FTP User Enumeration

Students first need to download the "Footprinting-wordlist.zip"wordlist ZIP file from the "Resources" tab and then unzip it:

wget https://academy.hackthebox.com/storage/resources/Footprinting-wordlist.zip
unzip Footprinting-wordlist.zip

SMTP

β”Œβ”€[us-academy-1]─[10.10.14.69]─[htb-ac413848@pwnbox-base]─[~]
└──╼ [β˜…]$ wget https://academy.hackthebox.com/storage/resources/Footprinting-wordlist.zip

--2022-08-03 06:53:53--  https://academy.hackthebox.com/storage/resources/Footprinting-wordlist.zip
Resolving academy.hackthebox.com (academy.hackthebox.com)... 104.18.20.126, 104.18.21.126, 2606:4700::6812:147e, ...
Connecting to academy.hackthebox.com (academy.hackthebox.com)|104.18.20.126|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: 602 [application/zip]
Saving to: β€˜Footprinting-wordlist.zip’

Footprinting-wordlist.zi 100%[==================================>]     602  --.-KB/s    in 0s      

2022-08-03 06:53:53 (10.3 MB/s) - β€˜Footprinting-wordlist.zip’ saved [602/602]
β”Œβ”€[us-academy-1]─[10.10.14.69]─[htb-ac413848@pwnbox-base]─[~]
└──╼ [β˜…]$ unzip Footprinting-wordlist.zip

Archive:  Footprinting-wordlist.zip
  inflating: footprinting-wordlist.txt 

Subsequently, students need to use smtp-user-enum, specifying the downloaded wordlist for the -U (short version of file-of-usernames) option, and 20 for the -w option, which sets the maximum number of seconds for waiting for replies:

Last updated