logo

Hacking Tools, Hacker News & Cyber Security

ID: 28fc2311-4894-5542-a101-65e8349c91df

STIX ID: report--28fc2311-4894-5542-a101-65e8349c91df

Feed Name: Darknet

Threat Score
70/100

Date Published: 2018-06-24

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post-exploitation credential-harvesting tool that targets Chrome/Edge/Brave (App-Bound Encryption bypass via IElevator COM and DLL injection), Opera/Vivaldi (DPAPI), and Firefox (NSS). It extracts session cookies, OAuth refresh tokens, saved passwords, credit card data, autofill and history to JSON, includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), and is intended for red team/assumed-breach testing but represents a high-risk capability for lateral movement and cloud account takeover if used by adversaries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.