Hacking Tools, Hacker News & Cyber Security
ID: 60225dd7-894d-512d-8b50-8522cb6527c3
STIX ID: report--60225dd7-894d-512d-8b50-8522cb6527c3
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from major browsers by using techniques such as Early Bird APC DLL injection into a headless Chromium process to abuse the IElevator COM interface (bypassing App‑Bound Encryption) and DPAPI/NSS decryption for other browsers; the report covers capabilities, evasion, usage examples, detection opportunities, and mitigations for red‑team and defensive testing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
