logo

Facebook Disabled Flash For Video Finally

ID: 51a0985c-6a46-59db-99f4-43c40c60f1f1

STIX ID: report--51a0985c-6a46-59db-99f4-43c40c60f1f1

Feed Name: Darknet

Threat Score
75/100

Date Published: 2015-12-23

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved credentials, session cookies, OAuth refresh tokens, credit card data, autofill entries, history, and bookmarks from major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox). It bypasses Chrome's App-Bound Encryption (Chrome 127+) by spawning a headless Chromium process and injecting a DLL using Early Bird APC to call the IElevator COM interface, retrieves DPAPI or NSS-protected secrets where applicable, includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), outputs structured JSON, and is positioned for red-team use while highlighting detection and mitigation strategies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.