logo

Confused by WEP, WPA, TKIP, AES & Other Wireless Security Acronyms?

ID: 0134d88d-5cdc-5213-ac7b-43d12097728a

STIX ID: report--0134d88d-5cdc-5213-ac7b-43d12097728a

Feed Name: Darknet

Threat Score
75/100

Date Published: 2008-12-03

Date Updated: 2026-05-13

...
...

DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved credentials, session cookies, OAuth refresh tokens, credit card details, autofill data, and history from Chrome/Edge/Brave (App‑Bound Encryption bypass), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). It uses headless Chromium + Early Bird APC DLL injection to access the IElevator COM interface and decrypt app_bound_encrypted_key, includes multiple evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), outputs structured JSON, and is positioned for red-team assumed-breach testing while presenting clear abuse potential if used by malicious actors.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.