Skip to main content
Shodan

Shodan

Web siteWikipedia

Search complete. 23 mentions across 18 episodes found for "Shodan".

Sep 5, 2026

Shane TovenGUEST
28:17
But, you know, there's still a lot of them out there with, you know, with default passwords just on public IP.
Shane TovenGUEST
28:21
And you can hit them on Shodan and you can see them right there.
Shane TovenGUEST
28:23
And if you can see it, so can somebody else, anybody on the Internet.
Kirk HarnackHOST
28:28
Yes, exactly.

10 MINS LATER

Kirk HarnackHOST
38:51
Indeed, the remote control interface uh... was was available on the public internet apparently with the default username and password and hackers got in change the arty s which you could generate it internal to the excited several excited slated to do that then that's fine as far as it goes but you gotta lock it down and protect so they get and they change the arty s to some filthy nasty thing and then they go change the password again and into the computer transmitter at all or or disable the existing password And the station is screwed until they get to the transmitter site.
Kirk HarnackHOST
39:29
No, our
Shane TovenGUEST
39:29
mutual good friend and colleague Jeff Welton from Nautel was literally just talking about this on one of his presentations the other day where he does a search on Shodan and a bunch of transmitters, whether they be from Gates Air or from Nautel or whatever.
Shane TovenGUEST
39:43
And one of them, in fact, had already been changed to say, I've been hacked or something to that effect.
Patrick GrayHOST
25:31
when people can't get their favorite brand of frozen pie at the military commissary, and that might, you know, sap their will to fight?
The GrugqHOST
25:38
My take on this is, okay, it is possible that it's Iran or some other threat actor who's got this 5D chess approach, or hypothetically, it's a 20-year-old who found something on Shodan and clicked the button that said defrost, and then nothing happened, and they went away, and suddenly it's in the news, and they think it's hilarious.
Patrick GrayHOST
26:03
Yes.
The GrugqHOST
26:03
Like-
Lorena RuizNARRATOR
2:35
As a result, a malicious user can actively exploit the vulnerability.
Lorena RuizNARRATOR
2:39
24 hours doesn't seem like a lot of time, but in many cases the exploitation of these vulnerabilities can become something as simple as entering Shodan and doing a search of all vulnerable assets exposed to the internet and attacking them automatically.
Lorena RuizNARRATOR
2:54
So 24 hours is no small matter at all.
Lorena RuizNARRATOR
2:57
The next day, they again reviewed the information, and the results were again zero.
Nicola KawanaGUEST
47:31
Nice.
Nicola KawanaGUEST
47:32
Shodan,
Aggie TupouHOST
47:33
where can our viewers or where can those who are here in Melbourne be able to come and see this piece then? Yeah.
Shadon MeredithGUEST
47:39
Ah, Melbourne, yes.
Mike SaylorGUEST
15:41
And then you've got the people that really understand what the value of that exposed service.
Mike SaylorGUEST
15:47
And they're going to use tools like Shodan, which is a nefarious, it's not, it's a legitimate search engine, but it's a hundred percent used for bad stuff most of the time.
Mike SaylorGUEST
16:00
So in Shodan, so in Google, you would say, what is RDP? In Shodan, you would say, show me every network that has RDP service exposed to the internet around the entire globe.
Mike SaylorGUEST
16:13
And it will tell you.
Mike SaylorGUEST
16:15
So it looks for those types of things.
Chase CunninghamHOST
8:55
We're not talking about open source information here.
Chase CunninghamHOST
8:57
We're not talking about Googling and Shodan and stuff like that.
Chase CunninghamHOST
9:01
We're talking about letting private companies literally get inside of someone else's systems and do recon work, the stuff that we did at TAO at NSA.
Chase CunninghamHOST
9:10
OK, there are cyber effect operations as well, and this is where we sort of move from that to other things.
Craig PetersonGUEST
69:06
Automation controllers need to be able to have internet access so that engineers can log on remotely to monitor them, to manage And that can expose us to dramatic vulnerabilities if that equipment is not kept up to date and properly secured and regularly tested.
Craig PetersonGUEST
69:23
And we have seen plenty of online tools and data engines like Shodan where the Internet of Things is mapped out.
Craig PetersonGUEST
69:30
And connected devices ranging from CCTV to sophisticated engineering equipment controllers are available and accessible online, and they're poorly secured.
Craig PetersonGUEST
69:39
So that can create a major vulnerability, especially in emerging markets like South Africa, where the budget doesn't exist at the national level, then extraordinary amounts of money on security.
Paul AsadoorianHOST
52:01
But they say the tools are disguised as legitimate OT monitoring software, read and write PLC memory, and they found these exposed devices via Sensus and ZoomEye, which are essentially...
Paul AsadoorianHOST
52:19
Shodan-like sites.
Paul AsadoorianHOST
52:22
Targeting blah, blah, blah, targeting everything that runs PLCs.
Paul AsadoorianHOST
52:27
Notably, the advisory does not name a CVE, a threat actor, define indicators of compromise at all.
Paul AsadoorianHOST
52:01
But they say the tools are disguised as legitimate OT monitoring software, read and write PLC memory, and they found these exposed devices via Sensus and ZoomEye, which are essentially...
Paul AsadoorianHOST
52:19
Shodan-like sites.
Paul AsadoorianHOST
52:22
Targeting blah, blah, blah, targeting everything that runs PLCs.
Paul AsadoorianHOST
52:27
Notably, the advisory does not name a CVE, a threat actor, define indicators of compromise at all.
Paul AsadoorianHOST
52:01
But they say the tools are disguised as legitimate OT monitoring software, read and write PLC memory, and they found these exposed devices via Sensus and ZoomEye, which are essentially...
Paul AsadoorianHOST
52:19
Shodan-like sites.
Paul AsadoorianHOST
52:22
Targeting blah, blah, blah, targeting everything that runs PLCs.
Paul AsadoorianHOST
52:27
Notably, the advisory does not name a CVE, a threat actor, define indicators of compromise at all.

8 more episodes mention Shodan.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.