shodan.md

For the complete documentation index, see llms.txt. Markdown versions of documentation pages are available by appending .md to page URLs; this page is available as Markdown.

Shodan

{% hint style="info" %}
Shodan is a Threat Intelligence (TI) integration. TI Data Source integrations are used during investigations to improve analysis and in interactive chat to help answer questions. They are optional, but enabling more tooling integrations enhances Dropzone analysis.
{% endhint %}

The Dropzone platform integrates with Shodan, a search engine for devices on the internet. Dropzone can use it for identifying IP device characteristics such as hosting ownership, open ports, or known vulnerabilities.

Create an API Key

Shodan requires an API key to enable.

To obtain an API key, do the following:

If you do not already have a corporate Shodan account, create one and become a member:

Next, retrieve your API key

Click on "Developer" in the menu bar

Show API Key

Enable Shodan

To enable the Data Source integration, do the following:

Integrations Dropdown

Click Available

The Shodan Data Tile

The Shodan Data Source Configuration

If you have any errors engage your Dropzone AI support representative.