logo

Firefox Patches 8 Security Vulnerabilities with 2.0.0.1

ID: 04a80ec1-46fd-585b-b6f1-32173bfab3ee

STIX ID: report--04a80ec1-46fd-585b-b6f1-32173bfab3ee

Feed Name: Darknet

Threat Score
75/100

Date Published: 2006-12-26

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post‑exploitation credential‑harvesting tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries and browsing history from major Chromium‑based and Firefox browsers on Windows. It bypasses Chrome's App‑Bound Encryption by spawning a headless Chromium process and injecting a DLL via Early Bird APC to use the IElevator COM interface, handles DPAPI for some browsers and NSS for Firefox, and includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, file‑handle duplication). The tool outputs structured JSON, is intended for red‑team assumed‑breach testing, and presents significant risk if used by attackers because it enables rapid cloud/SaaS session takeover and lateral movement from compromised developer endpoints.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.