Windows Credential Manager

Windows Credential Manager

The Windows Credentials Manager lets users store credentials for systems and websites in the secure Windows Vault.

Credential management by using Credential Manager is controlled by the user on the local computer. Users can save and store credentials from supported browsers and Windows applications to make it convenient when they need to sign in to these resources.

When a website, an application, or another computer requests authentication through NTLM or the Kerberos protocol, a dialog box appears in which you select the Update Default Credentials or Save Password check box. This dialog box that lets a user save credentials locally is generated by an application that supports the Credential Manager APIs.

I can access Credential Manager via the following commands.

# Legacy Stored Usernames and Passwords dialog:
rundll32.exe keymgr.dll,KRShowKeyMgr

# Standard Credential Manager Control Panel applet:
control /name Microsoft.CredentialManager

Note: control.exe keymgr.dll (passing a raw DLL name as argument) does not open Credential Manager. Use rundll32.exe keymgr.dll,KRShowKeyMgr for the legacy key manager or control /name Microsoft.CredentialManager for the standard applet.

Credential files are protected for the user through Windows data-protection
mechanisms. Their presence does not mean every browser or application stores
credentials there; the application must use the relevant Credential Manager
APIs or supported Windows authentication integration.

C:\Users\[Username]\AppData\Local\Microsoft\Credentials\
C:\Users\[Username]\AppData\Roaming\Microsoft\Credentials

See Credentials processes in Windows authentication
for the current architecture description.