Files
Angerona/documentation-payload/Cazalla/commands/whoami.md
T
marcos.luna 2fe9fa8254 wiki created
2025-11-06 12:23:49 +01:00

1022 B

whoami - Display Current Context

Display the current security context of the agent.

Description

The whoami command displays the current security context of the agent. Shows the username and domain of the active security token. If token impersonation is active, displays the impersonated user context.

Syntax

whoami

Examples

whoami

Features

  • Shows the username and domain of the active security token
  • If token impersonation is active (via steal_token or make_token), displays the impersonated user context
  • Otherwise, displays the process token context
  • Useful for verifying that token operations succeeded and for confirming the current privilege level before executing commands that require specific permissions

Output

Current user: DOMAIN\User01
Domain: DOMAIN

Token Support, Context Tracking


Command Category: Token Operations
Requires Admin: No