logo

Advertisers may face public humiliation over adware

ID: 33f5f425-84c0-5c7a-8d80-cc0784fbb26d

STIX ID: report--33f5f425-84c0-5c7a-8d80-cc0784fbb26d

Feed Name: Darknet

Threat Score
75/100

Date Published: 2006-02-22

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly released post-exploitation tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit cards, autofill data and browsing history from major Windows browsers by using headless Chromium process spawning, Early Bird APC DLL injection to access the IElevator COM interface (bypassing App‑Bound Encryption), DPAPI/NSS decryption, and multiple evasion techniques; intended for red-team use but enabling rapid account takeover and lateral movement if misused.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.