#Windows Security #Reconnaissance #SMB
Recon of SMB (445)
Shares enumeration
Enumeration using Guest account or Anonymous Logon. Both of these logons are quite rare. Most often only Authenticated Users
have access to shares.
Guest
account (no password) is disabled by default. Guest account is a member ofEveryone
group but it's not a member ofAuthenticated Users
group. Also, even if Guest account is enabled, its access to SMB shares is still disabled by default. Documentation: here.- Anonymous Logon (no username, no password) is a special group, not even included in the built-in
Everyone
group since Windows XP. You still need to set some options (example), it is quite complicated to give Anonymous Logon access to SMB share.
Linux:
Windows:
Connect to share
Connect to a specific SMB share: