Remote & Local File Inclusion (RFI/LFI) Scanner
ID: 12a88b5d-9a10-56c8-a62e-ce125191a9ed
STIX ID: report--12a88b5d-9a10-56c8-a62e-ce125191a9ed
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation credential harvesting tool that extracts browser-stored secrets (passwords, cookies, OAuth refresh tokens, credit cards, autofill data and history) from Chrome, Edge, Brave (via an App‑Bound Encryption bypass using IElevator COM through DLL injection), Opera/ Vivaldi/Opera GX (DPAPI), and Firefox (NSS). The report covers usage, implementation details, evasion techniques, detection opportunities, and mitigation recommendations for enterprise environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
