<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>BelphC2 on Vanilla InfoSec</title>
    <link>/tags/belphc2/</link>
    <description>Recent content in BelphC2 on Vanilla InfoSec</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <lastBuildDate>Wed, 13 May 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="/tags/belphc2/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>BelphC2 - Jitter Logic and Chaos Theory</title>
      <link>/posts/belphc2---jitter-logic-and-chaos-theory/</link>
      <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
      <guid>/posts/belphc2---jitter-logic-and-chaos-theory/</guid>
      <description>BelphC2 - Jitter Logic and Chaos Theory Disclaimer Is this necessary? Probably not&amp;hellip; Do I find this cool and do I want to blab about it? Yes!&#xA;Introduction to Jittering While developing BelphC2&amp;rsquo;s polling behavior, I had to decide how to generate seemingly random jittering values.&#xA;Most post exploitation frameworks implement some form of a jitter.&#xA;The term &amp;ldquo;jitter&amp;rdquo; refers to how a post exploitation framework&amp;rsquo;s beacon/implant manages its communication or ‘polling’ intervals.</description>
    </item>
    <item>
      <title>BelphC2 - Dumping Passwords out of Web Browsers</title>
      <link>/posts/belphc2---dumping-passwords-out-of-web-browsers/</link>
      <pubDate>Sun, 01 Mar 2026 00:00:00 +0000</pubDate>
      <guid>/posts/belphc2---dumping-passwords-out-of-web-browsers/</guid>
      <description>Save password..? Yes It feels like web browsers have accidentally become credential vaults? Mainly because&amp;hellip; Well we typically hit &amp;ldquo;save password&amp;rdquo; when prompted: Admittedly, without much prior thought! Credentials for:&#xA;Email accounts. Banking logins. Corporate VPN credentials. Cloud dashboards. Developer secrets. Session tokens. But there&amp;rsquo;s an important detail here in regards to how these browsers secure credentials in default configurations:&#xA;Browser password managers are often designed to protect data at rest, not necessarily protect data from the logged-in user context itself.</description>
    </item>
  </channel>
</rss>
