logo

Hacking Tools, Hacker News & Cyber Security

ID: 32bb0759-175a-51c8-9fcb-f55b27f243fd

STIX ID: report--32bb0759-175a-51c8-9fcb-f55b27f243fd

Feed Name: Darknet

Threat Score
78/100

Date Published: 2009-07-02

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post-exploitation browser credential-harvesting tool (publicly distributed) that extracts saved logins, session cookies, OAuth refresh tokens, credit card data, autofill entries, and history from Chromium-based browsers and Firefox on Windows. It bypasses Chrome's App-Bound Encryption by injecting a DLL into a headless Chromium process via Early Bird APC to invoke the IElevator COM interface, supports DPAPI and NSS decryption for other browsers, and includes multiple evasion features aimed at surviving EDR — making it a high-risk tool for lateral movement and cloud account takeover in assumed-breach scenarios.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.