logo

Storm Worm Descends on Blogspot

ID: 08894d7d-2250-5330-b6fa-9a710e96c165

STIX ID: report--08894d7d-2250-5330-b6fa-9a710e96c165

Feed Name: Darknet

Threat Score
75/100

Date Published: 2007-10-08

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post-exploitation Windows tool that harvests credentials and session secrets from major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, Firefox) by spawning a headless Chromium process and injecting a DLL to bypass App-Bound Encryption via the IElevator COM interface (or using DPAPI/NSS methods where applicable); the report covers its implementation, evasion techniques, usage examples, detection opportunities, and mitigation recommendations for red-team and defender use.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.