logo

Hackers Break Into White House Military Network

ID: 49600bb4-a2dd-554f-a60e-86f9d436f10d

STIX ID: report--49600bb4-a2dd-554f-a60e-86f9d436f10d

Feed Name: Darknet

Threat Score
75/100

Date Published: 2012-10-02

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool that extracts browser‑stored secrets (cookies, saved logins, OAuth refresh tokens, credit cards, autofill, history, bookmarks) from Chromium-based and Firefox browsers. It implements an App‑Bound Encryption bypass for Chrome/Edge/Brave by injecting a DLL into a headless Chromium process to call the IElevator COM interface, handles DPAPI and NSS decryption for other browsers, and includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication). The report covers usage, extracted data, attack scenarios showing rapid cloud account/session takeover, detection opportunities, and mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.