logo

What You Need To Know About Server Side Request Forgery (SSRF)

ID: 0a550b43-24ee-5f38-9679-a539e4b06fdb

STIX ID: report--0a550b43-24ee-5f38-9679-a539e4b06fdb

Feed Name: Darknet

Threat Score
75/100

Date Published: 2017-08-17

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post-exploitation tool that harvests browser-stored credentials and session tokens from Chrome/Edge/Brave (App-Bound Encryption bypass), Opera/Vivaldi (DPAPI), and Firefox (NSS), using a combination of headless browser spawning, DLL injection via Early Bird APC, and IElevator COM interface access; it outputs structured JSON, includes multiple evasion techniques designed to reduce EDR detection, and is positioned for red-team assumed-breach testing but also materially increases risk of lateral movement and cloud account takeover if used by malicious actors.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.