Hacking Tools, Hacker News & Cyber Security
ID: 3702c069-4806-5d86-8d3c-38ac0d674b3e
STIX ID: report--3702c069-4806-5d86-8d3c-38ac0d674b3e
Feed Name: Darknet
DumpBrowserSecrets is a post‑exploitation credential harvesting tool (with accompanying DLL) that targets Chrome, Edge, Brave (App‑Bound Encryption bypass via IElevator COM inside an injected headless Chromium process), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). It extracts cookies, saved logins, OAuth refresh tokens, credit cards, autofill data, history and bookmarks and writes structured JSON output; includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser) to reduce EDR detection, and is positioned as a red-team tool useful for assessing the credential blast radius of compromised developer endpoints.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
