Edge Login Data

Overview

Evidence: Edge Login Data Description: Collect Edge Login Data Category: Applications Platform: macos Short Name: elgd Is Parsed: Yes Sent to Investigation Hub: Yes Collect File(s): No

Background

Browser login data stores saved passwords and credential information. This data is critical for identifying stored credentials, password reuse patterns, and potential credential theft targets.

Data Collected

This collector gathers structured data about edge login data.

Edge Login Data Data

Field
Description
Example

ID

ID

123

UserName

User Name

Example value

BrowserName

Browser Name

Example value

OriginURL

Origin URL

Example value

SignonRealm

Signon Realm

Example value

BlacklistedByUser

Blacklisted By User

123

Scheme

Scheme

Example value

PasswordType

Password Type

Example value

TimesUsed

Times Used

123

Profile

Profile

Example value

Path

Path

Example value

DateCreated

Date Created

2023-10-15 14:30:25+03:00

DateLastUsed

Date Last Used

2023-10-15 14:30:25+03:00

Collection Method

This collector extracts saved credentials from the browser's Login Data database, including URLs, usernames, and encrypted passwords.

Forensic Value

Login data analysis reveals stored credentials, password reuse across services, targeted accounts, and potential credential harvesting. Investigators can identify compromised accounts, credential theft attempts, and unauthorized access to saved credentials by malware or attackers.

Last updated

Was this helpful?