Training
Get a free hour of SANS training

Experience SANS training through course previews.

Learn More
Learning Paths
Can't find what you are looking for?

Let us help.

Contact us
Resources
Join the SANS Community

Become a member for instant access to our free resources.

Sign Up
For Organizations
Interested in developing a training plan to fit your organization’s needs?

We're here to help.

Contact Us
Talk with an expert

Modern web browsers like Chrome, Edge, Safari, and Firefox are ubiquitous, and built-in synchronization capabilities have long since become a standard feature. For even longer, browsers have enabled users to save and edit bookmarks and the names and links stored for each. Where bookmarks were once confined to the device that saved them, this research describes how the ability to synchronize bookmarks across devices introduces a novel vector for data exfiltration and other misuses. As a part of this effort, Brugglemark is a basic PowerShell script that has been created to demonstrate the practical application of the findings presented. Potential countermeasures will also be explored by this paper.

Bookmark Bruggling: Novel Data Exfiltration with Brugglemark