Hacking Tools, Hacker News & Cyber Security
ID: 3fa15dd2-d049-5786-b1d7-e2d4584a059d
STIX ID: report--3fa15dd2-d049-5786-b1d7-e2d4584a059d
Feed Name: Darknet
DumpBrowserSecrets is a publicly released post‑exploitation tool that harvests browser‑stored secrets on Windows: Chrome/Edge/Brave via an App‑Bound Encryption bypass (IElevator COM) using DLL injection into a headless Chromium process, Opera/Opera GX/Vivaldi via DPAPI extraction, and Firefox via NSS decryption. It outputs structured JSON of extracted credentials, session cookies and OAuth tokens, includes multiple evasion features (string obfuscation, API hashing, PPID/argument spoofing, file-lock bypass), and is positioned for red team/assumed‑breach testing while representing a realistic threat to cloud/SaaS account takeover and lateral movement.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
