logo

Twitter Battered By Powerful Worm Attacks

ID: 1d45127f-e003-589a-a1e4-84897e0d85b2

STIX ID: report--1d45127f-e003-589a-a1e4-84897e0d85b2

Feed Name: Darknet

Threat Score
75/100

Date Published: 2009-04-13

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post‑exploitation credential harvesting tool that targets Chromium- and Gecko-based browsers to extract saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, and history. It implements an App‑Bound Encryption bypass for Chrome/Edge/Brave by spawning a headless Chromium process and injecting a DLL to use the IElevator COM interface, supports DPAPI-based browsers and Firefox NSS decryption, and includes operational evasion features; output is structured JSON for red‑team use and testing detection/mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.