logo

Microsoft got Defaced

ID: 3579f201-216d-5dc7-b730-fb44dd827d8d

STIX ID: report--3579f201-216d-5dc7-b730-fb44dd827d8d

Feed Name: Darknet

Threat Score
75/100

Date Published: 2006-06-18

Date Updated: 2026-05-13

...
...

DumpBrowserSecrets is a post-exploitation credential-extraction tool that targets major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, Firefox) to recover saved passwords, cookies, OAuth refresh tokens, credit card data, autofill entries and history. It uses DLL injection into a headless Chromium process and the IElevator COM interface to bypass App-Bound Encryption (Chrome 127+), retrieves DPAPI/NSS secrets where applicable, includes operational evasion features, and outputs structured JSON for red-team or malicious use while the report also outlines detection and mitigation strategies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.