Intuitive GUI for Network Security Monitoring with Snort
ID: 0a95d23b-cc0d-5d72-9fa3-065ba9172afa
STIX ID: report--0a95d23b-cc0d-5d72-9fa3-065ba9172afa
Feed Name: Darknet
DumpBrowserSecrets is a publicly available post‑exploitation tool that extracts credentials and session tokens from Chromium‑based and Gecko‑based browsers on Windows by using DLL injection (Early Bird APC) into a headless Chromium process to leverage the IElevator COM interface for App‑Bound Encryption key decryption, and by handling DPAPI and NSS decryption for other browsers; it outputs structured JSON and includes evasion features aimed at bypassing EDR, making it a high‑risk tool for credential theft and cloud account takeover in assumed‑breach and real‑world intrusions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
