logo

Hacking Tools, Hacker News & Cyber Security

ID: 36750890-6686-578e-b564-575665837fe9

STIX ID: report--36750890-6686-578e-b564-575665837fe9

Feed Name: Darknet

Threat Score
75/100

Date Published: 2008-10-14

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly disclosed post‑exploitation tool that harvests browser‑stored credentials and session material from Chrome, Edge, Brave (via an App‑Bound Encryption/IElevator bypass), Opera/Vivaldi (DPAPI), and Firefox (NSS). It uses headless browser spawning and Early Bird APC DLL injection to decrypt keys in process, includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, file‑handle duplication), outputs structured JSON of recovered secrets, and is positioned as a red‑team tool for assessing credential exposure and endpoint controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.