logo

Automated Web Application Exploitation Tool

ID: 44e81ab7-83dc-5a61-9fb9-f59a8e907d75

STIX ID: report--44e81ab7-83dc-5a61-9fb9-f59a8e907d75

Feed Name: Darknet

Threat Score
75/100

Date Published: 2010-03-10

Date Updated: 2026-05-12

...
...

**DumpBrowserSecrets** is a Windows post-exploitation tool that harvests browser-stored credentials (cookies, saved logins, OAuth tokens, credit cards, autofill, history) across Chrome/Edge/Brave (App‑Bound Encryption bypass), Opera/Vivaldi (DPAPI), and Firefox (NSS); it uses headless Chromium + Early Bird APC DLL injection and the IElevator COM interface to decrypt app_bound_encrypted_key, includes multiple evasion techniques, outputs structured JSON, and is framed for red-team/assumed-breach testing while posing clear risks if used maliciously.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.