Comprehensive SQL Injection Cheat Sheet
ID: 62a3af2e-99d4-5140-b44e-6cf23e6ac48f
STIX ID: report--62a3af2e-99d4-5140-b44e-6cf23e6ac48f
Feed Name: Darknet
DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool that targets major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox) to extract saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, history, and bookmarks. It implements an App‑Bound Encryption bypass for Chromium (injecting a DLL into a headless Chromium process and using the IElevator COM interface), uses DPAPI/NSS handling for other browsers, includes multiple operational evasion features, outputs structured JSON, and is intended for red team/assumed‑breach testing while also representing a high-risk capability if abused by attackers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
