Skip to content

79 - Pentesting finger

nmap

nmap -n -sV -Pn -p- <IP>
79/tcp    open  finger     Linux fingerd 

check if any user is logged on

finger @<IP>
finger root@192.168.0.102
finger szalek@192.168.0.102
finger user@192.168.0.102

finger-user-enum.pl

./finger-user-enum.pl -U /usr/share/wordlists/seclists/Usernames/Names/names.txt -t 10.10.10.76

metasploit

  • auxiliary/scanner/finger/finger_users