FEATURES / SEARCH TOOLS

Netlas IoT Search Engine

Discover a live atlas of internet‑connected devices and services

IoT Search Engine Screenshot IoT Search Engine Screenshot

Netlas offers a detailed snapshot of global online infrastructure by making requests to nearly every internet‑connected device with an IPv4 address. This data enables professionals to handle critical security tasks, from infrastructure analysis to risk assessment.

21 Days
Average Scan Cycle
902,086,120
Active Internet Services
6 Billion+
Historical Records

Search by Any Response Field

Find the Data You Need, with Precision

Netlas IoT Search Engine enables users to filter data by IP address, domain, port, protocol, or any section of the response content. This multi-parameter search delivers highly targeted results, making it easy to locate specific assets and services. Additionally, users can leverage mappings that include thousands of fields—covering both general and protocol-specific details—allowing for precise filtering and comprehensive analysis.

Netlas internet scan data - Response fields Netlas internet scan data - Response fields

Technology and Software Detection

Identify Software Stacks and Versions Across Assets

Netlas’s internet scan data includes detailed tagging to identify the technology and software running on internet-connected assets. With over 1,000 tags, users can analyze technology stacks, software versions, and configurations across a wide array of devices. This depth of information enables security teams to spot outdated software, assess potential vulnerabilities, and understand the underlying infrastructure supporting each asset.

Netlas internet scan data - Technology and software tags Netlas internet scan data - Technology and software tags

Passive Vulnerability Detection

Identify Security Weaknesses Without Active Scanning

Netlas IoT Search Engine data enables users to detect vulnerabilities passively, analyzing existing scan data without direct interaction with assets. This non-intrusive approach allows security professionals to identify potential weaknesses in software versions, configurations, and exposed services without performing active scans. By passively assessing vulnerabilities, organizations gain critical insights into risks while maintaining a low footprint and minimizing disruption.

Netlas internet scan data - Passive vulnerability detection Netlas internet scan data - Passive vulnerability detection

Advanced HTTP Support

In-Depth Analysis of HTTP Headers and Redirects

Netlas’s scanners have extensive support for the HTTP protocol, allowing users to access data on HTTP 301 and 302 redirects. This helps uncover server configurations and identify potential misconfigurations. By examining HTTP headers and redirect paths, professionals gain valuable insights into how web services are structured and maintained, supporting deeper security and infrastructure assessments.

Netlas internet scan data - Handling 301 and 302 redirects Netlas internet scan data - Handling 301 and 302 redirects

Search by Favicon

Locate Assets Using Unique Visual Signatures

Netlas IoT Search Engine provides the ability to search by favicon and perceptual hash, allowing users to find assets based on visual identifiers. Using favicon images and perceptual hashes, professionals can detect related websites, brand assets, or sites with similar visual markers. This visual search capability expands asset discovery beyond traditional identifiers, enabling a unique and effective method for identifying and clustering related online resources.

Netlas internet scan data - Search by favicon Netlas internet scan data - Search by favicon

Virtual Site Analysis

Efficient Analysis of Shared IP Infrastructure

Netlas’s scanners supports detailed analysis of virtual hosts. During scans, Netlas collects data from up to 30 million virtual sites associated with a single IP address. This capability is invaluable for examining complex, multi-tenant environments such as cloud-hosted services and shared hosting infrastructures. By analyzing virtual sites on shared IPs, professionals gain insights into large-scale hosting environments, monitor tenant activity, and assess the security of multi-tenant setups.

Netlas internet scan data - Searching for virtual sites Netlas internet scan data - Searching for virtual sites

Queries with Protocol Fields

Netlas supports a wide range of common protocols

Netlas search engine has advanced support of the most common network protocols. It means that host response fields are available as search query parameters. The mapping (fields available to search) consists of more than 10,000 fields. It’s increasing continuously with each new protocol supported. If an unknown protocol is detected, Netlas captures it as raw_tcp, preserving valuable information. This flexible, extensive protocol coverage helps users gain insights into a vast array of assets and configurations across the global online infrastructure.

Netlas internet scan data - Using protocol fields Netlas internet scan data - Using protocol fields

Search by RDP Screenshot Text

Extract Insights Directly from RDP Screenshots

Netlas takes RDP scanning to the next level by capturing screenshots during scans and performing text recognition on them. This innovative feature allows users to search not only by traditional parameters but also by the text extracted from RDP session screenshots. Whether identifying specific systems, configurations, or keywords, this capability provides unmatched depth in remote desktop protocol analysis, empowering users with visual and contextual insights.

Netlas internet scan data - Example of RDP response Netlas internet scan data - Example of RDP response

Threat Intelligence Capabilities

Certificate, JARM Fingerprints, Body Hashes, and Header Analysis

Netlas IoT Search Engine is designed with a focus on threat intelligence tasks, providing a comprehensive suite of tools for asset identification and tracking. In addition to certificate analysis and JARM fingerprinting, Netlas supports indicators such as body hashes and unusual HTTP headers, enabling precise detection of devices, configurations, and infrastructure associated with specific organizations or potentially malicious actors.

Netlas internet scan data - Threat intelligence capabilities Netlas internet scan data - Threat intelligence capabilities

Private Scans

Custom, High-Speed Scans Across a Wide Range of Ports

Netlas enables users to perform fast, private scans with its scanners, covering a wide range of ports. These high-speed scans can be conducted as often as needed, allowing organizations to gain timely, detailed insights into their assets. With flexible and frequent scanning capabilities, security teams can monitor specific services and configurations in real time, assess exposure, manage risks, and maintain a strong security posture.

Netlas internet scan data - Private Scans Netlas internet scan data - Private Scans

Get your free Netlas account!

Sign up to get up to 50 requests/day for free