logo

MailSniper – PowerShell Tool for Exchange Mailbox Search and Credential Discovery

ID: 3e2efc5f-6ca2-5026-9132-02430c820037

STIX ID: report--3e2efc5f-6ca2-5026-9132-02430c820037

Feed Name: Darknet

Threat Score
75/100

Date Published: 2025-08-15

Date Updated: 2026-05-11

...
...

**DumpBrowserSecrets** is a pre-compiled post-exploitation credential-harvesting tool that extracts saved logins, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from major Chromium- and Gecko-based browsers on Windows; it bypasses Chrome's App-Bound Encryption by injecting a DLL into a headless Chromium process to use the IElevator COM interface, includes multiple EDR-evasion techniques, and is positioned for red-team/assumed-breach testing rather than covert commodity malware exfiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.