Malware Distributor & Bot Network Master Sentenced To 4 Years
ID: 66fdc493-f400-533e-b5cd-a966f3759d47
STIX ID: report--66fdc493-f400-533e-b5cd-a966f3759d47
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved passwords, session cookies, OAuth tokens, credit card data, autofill entries, and browsing history from major Chromium-based browsers (Chrome, Edge, Brave, Opera-family, Vivaldi) and Firefox. The tool bypasses Chrome's App-Bound Encryption by injecting a DLL into a headless Chromium process to use the IElevator COM interface to decrypt encryption keys, includes DPAPI and NSS decryption paths, implements several runtime evasion techniques, outputs structured JSON, and is presented as a red-team utility for testing credential exposure on compromised developer workstations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
