Anti-sniffing Framework & Tool For Session Scrambling
ID: 03aef0cc-549f-5982-a68b-06853806532c
STIX ID: report--03aef0cc-549f-5982-a68b-06853806532c
Feed Name: Darknet
**Executive Summary:** DumpBrowserSecrets is a post-exploitation credential-harvesting tool that targets major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, Firefox), extracts saved logins, cookies, OAuth tokens, credit card and autofill data, and implements an App-Bound Encryption bypass for Chromium-based browsers by injecting a DLL into a headless Chromium process via Early Bird APC and using the IElevator COM interface; it includes multiple evasion features and is intended for red-team assumed-breach exercises but represents a high-risk capability if used by malicious actors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
