logo

Hacking Tools, Hacker News & Cyber Security

ID: 10c7ba87-15b3-5306-96ef-9e1d7e791f0b

STIX ID: report--10c7ba87-15b3-5306-96ef-9e1d7e791f0b

Feed Name: Darknet

Threat Score
75/100

Date Published: 2007-07-02

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a post-exploitation browser credential-harvesting tool that targets Chromium- and Gecko-based browsers on Windows, capable of extracting passwords, cookies, OAuth refresh tokens, credit card data, autofill entries, and history. It implements an App-Bound Encryption bypass for Chrome/Edge/Brave by injecting a DLL into a headless Chromium process (Early Bird APC) to use the IElevator COM interface, handles DPAPI-protected Chromium forks (Opera, Vivaldi) and NSS-encrypted Firefox credentials, and includes evasion features aimed at defeating static and behavioral EDR detections; output is structured JSON suitable for red team or adversary reuse.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.