Extracting Clear Text Passwords from BCTextEncoder using API Hooking.
Code and project name are modified from RdpThief.
Learning from:
- Red Team Notes: API Monitoring and Hooking for Offensive Tooling
- Rio Sherri: RdpThief: Extracting Clear-text Credentials from Remote Desktop Clients
- Ariasaka: 运用 Windows 的 Hook 淦极域 && MinHook 入门教程
Detailed walkthrough in this post(Chinese).