1,808 results

DNP3
port:20000 source address - 1,016 results

PCWorx
port:1962 PLC - 989 results

ProConOS
port:20547 PLC - 502 results

XZERES Wind Turbine
title:"xzeres wind" - 462 results

MELSEC-Q
port:5006,5007 product:mitsubishi - 217 results

Door / Lock Access Controllers
"HID VertX" port:4070 - 189 results

C4 Max Commercial Vehicle GPS Trackers
[1m[35mWelcome on console - 66 results

Electric Vehicle Chargers
"Server: gSOAP/2.8" "Content-Length: 583" - 49 results

Nordex Wind Turbine Farms
http.title:"Nordex Control" "Windows 2000 5.0 x86" "Jetty/3.1 (JSP 1.1; Servlet 2.2; java 1.6.0_14)" - 38 results

GaugeTech Electricity Meters
"Server: EIG Embedded Web Server" "200 Document follows" - 33 results

Voting Machines in the United States
"voter system serial" country:US - 23 results

Open ATM
NCR Port:"161" - 22 results

Traffic Light Controllers / Red Light Cameras
mikrotik streetlight - 20 results

CAREL PlantVisor Refrigeration Units
"Server: CarelDataServer" "200 Document follows" - 12 results

HART-IP
port:5094 hart-ip - 12 results

Siemens HVAC Controllers
"Server: Microsoft-WinCE" "Content-Length: 12581" - 6 results

Fuel Pumps connected to internet
"privileged command" GET - 5 results

Samsung Electronic Billboards
Server: Prismview Player - 3 results
Search for electronic billboards managed by Prismview servers.

Automatic License Plate Readers
P372 "ANPR enabled" - 1 result

Submarine Mission Control Dashboards
title:"Slocum Fleet Mission Control" - 1 result


Network Infastructure

General MySQL Database Search
product:MySQL - 3,324,847 results

Remote PostgreSQL Connections
port:5432 PostgreSQL - 765,016 results

Default MongoDB Instances
mongodb port:27017 - 104,382 results

MongoDB Server Information on Default Port
"MongoDB Server Information" port:27017 - 104,158 results

Open Elasticsearch Databases
port:"9200" all:elastic - 30,730 results

Jenkins CI
"X-Jenkins" "Set-Cookie: JSESSIONID" http.title:"Dashboard" - 15,734 results

Cisco Smart Install
smart install client active - 7,225 results

Listed Apache CouchDB
product:"CouchDB" - 4,674 results

Android Root Bridges
"Android Debug Bridge" "Device" port:5555 - 4,199 results

Polycom Video Conferencing
http.title:"- Polycom" "Server: lighttpd" - 3,613 results

Pi-hole Open DNS Servers
"dnsmasq-pi-hole" "Recursion: enabled" - 2,994 results

Lantronix Serial-to-Ethernet Adapter Leaking Telnet Passwords
Lantronix password port:30718 -secured - 644 results

Already Logged-In as root via Telnet
"root@" port:23 -login -password -name -Session - 578 results

Accessible Kibana Dashboards
kibana content-length:217 - 535 results

Exposed MongoDB Express Web Interfaces
"Set-Cookie: mongo-express=" "200 OK" - 407 results

Citrix Virtual Apps
"Citrix Applications:" port:1604 - 296 results

PBX IP Phone Gateways
PBX "gateway console" -password port:23 - 185 results

Docker Private Registries
"Docker-Distribution-Api-Version: registry" "200 OK" -gitlab - 142 results

Telnet Configuration
"Polycom Command Shell" -failed port:23 - 34 results

Weave Scope Dashboards
title:"Weave Scope" http.favicon.hash:567176827 - 12 results

Vulnerable CouchDB Instances
port:"5984"+Server: "CouchDB/2.1.0" - 5 results


Printers

General Printer Search
printer - 86,471 results

HP Printers Remote Restart
port:161 hp - 10,999 results

Canon Printer HTTP Servers
Server: CANON HTTP Server - 9,788 results

HTTP Accessible Epson Printers
http 200 server epson -upnp - 2,022 results

Samsung Printers with SyncThru Web Service
title:"syncthru web service" - 982 results

Unsecured Telnet Access to Printers
port:23 "Password is not set" - 407 results

Remote Access to Xerox Printers
ssl:"Xerox Generic Root" - 370 results

Epson Printers via HTTP Server
"Server: EPSON-HTTP" "200 OK" - 318 results

HP LaserJet Printers via HTTP
"HP-ChaiSOE" port:"80" - 164 results

Lexmark Printer Control Panels
Printer Type: Lexmark - 149 results

Brother Printers Admin Interface
"Location: /main/main.html" debut - 70 results

Printers with FTP Access
Laser Printer FTP Server - 5 results


Files and Directories

Open Lists of Files and Directories
http.title:"Index of /" - 366,467 results

Filezilla FTP
filezilla port:"21" - 255,440 results

Samba Shares with Authentication Disabled
"Authentication: disabled" port:445 product:"Samba" - 215,528 results

Open Lists on Port 80
port:80 title:"Index of /" - 141,310 results

FTP Access Without Credentials
"220" "230 Login successful." port:21 - 62,553 results

Anonymous Access Allowed FTP
"Anonymous access allowed" port:"21" - 32,875 results

NDMP on FTP Port 10000
ftp port:"10000" - 7,760 results

Vulnerable vsftpd Service
vsftpd 2.3.4 - 2,920 results

QuickBooks Files Shared Over Network
"QuickBooks files OverNetwork" -unix port:445 - 44 results


Compromised devices and websites

General Hacked Label Search
hacked - 1,747 results

Compromised Legacy Systems on Port 4444
port:4444 system32 - 1,132 results

Compromised Routers Labeled HACKED-ROUTER
HACKED-ROUTER - 768 results

Compromised Routers
hacked-router-help-sos - 756 results

Hacked By in HTTP Title
http.title:"Hacked by" - 520 results

Variation of Hacked By Label Search
hacked by - 272 results

Compromised Hosts Advertising Default Password
HACKED-ROUTER-HELP-SOS-HAD-DEFAULT-PASSWORD - 98 results

Compromised FTP Servers
HACKED FTP server - 67 results

Ransomware Infected RDP Services
"attention" "encrypted" port:3389 - 9 results

Owned By Label in HTTP Title
http.title:"0wn3d by" - 5 results

Bitcoin Ransomware with Screenshot
bitcoin has_screenshot:true - 1 result


Miscellaneous

General Dashboard Interfaces
http.title:"dashboard" - 183,220 results

Control Panel Access Points
http.title:"control panel" - 64,555 results

Minecraft Servers
"Minecraft Server" "protocol 340" port:25565 - 10,894 results

Tesla-related Interfaces
http.title:"Tesla" - 605 results

Everything in North Korea
net:175.45.176.0/22,210.52.109.0/24,77.94.35.0/24 - 44 results

EIG Electricity Meters
"Server: EIG Embedded Web Server" "200 Document follows" - 33 results

Misconfigured WordPress Installations
http.html:"* The wp-config.php creation script uses this file" - 11 results

Ethereum Miners
ETH - Total speed - 1 result


i'm not responsible for any misuse of this list :) explore responsibly!

shodan-dorks's People

Contributors

dootss avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.