Microsoft Windows SMB Registry : Last Logged User Name Disclosure

Info Nessus Plugin ID 11459


It is possible to know last logged user name.


The registry key HKLM\Software\Microsoft\Windows NT\WinLogon\DontDisplayLastUserName is not set to 1.

It means that users who attempt to log in locally will see the name of the last user who logged in successfully in this computer on the screen.


Use regedt32 and set the value of this key to 1

Plugin Details

Severity: Info

ID: 11459

File Name: smb_reg_dontshowlastusername.nasl

Version: $Revision: 1.14 $

Type: local

Agent: windows

Family: Windows

Published: 2003/03/24

Modified: 2015/01/12

Dependencies: 10400, 10150, 10394

Risk Information

Risk Factor: Info

Vulnerability Information

Required KB Items: SMB/transport, SMB/name, SMB/login, SMB/password, SMB/registry_access