Censys is a search engine that allows computer scientists to ask questions about the devices and networks that compose the internet.


Censys vs Shodan Comments
Fresher data, more ports scanned


- Censys is Freemium and Open Source
The best open source alternative to Shodan is Censys. If that doesn't suit you, our users have ranked more than 25 alternatives to Shodan and eight of them is open source so hopefully you can find a suitable replacement. Other interesting open source alternatives to Shodan are IVRE, wapiti, LeakIX and Natlas.
Censys is a search engine that allows computer scientists to ask questions about the devices and networks that compose the internet.


Fresher data, more ports scanned


Great for indexing local networks and such
Because it's an open-source framework for scanning, indexing and researching data about connected device... Like Shodan.
Because it's completely free and open-source and works exactly like Shodan.


Wapiti allows you to audit the security of your web applications. Wapiti is a command line tool.
LeakIX is a search engine indexing open hosts on the internet. It focuses on listing the databases and table names and keeps a history of every successful connection.
Has less data but is free for all. Also table names (mysql), collection names (mongo), index names ( elasticsearch ) and topic ( kafka ) names are searchable.
Simple, too the point indexer with nice querying capacities


Natlas is an open source project designed to provide scalable network scanning and an interface to search through the results. For more information, visit github.com/natlas/natlas




Vega is a free and open source scanner and testing platform to test the security of web applications. Vega can help you find and validate SQL Injection, Cross-Site Scripting (XSS), inadvertently disclosed sensitive information, and other vulnerabilities.



A fully automated, active web application security reconnaissance tool. Key features: High speed: pure C code, highly optimized HTTP handling, minimal CPU footprint - easily achieving 2000 requests per second with responsive targets.


Grabber is a web application scanner. Basically it detects some kind of vulnerabilities in your website.
no limit on number of searches, lots of filters