logo

RedExt – Browser Extension-Based C2 Framework for Red Team Recon

ID: 054ab7e6-0245-5484-afaa-f9f5ff382d3c

STIX ID: report--054ab7e6-0245-5484-afaa-f9f5ff382d3c

Feed Name: Darknet

Threat Score
75/100

Date Published: 2025-08-29

Date Updated: 2026-05-11

...
...

DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts passwords, cookies, OAuth tokens, credit cards, and browsing data from Chromium-based and Gecko-based browsers by bypassing App-Bound Encryption (via IElevator DLL injection) and using DPAPI/NSS decryption where applicable; the report covers implementation details, evasion techniques, usage scenarios, detection opportunities, and mitigation advice for defenders and red teams.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.