What the attacker wants
The keylogger wants recorded keystrokes, paste buffers, or ceremony input to work again later as a password-like credential. The conversion is capture-to-login: film the human, replay the string, own the session on another host. Keylogging is privacy-invasive even when it fails to mint lasting authority — deny conversion, do not romanticize malware.
