Can this host mitigate procedures used in LokiBot malware?

/static/assets/windows-logo.svg
CISA released an advisory in August 2022 on LokiBot malware, which can steal victims' information. This TTP emulates LokiBot's collection of browser information and stored credentials. Protection from credential dumping is essential because malware may steal account credentials to gain access to information for use in lateral movement and privilege escalation.
locked
View Command

To view this TTPs command, you must be logged in with a professional or enterprise license.

Login

Test this TTP

Download Operator (1.7.0)
Test this TTP using one of our Operator chains
Can this host mitigate procedures used in LokiBot malware?

2022-08-23

/static/assets/windows-logo.svg
Emulates LokiBot Password Stealer's procedures for credential harvesting.