logo

Audit and eliminate unused local admin accounts

ID: c648339f-0b74-51a8-afc8-6aa6bcbe7b47

STIX ID: report--c648339f-0b74-51a8-afc8-6aa6bcbe7b47

Feed Name: ThreatLocker Blog

Date Published: 2025-06-25

Date Updated: 2026-05-01

...
...

This ThreatLocker ‘100 days to secure your environment’ webinar guide explains how to audit local administrator accounts using a PowerShell script to list members and their last logon, enabling organizations to remove unnecessary privileges and minimize credential exposure. It highlights using Elevation Control to grant application-specific elevations without revealing admin credentials and recommends progressing to enforcing a password-protected screensaver as the next hardening step.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.