Hacking Tools, Hacker News & Cyber Security
ID: 0ba1be5c-8016-51dc-8480-19d8e0c8ce9d
STIX ID: report--0ba1be5c-8016-51dc-8480-19d8e0c8ce9d
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from major Windows browsers by bypassing App-Bound Encryption (Chrome/Edge/Brave) via an IElevator COM/DLL injection technique, handling DPAPI-based browsers (Opera, Vivaldi) and NSS-encrypted Firefox logins. The report explains architecture, supported browsers, extracted outputs, operational evasion features, an example attack scenario, and detection/mitigation recommendations for defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
