logo

Microsoft Breaks Network Connectivity For Windows 8 & 10 Users

ID: 45ce92ed-64d3-5bc8-84e2-4988df69ecec

STIX ID: report--45ce92ed-64d3-5bc8-84e2-4988df69ecec

Feed Name: Darknet

Threat Score
75/100

Date Published: 2016-12-14

Date Updated: 2026-05-13

...
...

DumpBrowserSecrets is a Windows post-exploitation tool that harvests browser-stored secrets (cookies, saved logins, OAuth tokens, credit cards, autofill entries, history, bookmarks) across Chrome/Edge/Brave (App‑Bound Encryption bypass), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). It achieves App‑Bound Encryption bypass by spawning a headless Chromium process, injecting a DLL via Early Bird APC to use the IElevator COM interface and retrieve the decryption key, includes multiple operational evasion techniques, outputs structured JSON, and is intended for red-team assumed‑breach testing but presents a realistic high-impact risk for lateral movement and cloud account takeover if misused.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.