Censys
| Censys | |
|---|---|
| Developer | Censys |
| Release | 2017 |
| Website | censys |
Censys is a security service and company that provides internet intelligence based on perpetual scanning of the internet.[1] As of 2023, it had 350,000 users.[2] It was first created in 2015 at the University of Michigan.[3][4]
Background
[edit]Censys began in 2015 in a computer science lab at the University of Michigan.[3][4] It was created by Zakir Durumeric[5] in professor Alex Halderman's computer lab[6] as an extension of the "ZMap" open-source project Durumeric had previously developed in 2013.[3] It started as an academic project,[7] but rights in the technology were transferred to Halderman to commercialize the technology.[6]
The first product, Censys Search, was released in 2017.[1] In 2018, it raised $2.6 million in seed funding.[3] Censys pivoted to attack surface management,[3] and in 2019 added exposure management, whereby it identifies security risks related to an organization's internet-connected devices.[1] In 2020, Censys raised another $15.5 million series A funding.[3] This was followed by another $70 million in financing in 2026.[8] By 2026, it raised $149 million in total.[9]
Features
[edit]Censys is based on the open-source project ZMap[10] and was created by the same founders.[3] Censys sends an "application-layer handshake" to every device connected to the internet with an IP address. Then, it obtains information about the device and its software, such as whether the device has an unpatched vulnerability,[6] a list of protocols the device uses, and its network ports.[11] Censys imports data on about three billion IP addresses each day.[5] Censys itself is commercial software,[10] but is free to non-commercial users, like security researchers.[6]
Security researchers use it to determine how many devices could be affected by a new security vulnerability.[4] For example, a security firm called Duo Security (now part of Cisco) used Censys to learn that a water plant in Kentucky was affected by a security vulnerability in Dell computers in circa 2015, prompting the U.S. Department of Homeland Security to get involved in fixing the vulnerability.[4] In 2024, Censys researchers identified almost 400 water treatment control systems were unintentionally connected to the internet and worked with the US Environment Protection Agency to resolve the security issue.[12]
For commercial users, Censys has tools to find vulnerabilities or indications of a security breach,[2][6] based on an analysis of data from large scans of the internet, combined with logic and context information.[11][1] Censys consists of three main areas. The first, "Internet Intelligence", refers to a search engine for information about internet connected systems.[13][1] The second is External Attack Surface Management (EASM), which refers to filtering and analyzing data about internet-connected systems to identify security problems,[13][1] which are assigned a "severity score".[1] The third is External Threat Intelligence, which refers to collecting information about potential or active security threats.[14]
The Censys API is used to send data to other security software tools.[1] In circa 2023, it introduced an AI chatbot, initially as a beta feature. Instead of a traditional search with filters, the user can type in sentences telling the software what internet-connected devices the user is looking for, such as asking for a list of FTP services in a country.[2][1]
Further reading
[edit]- Bennett, Christopher; Abdou, Abdel; van Oorschot, Paul (May 14, 2021). "Empirical Scanning Analysis of Censys and Shodan". NDSS Symposium. Carleton University. Retrieved June 6, 2026.
References
[edit]- 1 2 3 4 5 6 7 8 9 Turner, Rik (January 11, 2024), On the Radar: Censys vertically integrates search and EASM, OMDIA
- 1 2 3 Wiggers, Kyle (October 24, 2023). "Censys lands new cash to grow its threat-detecting cybersecurity service". TechCrunch. Retrieved June 2, 2026.
- 1 2 3 4 5 6 7 Sawers, Paul (August 5, 2020). "Censys raises $15.5 million to bring attack surface management to more companies". Venturebeat. Retrieved June 3, 2026.
- 1 2 3 4 Simonite, Tom (December 4, 2015). "A Search Engine for the Internet's Dirty Secrets". MIT Technology Review. Retrieved June 2, 2026.
- 1 2 Saeed, Faisal; Al-Hadhrami, Tawfik; Mohammed, Fathey; Mohammed, Errais (October 19, 2020). Advances on Smart and Soft Computing: Proceedings of ICACIn 2020. Springer Nature. ISBN 978-981-15-6048-4. Retrieved June 2, 2026.
- 1 2 3 4 5 Cherry, Gabe (January 26, 2018). "Internet-scanning U-M startup offers new approach to cybersecurity". Michigan Engineering News. Retrieved June 3, 2026.
- ↑ Keshvadi, Sina (November 1, 2023). Enhancing Western Organizational Cybersecurity Resilience through Tailored Education for Non-Technical Employees. IEEE. p. 1–6. doi:10.1109/IHTC58960.2023.10508824. ISBN 979-8-3503-1431-1. Retrieved June 13, 2026.
- ↑ Nagl, Kurt (March 31, 2026). "UM spinoff cybersecurity firm lands $70M new financing round for AI push". Crains Detroit Business.
- ↑ Metinko, Chris (March 30, 2026). "Exclusive: Internet intel startup Censys lands $70M". Axios. Retrieved June 16, 2026.
- 1 2 Richter, Philipp; Bajpai, Vaibhav; Carisimo, Esteban (March 19, 2024). Passive and Active Measurement: 25th International Conference, PAM 2024, Virtual Event, March 11–13, 2024, Proceedings, Part I. Springer Nature. ISBN 978-3-031-56249-5. Retrieved June 2, 2026.
- 1 2 Djidjev, Christie (December 8, 2024), siForest: Detecting Network Anomalies with Set-Structured Isolation Forest, University of Texas at Austin
- ↑ Bleiberg, Jake (August 7, 2024), "Cyber Researchers Push Water, Oil Utilities to Fix Weak Spots", Bloomberg, retrieved June 16, 2026
- 1 2 Naydenov, Martin (December 2024), Frost Radar: External Attack Surface Management, 2024, Frost & Sullivan
- ↑ Wrozek, Brian; Maxim, Merritt; Sjoblom, Sara; Vincent, Katie; Fritz, Marissa (January 9, 2025), The External Threat Intelligence Service Providers Landscape, Q12025