logo

Hacking Tools, Hacker News & Cyber Security

ID: 5234c33f-4a8d-505b-b01b-05fc703adee4

STIX ID: report--5234c33f-4a8d-505b-b01b-05fc703adee4

Feed Name: Darknet

Threat Score
75/100

Date Published: 2017-07-10

Date Updated: 2026-05-11

...
...

DumpBrowserSecrets is a public post‑exploitation tool designed to extract browser-stored credentials and session tokens from major Windows browsers (Chrome/Edge/Brave via App‑Bound Encryption bypass, Opera/Vivaldi via DPAPI, and Firefox via NSS). It uses headless Chromium spawning, Early Bird APC DLL injection, and IElevator COM interactions to decrypt app_bound_encrypted_key material and includes operational evasion features; the tool outputs structured JSON and is positioned for red-team/assumed‑breach testing while representing a high-risk credential theft capability.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.