logo

Hacking Tools, Hacker News & Cyber Security

ID: 5e369ea9-0fa1-501b-9800-53fca1f50f23

STIX ID: report--5e369ea9-0fa1-501b-9800-53fca1f50f23

Feed Name: Darknet

Threat Score
75/100

Date Published: 2007-12-05

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a public, post‑exploitation credential‑harvesting tool that extracts saved logins, session cookies, OAuth refresh tokens, credit card details, autofill data and history from major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox). It implements an App‑Bound Encryption bypass for Chromium-based browsers by spawning a headless browser and injecting a DLL via Early Bird APC to call the IElevator COM interface, handles DPAPI and NSS decryption where appropriate, includes operational evasion (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), and is positioned as a red-team tool for testing credential exposure, along with recommended detection and mitigation approaches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.