Hacking Tools, Hacker News & Cyber Security
ID: 1518de8f-4e80-5e82-bc46-d385925842e4
STIX ID: report--1518de8f-4e80-5e82-bc46-d385925842e4
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation credential harvesting tool that extracts browser‑stored secrets (passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries and browsing history) from Chromium‑based browsers and Firefox; it bypasses Chrome's App‑Bound Encryption by spawning a headless Chromium process and injecting a DLL via Early Bird APC to call the IElevator COM interface, supports DPAPI and NSS decryption for other browsers, includes multiple EDR‑evasion techniques, and is presented for red‑team use but poses a significant real‑world risk for cloud account takeover and lateral movement if used by adversaries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
