SMTP

Ports

25, 465, 587

Enumerating what commands are available to us

sudo nmap -p25 --script=smtp-commands 10.129.34.39

Enumerating users

we can enumerate users if at least one of the following commands are enabled on the smtp server

  • VRFY

  • RCPT TO

MANUALLY

we can make use of telnet or netcat to establish a connection to the smtp server

  • We can see we have identified a user on the smtp server nico@megabank.com

  • if the user didn't exists we would smtp would have replied with

we can also utilize a script to automate the process

Last updated