Hacking Tools, Hacker News & Cyber Security
ID: 4bafe2a9-0828-5499-9ed7-93e351f3b126
STIX ID: report--4bafe2a9-0828-5499-9ed7-93e351f3b126
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation credential-harvesting tool that targets major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox) to extract saved logins, session cookies, OAuth refresh tokens, credit cards, autofill data and history. It bypasses Chrome's App-Bound Encryption by injecting a DLL into a headless Chromium process to call the IElevator COM interface, uses DPAPI or NSS decryption where applicable, includes multiple operational evasion features, and outputs structured JSON for red-team or adversary use—presenting a high-risk vector for lateral movement and cloud account takeover if leveraged on compromised developer endpoints.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
