logo

UAE Telco Etisalat Installs Spyware On Users Blackberries

ID: 716ece58-95d6-5c01-8cfd-7e955c7bb2a8

STIX ID: report--716ece58-95d6-5c01-8cfd-7e955c7bb2a8

Feed Name: Darknet

Threat Score
75/100

Date Published: 2009-07-24

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post-exploitation tool that harvests browser-stored credentials and session tokens from major Windows browsers (Chrome, Edge, Brave, Opera family, Vivaldi, Firefox). It bypasses Chrome's App-Bound Encryption by injecting a DLL into a headless Chromium process and using the IElevator COM interface to decrypt keys, supports DPAPI and NSS decryption for other browsers, includes operational evasion techniques, and outputs extracted secrets as structured JSON—enabling rapid lateral movement and cloud account takeover from compromised developer endpoints.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.