logo

BrainDamage – Payload Generator and Encrypted Shell Stager for Red Teams

ID: 58f49eb6-508c-5a6f-a4f0-9e5d5e0d0877

STIX ID: report--58f49eb6-508c-5a6f-a4f0-9e5d5e0d0877

Feed Name: Darknet

Threat Score
75/100

Date Published: 2025-08-01

Date Updated: 2026-05-11

...
...

DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from major Chromium- and Gecko-based browsers on Windows by using techniques including headless Chromium spawning, Early Bird APC DLL injection and an IElevator COM bypass to decrypt App‑Bound Encryption keys; it also supports DPAPI and NSS decryption and includes multiple evasion features for red-team/assumed‑breach operations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.