For un scanner de internet self-hosted, the strongest matches are nmap/nmap (Nmap is a command-line network scanner for host and), zmap/zmap (ZMap is a fast single-packet network scanner for large-scale) and angryip/ipscan (ipscan is a local network scanner for discovering devices). robertdavidgraham/masscan and bee-san/rustscan round out the shortlist. Each is ranked by relevance to your query, popularity and recent activity.
Instrumente open-source pentru descoperirea, monitorizarea și analizarea infrastructurii expuse la internet și a activelor de rețea din propriul mediu.
Nmap is a command-line network security scanner and reconnaissance framework designed for infrastructure mapping and security auditing. It functions as a packet crafting utility that probes target systems to identify active hosts, detect open ports, and determine the services and operating systems running on a network. The tool distinguishes itself through its ability to perform raw socket packet injection and stateful connection tracking, allowing it to bypass standard operating system networking stacks. It utilizes an asynchronous concurrency model to manage large-scale network scans and em
Nmap is a command-line network scanner for host and port discovery, but it lacks the web-based search interface and searchable database that define a self-hosted internet-connected-device search engine like Shodan.
ZMap is a fast single packet network scanner designed for Internet-wide network surveys.
ZMap is a fast single-packet network scanner for large-scale surveys, but it is a command-line tool without a built-in web search interface, searchable database, or API, so it is a component for building a Shodan-like system rather than a ready-to-use self-hosted device search engine.
ipscan is a cross-platform network auditor and Java-based network scanner used for discovering networked devices and exporting scan results. It functions as an IP address range scanner and a TCP/UDP port scanner to identify active hosts and open services on a network. The application features a plugin-based fetcher architecture that allows the integration of custom data collection fetchers to retrieve specific hardware or software information from discovered hosts. Its broader capabilities include local network discovery, network port auditing, and the creation of network asset inventories.
ipscan is a local network scanner for discovering devices on your own network, not a tool for scanning and indexing internet-facing hosts on a global scale like Shodan, and it lacks the web-based search interface and API needed for the self-hosted device search engine you're after.
Masscan is a command-line network scanner designed for large-scale discovery and infrastructure reconnaissance. It identifies open ports across specific network segments or the entire internet by probing vast address ranges with high efficiency. The tool functions as an asynchronous packet engine, bypassing standard operating system kernel networking stacks to transmit raw packets directly from application memory. The project distinguishes itself through a specialized architecture that manages millions of concurrent connections by separating packet transmission and reception into independent
Masscan is a high-speed command-line port scanner, not a self-hosted search engine—it lacks the web UI, persistent database, and API that define a device search engine like Shodan, though its efficient scanning aligns with part of the workflow.
RustScan is a high-speed network reconnaissance tool designed for automated port discovery and service enumeration. It functions as an automated vulnerability scanner that identifies open ports and active services across network environments, providing a foundation for mapping attack surfaces and gathering intelligence on target systems. The tool distinguishes itself through its ability to dynamically adjust scanning parameters and concurrency in real-time based on system feedback, ensuring efficient performance while preventing network congestion. It features an extensible architecture that
RustScan is a high-speed command-line port scanner and service enumerator, not a self-hosted web-based search engine with a searchable database and API—it is the scanning component you would need to build such a system, not the complete tool.
Th3inspector is a command-line open-source intelligence reconnaissance tool used for gathering public information on websites, phone numbers, and network records. It functions as a central interface for collecting technical metadata and performing various lookups to build profiles of target entities. The project provides specialized verification utilities for validating email addresses, phone numbers, and credit card bank identification numbers. It also includes tools for retrieving domain registration age, ownership records, and identified subdomains from global databases. Additional capabi
Th3inspector is a command-line OSINT toolkit that can perform port scans and subdomain lookups, but it lacks a web-based search interface, a persistent searchable database, and scheduled scanning — so it is a related reconnaissance tool rather than a self-hosted internet-connected device search engine like Shodan.
Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to identify active services. It functions as a Go library for embedding port scanning into programs, and as a standalone tool that accepts targets as hostnames, IP addresses, CIDR ranges, or ASN numbers. The tool discovers live hosts before scanning, filters ports by range or top lists, and can integrate with Nmap for service version detection. The project distinguishes itself through its SYN-based port probing approach that sends TCP SYN packets and analyzes responses without complet
Naabu is a fast port scanner and library for discovering open ports and services on targets, but it lacks the web-based search interface, persistent indexed database, and scheduled scanning features that define a self-hosted internet-connected device search engine like Shodan—it is a building block rather than a complete search platform.
Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It functions as a discovery engine that identifies and maps internet-exposed infrastructure, cloud-hosted assets, and network ranges to maintain a comprehensive inventory of an organization's digital footprint. The project distinguishes itself through a modular, template-driven scanning engine that executes security checks against discovered assets. It leverages cloud-native asset discovery to query provider APIs and infrastructure metadata, while supporting distributed agent orc
Subfinder is a subdomain enumeration and attack-surface management tool focused on mapping an organization's digital footprint, not an internet-wide device and service scanner like Shodan — it covers the reconnaissance domain but lacks cross-IP-range scanning, port discovery, and a searchable index of all connected hosts.
Nuclei is a modular security scanning framework designed for automated vulnerability detection and infrastructure reconnaissance. It functions as a template-driven engine that executes security checks across diverse network protocols, allowing users to define custom detection logic to identify vulnerabilities, misconfigurations, and exposed assets. The platform distinguishes itself through its highly extensible architecture, which supports distributed scanning, headless browser automation for dynamic web content, and out-of-band interaction monitoring to detect blind vulnerabilities. It integ
Nuclei is a powerful security scanning framework for vulnerability detection and infrastructure reconnaissance, but it is a scanning tool rather than a self-hosted search engine that indexes and provides a searchable database of internet-connected devices like Shodan.