logo

Hacking Tools, Hacker News & Cyber Security

ID: 56bbad2a-daac-54df-83d9-ffc7e336f61c

STIX ID: report--56bbad2a-daac-54df-83d9-ffc7e336f61c

Feed Name: Darknet

Threat Score
78/100

Date Published: 2014-10-27

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly documented Windows post‑exploitation tool that harvests browser‑stored secrets (passwords, cookies, OAuth refresh tokens, credit cards, autofill and history) from Chrome/Edge/Brave (via an App‑Bound Encryption bypass), Opera/Vivaldi (DPAPI), and Firefox (NSS). It uses Early Bird APC DLL injection into a spawned headless Chromium process to decrypt app_bound_encrypted_key via the IElevator COM interface, includes operational evasion techniques to reduce EDR detection, outputs structured JSON for red team use, and is positioned as a red‑team/assumed‑breach testing utility with clear detection and mitigation recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.