Enumerating Users & Groups

Windows

Info to look for

  • current user and privileges

  • additional user info

  • other users on the system

  • groups

  • members of the built-in administrator group

Commands

  • getprivs

  • post exploitation module logged_on_users

  • whoami -> shell

  • whoami /priv -> shell

  • query user

  • net users

  • net user administrator

  • net localgroup

  • net localgroup adminstrators

Linux

Info to look for

  • current user & privileges

  • other users on the system

  • groups

Commands

  • getuid

  • whoami

  • sudo -l

  • groups <user>

  • cat /etc/passwd

  • cat /etc/passwd | grep -v /nologin

  • groups

  • last -> last login users

  • lastlog -> last logged in users

Last updated