logo

Malwarebytes Bug Bounty Program Goes Live

ID: 36dae399-541e-51c7-b36b-d3114224d29a

STIX ID: report--36dae399-541e-51c7-b36b-d3114224d29a

Feed Name: Darknet

Threat Score
75/100

Date Published: 2016-02-03

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a Windows post-exploitation tool that extracts browser-stored credentials and session tokens from Chrome/Edge/Brave (using an App-Bound Encryption bypass via DLL injection into a headless Chromium process and the IElevator COM interface), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). It outputs structured JSON, includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), and is intended for red team/assumed-breach testing while also illustrating real attacker capabilities for cloud account takeover and lateral movement; the report covers usage, detection opportunities, and mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.