logo

Modular Deliberately Vulnerable Web Application

ID: 47d91098-61fe-58a2-8543-97575862b38a

STIX ID: report--47d91098-61fe-58a2-8543-97575862b38a

Feed Name: Darknet

Threat Score
75/100

Date Published: 2013-06-12

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a post‑exploitation credential harvesting tool (Windows executable + DLL) that extracts browser-stored secrets from Chrome/Edge/Brave (via an App‑Bound Encryption bypass using a headless Chromium process and DLL injection), Opera/Vivaldi variants (DPAPI), and Firefox (NSS). The tool outputs structured JSON, includes EDR-evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), and is positioned for red team/assumed-breach exercises but increases real-world risk by enabling rapid SaaS account takeover and lateral movement when run on compromised developer endpoints.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.