Hacking Tools, Hacker News & Cyber Security
ID: 36750890-6686-578e-b564-575665837fe9
STIX ID: report--36750890-6686-578e-b564-575665837fe9
Feed Name: Darknet
DumpBrowserSecrets is a publicly disclosed post‑exploitation tool that harvests browser‑stored credentials and session material from Chrome, Edge, Brave (via an App‑Bound Encryption/IElevator bypass), Opera/Vivaldi (DPAPI), and Firefox (NSS). It uses headless browser spawning and Early Bird APC DLL injection to decrypt keys in process, includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, file‑handle duplication), outputs structured JSON of recovered secrets, and is positioned as a red‑team tool for assessing credential exposure and endpoint controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
