logo

Learn Web Application Exploits and Defenses

ID: 32d8f838-22dd-59b2-b5cc-2f260ae5eea4

STIX ID: report--32d8f838-22dd-59b2-b5cc-2f260ae5eea4

Feed Name: Darknet

Threat Score
75/100

Date Published: 2010-05-07

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly available post-exploitation tool that harvests browser-stored credentials and session tokens from Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox by bypassing App-Bound Encryption (via spawning headless Chromium, Early Bird APC DLL injection and the IElevator COM interface), DPAPI, and NSS protections; it outputs structured JSON and includes multiple operational evasion features, making it a high-risk capability for lateral movement and cloud account takeover when executed on compromised developer or user endpoints.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.