IAMhounddog – Practical AWS IAM Relationship Mapping for Red Teams
ID: 39fa3597-09fd-5948-8c2f-ef49b0cbca2a
STIX ID: report--39fa3597-09fd-5948-8c2f-ef49b0cbca2a
Feed Name: Darknet
DumpBrowserSecrets is a precompiled Windows post-exploitation tool that harvests browser-stored credentials and session tokens across Chromium-based browsers (Chrome, Edge, Brave via an App‑Bound Encryption bypass using IElevator and DLL injection), DPAPI-based browsers (Opera family, Vivaldi), and Firefox (NSS). It outputs structured JSON, includes multiple evasive techniques to reduce EDR detection, and can rapidly enable lateral movement and cloud account takeover from a compromised developer workstation; the report also provides detection and mitigation guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
