logo

Hacking Tools, Hacker News & Cyber Security

ID: 14c7ed5a-72bd-5f3d-88c0-504d1e4c6a60

STIX ID: report--14c7ed5a-72bd-5f3d-88c0-504d1e4c6a60

Feed Name: Darknet

Threat Score
78/100

Date Published: 2006-07-17

Date Updated: 2026-05-13

...
...

DumpBrowserSecrets is a public post‑exploitation tool that harvests browser-stored secrets (saved logins, session cookies, OAuth refresh tokens, credit cards, autofill data, history) from Chrome, Edge, Brave, Opera-family browsers, Vivaldi, and Firefox. For Chromium-based browsers it spawns a headless process and injects a DLL using Early Bird APC to access the IElevator COM interface and decrypt App-Bound Encryption keys; Opera-family browsers use DPAPI extraction and Firefox uses NSS decryption. The tool includes evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), outputs structured JSON, and is framed for red-team/assumed‑breach use while the report highlights detection points and mitigation recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.