Windows hole 8 : No previous logon time and computer display when user logs on

Imagine the following scenario: a user is coming up to his workstation and after he correctly entered his username and password, the computer prompts a dialog box saying: «Hello John Smith, you have been authenticated. The last time that your account was successfully logged on was at 2 a.m., from computer such-and-such.»

What if this user recognizes that he had not logged on at that time? That would indicate that someone else had successfully logged on as him and impersonated him. This is one of the most effective ways to detect people impersonating other user accounts, providing your users are reasonably security aware.

That does not exist in Windows although this feature is required for an Information System to comply with major regulatory constraints, including:

UserLock allows notifying all users prior to gaining access to a system with a tailor-made warning message. These messages can for example include:

  • a tailor-made legal disclaimer
  • last workstation logged on
  • date and time of last successful logon
  • history of all logons denied by UserLock and Windows since last successful logon
  • number of logons denied by UserLock and Windows since last successful logon
  • time quota information

Share this page: