Actor
high
threat
Suspicious Process Accessing Browser Password Store
2 rules 1 TTPDetection of non-browser processes accessing browser user data folders, a tactic used by malware such as Snake Keylogger to steal credentials and sensitive information.
Splunk Enterprise +2
Snake Keylogger
credential-access
stealer
windows
2r
1t
high
threat
Unusual Process Accessing Browser Password Store
2 rules 1 TTPA Windows anomaly detection identifies non-browser processes accessing browser user data profiles, indicative of credential theft by malware such as SnakeKeylogger, which attempts to gather sensitive browser information.
Chrome +2
Snake Keylogger
credential-access
trojan
windows
2r
1t