Home M-SOC Shipcrawler Haris
Other Services Web Development Networking Mobile App Development
Contact Blog Free Fleet Scan
PASSIVE OSINT AUDIT Shodan · Censys · Satellite ASN Blocks

See your fleet the way an attacker does.

Shipcrawler queries public search indexes and satellite ASN ranges to reveal what is exposed on commercial vessels: unauthenticated VSAT terminals, open Telnet ports, and bridge camera feeds. 100% passive. No agent. No shipboard access needed.

Shipcrawler Recon // Terminal
Passive Satellite ASN Sweep
TARGET INGESTION ENGINE // ZERO-TOUCH OSINT SCAN ENGINE ACTIVE EXPOSURE // SAILOR 900 WEB GUI Inmarsat IP: 148.251.xx.xx · Port 80/443 Finding: Unauthenticated Admin Interface CRITICAL EXPOSURE // TELNET PORT 23 OPEN Marlink ASN · Plaintext Stream Active Finding: Factory Default Credential Banner WARNING EXPOSURE // RTSP CCTV FEED Iridium Certus · Port 554 RTSP Finding: Bridge Cam Stream Unprotected ATTN FINGERPRINT MATCH // IMO 0097421 ASN QUERY: AS8895 (INMARSAT MARITIME) HTTP :80 EXPOSED HTTPS :443 EXPOSED TELNET :23 ROOT LOGIN 24H CONFIDENTIAL DOSSIER READY Contains step-by-step terminal isolation guidelines Formatted for Class & PSC 2026 reporting ✓ ZERO ONBOARD SOFTWARE · 100% PASSIVE SATELLITE RECON AUDIT CERTIFIED ●
Recon Method Passive OSINT NON-INVASIVE ●
Shipboard Agent Zero NO ACCESS NEEDED ●
Turnaround 24 Hours CONFIDENTIAL ●

Request a free, confidential 3-vessel exposure report delivered directly to your fleet superintendent.

Request Free Audit →
01 · Attack surface

Three exposure vectors attackers target first.

How threat actors find and fingerprint commercial vessels on public satellite IP ranges without ever setting foot on board.

VECTOR 01 // VSAT PANELS
https://148.251.xx.xx/login.cgi SAILOR 900 // ADMIN LOGIN User: admin · Pass: [DEFAULT] REMOTELY TAKEOVERABLE

Exposed VSAT GUIs

Satellite terminal management panels left open on public satellite IP ranges, frequently protected only by default factory credentials, allowing remote reconfiguration.

VECTOR 02 // PORT 23 TELNET
$ telnet 185.12.xx.xx 23 Connected to Vessel Bridge WAN Router. Escape character is '^]'. Password: ********** (UNENCRYPTED PLAINTEXT) router# show nmea-bridge interfaces

Open Bridge Telnet (Port 23)

Unencrypted remote administration ports reachable from the public internet, transmitting bridge credentials in cleartext and granting root shell access.

VECTOR 03 // RTSP VIDEO
LIVE RTSP FEED: UNPROTECTED PORT 554 NO AUTH

Unprotected Bridge Cameras

IP surveillance streams forwarded without authentication, enabling external threat actors to visually confirm ship coordinates, weather, and crew watch patterns.

Recon Scope
100%
Passive Intelligence
Queries only public satellite ASN subnets and indexes. No intrusive packet probes.
Installation
0
Software Required
Requires zero crew intervention, zero onboard hardware, and zero ship visits.
Turnaround
24h
Executive Delivery
Confidential report with verified IP findings sent directly to your fleet manager.
Free Fleet Audit
3
Vessels Tested Free
Identify your fleet's external attack surface with no commitment or NDA overhead.
02 · Fleet report

Request a free 3-vessel exposure report.

Provide 3 vessel names or IMO numbers. Our OSINT team will generate a confidential vulnerability assessment delivered within 24 hours.

Confidential Fleet Audit Request
Encrypted Dispatch · Tallinn / Al Khobar