Once you have your information collected from scanning, such as open ports and information about running services, you can move to enumeration. During this process, you can expect to gain a lot more information that can be acted on later. If you are lucky and score big, you may find yourself in possession of information such as user accounts, the device hostnames, network shares, and services. It is also worth noting that you are increasing your visibility and, along with it, your possibility of being detected, so you want to tread as lightly as possible and be measured in your actions.
The following is a list of some information that is gathered during the enumeration process:
- Network shares
- Users and groups
- Running services and their banner
- DNS records