Exploit-as-a-Service Resurgence in 2025 – Broker Models, Bundles & Subscription Access
ID: 3eee420e-81ae-5004-8a24-a41b92982485
STIX ID: report--3eee420e-81ae-5004-8a24-a41b92982485
Feed Name: Darknet
Threat Score
**DumpBrowserSecrets** is a post-exploitation Windows tool that harvests browser-stored credentials (passwords, cookies, OAuth refresh tokens, credit cards, autofill, history) from Chromium- and Gecko-based browsers by using headless Chromium + DLL injection to bypass App‑Bound Encryption (IElevator) or by extracting DPAPI/NSS keys, outputting structured JSON for red-team/assumed‑breach testing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
