logo

Metasploit 3.4.0 Hacking Framework Released

ID: 09ab9cb6-2677-5504-8841-475c3507e284

STIX ID: report--09ab9cb6-2677-5504-8841-475c3507e284

Feed Name: Darknet

Threat Score
75/100

Date Published: 2010-05-20

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly documented post-exploitation tool that harvests browser-stored secrets (saved passwords, session cookies, OAuth refresh tokens, credit cards, autofill, history, bookmarks) from Chrome, Edge, Brave, Opera, Opera GX, Vivaldi, and Firefox; it implements an App‑Bound Encryption bypass for Chromium browsers by injecting a DLL into a headless Chromium process (Early Bird APC + IElevator COM), supports DPAPI and NSS decryption for other browsers, and includes multiple evasion techniques and a JSON output format for red team or attacker use. The report covers technical operation, installation/usage, an attack scenario demonstrating rapid credential extraction, detection opportunities (process injection, IElevator calls, reads of browser SQLite databases), and mitigation recommendations such as using external credential managers and EDR monitoring of the IElevator interface.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.