IT Forensics · OSINT
Identifying IoT devices using OSINT – Forensically tracing publicly accessible connected devices
Connected devices such as cameras, routers or control systems are sometimes accessible via the internet without adequate protection and can act as a gateway for attackers.
As part of existing security investigations, we carry out a structured analysis to identify which publicly accessible networked devices can be linked to a relevant organisation.
Why LanCologne?
Since its foundation, LanCologne has specialised in professional IT forensics. Our staff have decades of experience in the field of information technology and assist companies, solicitors, private individuals and, on a regular basis, the courts in the technical investigation of complex digital matters.
Our OSINT investigations are always carried out as a complementary component to existing IT forensic, legal or internal corporate enquiries. Every step of the investigation and every piece of digital evidence found is documented and, where technically possible, archived to ensure traceability even if the original online content is subsequently altered or deleted.
Our services
We use Shodan to investigate publicly accessible networked devices linked to a relevant organisation and document the results in a manner that is forensically verifiable.
Typical areas of application
How an IoT device search works
Shodan is used to identify publicly accessible networked devices with a recognisable link to the relevant organisation; the device type, visible configuration and recognisable vulnerability indicators are documented.
Why is IoT device investigation relevant in a forensic context?
Insufficiently protected connected devices pose a significant security risk and are specifically targeted by attackers.
Forensic documentation may also prove useful retrospectively in reconstructing a possible point of entry in the event of a security incident.
Frequently Asked Questions
LanCologne – IT Forensics OSINT Cologne
Do you require a professional OSINT investigation into „identifying IoT devices using OSINT"? LanCologne can assist you with the transparent, documented analysis of publicly available digital sources to support your IT forensic, legal or internal corporate enquiries.
Related to this topic
- Conducting a forensic WHOIS search – analysing domain owner information in a forensically verifiable manner
- Forensic analysis of DNS history – Forensic investigation of historical DNS records
- Analysing SSL/TLS certificates using OSINT – utilising certificate data forensically for infrastructure reconnaissance
- Conducting subdomain enumeration for forensic purposes – Forensically identifying associated subdomains within a target infrastructure