Hacking Tools, Hacker News & Cyber Security
ID: 5eb2a2a5-ac49-5eff-a7e9-de5f30547eb4
STIX ID: report--5eb2a2a5-ac49-5eff-a7e9-de5f30547eb4
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts passwords, session cookies, OAuth tokens, credit card data, autofill entries, and browsing history from major Windows browsers (Chromium-based browsers and Firefox). It implements a DLL injection into a headless Chromium process to bypass Chrome's App‑Bound Encryption via the IElevator COM interface (and uses DPAPI or NSS methods where applicable), includes evasion features to reduce EDR detection, outputs structured JSON, and is intended for red-team/assumed-breach testing but presents a high-risk capability for real-world account takeover and lateral movement if misused.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
