logo

FBI Unclassified E-mail Network Owned By Virus

ID: 3c105fb2-e2c8-59ff-9da3-e3cdbce8ad5b

STIX ID: report--3c105fb2-e2c8-59ff-9da3-e3cdbce8ad5b

Feed Name: Darknet

Threat Score
78/100

Date Published: 2009-06-11

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved passwords, cookies, OAuth tokens, credit card numbers, autofill data, and browsing history from major browsers (Chrome, Edge, Brave, Opera family, Vivaldi, and Firefox). It implements an App-Bound Encryption bypass for Chromium-based browsers by spawning a headless Chromium process and injecting a DLL to use the IElevator COM interface, retrieves DPAPI or NSS keys as appropriate, and outputs structured JSON; the report details evasion techniques, usage examples, detection opportunities, and mitigation recommendations aimed at red team and defensive testing.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.