A Search Engine Backed by Internet-Wide Scanning

被引:229
|
作者
Durumeric, Zakir [1 ]
Adrian, David [1 ]
Mirian, Ariana [1 ]
Bailey, Michael [2 ]
Halderman, J. Alex [1 ]
机构
[1] Univ Michigan, Ann Arbor, MI 48109 USA
[2] Univ Illinois, Champaign, IL USA
基金
美国国家科学基金会;
关键词
D O I
10.1145/2810103.2813703
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Fast Internet-wide scanning has opened new avenues for security research, ranging from uncovering widespread vulnerabilities in random number generators to tracking the evolving impact of Heartbleed. However, this technique still requires significant effort: even simple questions, such as, "What models of embedded devices prefer CBC ciphers?", require developing an application scanner, manually identifying and tagging devices, negotiating with network administrators, and responding to abuse complaints. In this paper, we introduce Censys, a public search engine and data processing facility backed by data collected from ongoing Internet-wide scans. Designed to help researchers answer security-related questions, Censys supports full-text searches on protocol banners and querying a wide range of derived fields (e.g., 443. https. cipher). It can identify specific vulnerable devices and networks and generate statistical reports on broad usage patterns and trends. Censys returns these results in sub-second time, dramatically reducing the effort of understanding the hosts that comprise the Internet. We present the search engine architecture and experimentally evaluate its performance. We also explore Censys's applications and show how questions asked in recent studies become simple to answer.
引用
收藏
页码:542 / 553
页数:12
相关论文
共 50 条
  • [21] Pervasive Internet-Wide Low-Latency Authentication
    Kraehenbuehl, Cyrill
    Legner, Markus
    Bitterli, Silvan
    Perrig, Adrian
    30TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2021), 2021,
  • [22] Dynamic adaptation of scan rates for efficient and congestion-aware internet-wide scanning in IoT security
    Velayudham, A.
    Priya, M. S. Krishna
    EVOLVING SYSTEMS, 2025, 16 (01)
  • [23] Please Stop Knocking on My Door: An Empirical Study on Opt-Out of Internet-Wide Scanning
    Kasama, Takahiro
    Endo, Yukiko
    Kubo, Masaki
    Inoue, Daisuke
    IEEE ACCESS, 2025, 13 : 48416 - 48430
  • [24] Sundials in the Shade An Internet-Wide Perspective on ICMP Timestamps
    Rye, Erik C.
    Beverly, Robert
    PASSIVE AND ACTIVE MEASUREMENT, PAM 2019, 2019, 11419 : 82 - 98
  • [25] Enabling Internet-Wide Deployment of Explicit Congestion Notification
    Trammell, Brian
    Uhlewind, Mirja K.
    Boppart, Damiano
    Learmonth, Iain
    Fairhurst, Gorry
    Scheffenegger, Richard
    PASSIVE AND ACTIVE MEASUREMENT (PAM 2015), 2015, 8995 : 193 - 205
  • [26] Measuring Popularity of Cryptographic Libraries in Internet-Wide Scans
    Nemec, Matus
    Klinec, Dusan
    Svenda, Petr
    Sekan, Peter
    Matyas, Vashek
    33RD ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2017), 2017, : 162 - 175
  • [27] BigBen: Telemetry Processing for Internet-Wide Event Monitoring
    Syamkumar, Meenakshi
    Gullapalli, Yugali
    Tang, Wei
    Barford, Paul
    Sommers, Joel
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (03): : 2625 - 2638
  • [28] A Design of Automated Vulnerability Information Management System for Secure Use of Internet-Connected Devices Based on Internet-Wide Scanning Methods
    Kim, Taeeun
    Kim, Hwankuk
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2021, E104D (11): : 1805 - 1813
  • [29] 6Subpattern: Target Generation Based on Subpattern Analysis for Internet-Wide IPv6 Scanning
    Liu, Chong
    Li, Ruixiang
    Yuan, Fuxiang
    Ding, Shichang
    Liu, Yan
    Luo, Xiangyang
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2024, 21 (04): : 3692 - 3710
  • [30] Assessing Internet-wide Cyber Situational Awareness of Critical Sectors
    Husak, Martin
    Neshenko, Nataliia
    Pour, Morteza Safaei
    Bou-Harb, Elias
    Celeda, Pavel
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,