1 of 8

Future Work

Asbjørn Reglund Thorsen CISO @ Sikt

EUNIS Security SIG Workshop 25.02.22

2 of 8

OSINT

A lot of security information available on the Internet (partly free)

  • Shodan
  • Censys
  • Rapid7

How to best make use of it?

  • Spiderfoot
  • Amass

2

3 of 8

3

https://github.com/OWASP/Amass

4 of 8

OWASP amass

  • performs network mapping of attack surfaces and external asset discovery using open source information gathering and active reconnaissance techniques.

4

5 of 8

5

6 of 8

Quick video demo

6

7 of 8

7

8 of 8

info@eunis.org