logo

GCHQ Code Breaking Challenge Solved Through Googling

ID: 4309e6ca-8a34-5ec2-af76-ef89e79edb84

STIX ID: report--4309e6ca-8a34-5ec2-af76-ef89e79edb84

Feed Name: Darknet

Threat Score
75/100

Date Published: 2011-12-05

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a public post‑exploitation tool that harvests browser‑stored credentials and session tokens from major Chromium‑based browsers and Firefox by using DLL injection and an IElevator COM bypass to defeat App‑Bound Encryption (Chrome 127+) and by retrieving DPAPI/NSS keys. The report documents the tool's components, supported browsers and data types (cookies, saved logins, OAuth tokens, credit cards, autofill, history, bookmarks), operational evasion techniques, an attack scenario showing rapid credential extraction for cloud/SaaS takeover, and recommended detection and mitigation approaches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.