Hacker News new | ask | show | jobs
by mike_d 823 days ago
I'm currently mass scanning IPv6, so are others. v6 results have been on Shodan for I think 7 or 8 years at least?
2 comments

Are you aware of what SLAAC does? For the most part your scan results are going to be useless in <24h
https://www.rfc-editor.org/rfc/rfc7707#section-4

But in general devices using SLAAC are not typically the things you are looking for when scanning.

Hosts with randomized addresses are likely to have auto-generated PTR records, or none at all, so for the purpose of rDNS resolution those are not a big issue.

And that’s a detail, but SLAAC as in RFC4842 is deterministic. The randomization is introduced by the privacy extensions in RFC4941.

How large of a prefix are you scanning and are you preseeding your scans?